Everything you need for your PrestaShop to stop being a black box.
Six blocks designed to work together. Each one solves a specific pain point you know if you manage stores in production.
Proactive security
"Get ahead of the attack before it happens."
We cross-check your PrestaShop and module versions daily against known vulnerability databases. We alert you the moment a new CVE affects any of your stores. Official CVSS 3.1 score.
We apply and recognise configuration-based mitigations for core vulnerabilities: CVEs already covered are marked as "Mitigated" and stop counting as active risk.
Firewall per store, per PrestaShield account (block an IP across all your stores at once) and global PrestaShield rules against attacks known across the whole network.
Logs employee sign-ins with IP, location and device, and alerts you whenever someone logs in from a new IP. Mark trusted IPs to avoid repeated alerts.
A security audit with nothing to install: version, SSL/TLS, headers, exposed admin paths, sensitive files, CVEs and blocklist reputation.
Intrusion and critical-change detection
"If something changes in your store, you'll know instantly."
We alert you if a payment module's billing configuration changes (keys, accounts, permissions) or its allowed currencies, countries, groups or carriers. For security we only detect the change, we never transmit its content.
Alert when a new employee appears or the number of admin accounts (SUPER_ADMIN) increases.
Alert when a module is installed, uninstalled, enabled or disabled in the store.
We detect accessible .git/ folders, an uninstalled installer, insecure cookies and WordPress installs hidden inside your PrestaShop.
File integrity and malware
"Your files, exactly as they should be."
We compare the MD5 of your files against the original PrestaShop files to detect modifications, new or missing files. Better than the native tool: ignore files and folders, view code diffs and repair in bulk from the originals. Covers official PS modules and many free and Addons ones.
View the contents of any store file directly from the dashboard, without FTP access.
Over 100 signatures for malicious code, backdoors and hidden shells, plus dangerous code patterns and card-skimmers injected into the storefront.
We identify registered spam customers and tell you how to delete them, discarding those with orders to avoid false positives.
Performance and Web Vitals
"What is not measured cannot be improved."
Integration with Google PageSpeed Insights. Real data, not estimates.
Core Web Vitals metrics for mobile and desktop, per key URL of your store.
Evolution timeline of your store's performance over the months.
Environment health and cleanup
"Your server and database, free of noise."
Server health review: PHP and MySQL versions, required extensions, disk usage, critical file permissions and orphaned tables.
We instantly detect when a store goes down and when it recovers.
We locate modules on disk with no DB record (and vice versa) and provide dynamic SQL scripts for safe cleanup.
Tools to clean the database (abandoned carts, logs, ghost modules) and clear the Symfony and Smarty cache.
We monitor each store's PHP version so it never gets stuck on unsupported releases.
Centralised multi-store management
"All your stores, one dashboard."
We centralise your store information through our secure API, without requiring FTP access or touching customer or order data.
Organise and filter your stores by client, priority, version or any tag combination you need.
In-app notification centre and email alert preferences configurable per event type and per store.
Generate professional security reports in one click or receive them by email automatically (daily, weekly or monthly). Optional white-label.
Shall we see how it looks on your store?
Run the free external scanner or install the connector for full access.
