A request firewall at the WordPress layer
Guardian inspects login, REST and anonymous traffic before it becomes a problem. Limits, lockouts and blocks are configured as policy, not as a pile of separate plugins.
- Login rate limiting and failure-based lockouts
- Anonymous REST and request rate limits
- IP blocklist, path traversal and XML-RPC controls
- AI crawler blocking, upload inspection and security headers


