
Content Guard Pro
WordPress malware scanner that catches what Wordfence misses
I've been working on WordPress sites long enough to see a pattern: site owners run Wordfence, get a clean report, then wonder why Google still flags them for spam.
The answer is almost always the database.
File-based scanners don't read database tables, like wp_posts or wp_postmeta. But that's exactly where Japanese keyword hacks hide thousands of spam links, where pharma redirect scripts sit in Gutenberg block data, where SEO poisoning lives undetected for months. File-wise all is clear.
So I built Content Guard Pro - a plugin that scans the database specifically. It's a side project alongside my day job, currently at marginal MRR with two paying customers.
The free version, which does a lot, is on WordPress.org. Premium version adds postmeta scanning, scheduled scans, and cloud threat feed.
Happy to answer questions about the database-layer attack surface.
About
Most WordPress scanners check files. But today's infections live in the database - injected spam links, SEO poisoning, redirect scripts. File scanners miss all of it. CGP scans there.

Comment