Devdoit Sentinel documentation

Getting Started

Sentinel follows one model: monitor, detect, analyze, review, protect. Nothing is deployed until you approve it.

Installation

Install Sentinel like any WordPress plugin and activate it on the site you want to protect.

Detailed guide in preparation

Configuration

Choose which signals Sentinel collects and how detections are presented.

Detailed guide in preparation

WordPress Sensor

The sensor observes requests inside WordPress: login attempts, XML-RPC, REST enumeration and attack URLs.

Server Logs

Sentinel can read Apache and Nginx logs to see traffic that never reaches WordPress.

Detection

Patterns covered: brute force, SQLi, XSS, LFI, traversal, scanners, probing and request floods.

AI Analysis

AI is optional. It can assist with incident analysis and never deploys protection automatically.

Protection Rules

WordPress: automatic engine after approval. Apache: .htaccess management with backup and rollback. Nginx: configuration generated for manual deployment.

Vulnerability Scanner

Local version comparison against the Wordfence Intelligence vulnerability feed. Detection only: nothing is disabled or updated automatically.

CLI

Command-line usage.

Detailed guide in preparation

Troubleshooting

Common problems and how to resolve them.

Detailed guide in preparation