Profiles

Bio

CrowdSec is a lightweight security engine, able to detect and remedy aggressive network behavior. It can leverage and also enrich a global community-wide IP reputation database, to help fight online cybersecurity aggressions in a collaborative manner.

WordPress Origin Story

CrowdSec can read many log sources, parse and also enrich them, in order to detect specific scenarios, that usually represent malevolent behavior. Parsers, Enrichers, and Scenarios are YAML files that can be shared and downloaded through a specific Hub, as well as be created or adapted locally.

Detection results are available for CrowdSec, its CLI tools and bouncers via an HTTP API. Triggered scenarios lead to an alert, which often results in a decision (e.g. IP banned for 4 hours) that can be consumed by bouncers (software components enforcing a decision, such as an iptables ban, an nginx lua script, or any custom user script). The CLI allows users to deploy a Metabase Docker image to provide simple-to-deploy dashboards of ongoing activity. The CrowdSec daemon is also instrumented with Prometheus to provide observability.

CrowdSec can be used against live logs (“à la fail2ban”), but can also work on cold logs to help, in a forensic context, to build an analysis for past events.

On top of that, CrowdSec aims at sharing detection signals amongst all participants, to pre-emptively allow users to block likely attackers. To achieve this, minimal meta-information about the attack is shared with the CrowdSec organization for further retribution.

Users can also decide not to take part into the collective effort via the central API, but to register on a local API instead.

Badges

CODE
1 badge
Plugin Developer

Recent impact

Score weights high-impact work (commits, releases, approved translations, props) at 3x routine activity.

Last 30 days
0contributions
high0
medium0
score0
Last 90 days
0contributions
high0
medium0
score0
Last 12 months
5contributions
high0
medium5
score5

Contributions

Type
February 2026
Feb 27 Fri · 01:23
Forums med
Posted a reply to Fatal errors due to Symfony components, on the site WordPress.org Forums:
Hi @brndnl0 , thanks for creating this issue.I was able to install the MainWP plugin,…
December 2025
Dec 19 Fri · 06:46
Forums med
Posted a reply to This is free., on the site WordPress.org Forums:
@mverte , thanks for your message.For a basic usage, you can use this plugin for…
November 2025
Nov 05 Wed · 00:14
Forums med
Posted a reply to CrowdSec on server – Advantage of plugin?, on the site WordPress.org Forums:
The WordPress bouncer is a good bouncer in its own right, as it has AppSec…
Nov 04 Tue · 00:19
Forums med
Posted a reply to CrowdSec on server – Advantage of plugin?, on the site WordPress.org Forums:
Hi @cruiseshipholiday , thanks for your message.Are you already using a bouncer (nginx or others)…
Nov 04 Tue · 00:13
Forums med
Posted a reply to Import text – Theme customization, on the site WordPress.org Forums:
Thanks for your message.I think it can be done using WP-CLI tool. Please refer to…
December 2024
Dec 17 Tue · 02:07
Forums med
Posted a reply to 2.8.0 update breaks Redis user config?, on the site WordPress.org Forums:
Thanks for the update.We've also added automated tests to make sure this specific bug doesn't…
Dec 13 Fri · 05:19
Forums med
Posted a reply to 2.8.0 update breaks Redis user config?, on the site WordPress.org Forums:
Hi @brndnl0 , it should be fixed with the 2.8.1 release.Please let me know if…
Dec 13 Fri · 04:04
Forums med
Posted a reply to 2.8.0 update breaks Redis user config?, on the site WordPress.org Forums:
Hi @brndnl0 ,Thanks for pointing this out.I will investigate.Perhaps something has re-introduced the previous bug…
October 2024
Oct 17 Thu · 05:29
Forums med
Posted a reply to config.api_url, on the site WordPress.org Forums:
Hi, I’m closing this issue. I assume that completing the missing configuration solved the problem.…
September 2024
Sep 30 Mon · 06:27
Forums med
Posted a reply to config.api_url, on the site WordPress.org Forums:
@tinaponting, thanks for your message.The logged error indicates that you don't have any configured LAPI…

Developer

Plugins