Secure, well-tested plugins for October CMS
Hi! I'm Sergey, a backend developer and software architect with 8+ years of experience building secure, high-load web applications with PHP, Laravel and October CMS — from e-commerce and banking platforms to high-traffic iGaming systems.
I build plugins I would trust on my own production projects: focused, easy to configure from the admin panel, and covered with tests.
Fortify Security Suite
Fortify helps you protect an October CMS website with minimal setup. Start with the core plugin and add only the modules you need.
| Plugin | What it does |
|---|---|
| Fortify | Core suite: security dashboard widget, system diagnostics and vulnerability checks |
| Fortify CSP | Content Security Policy headers to prevent XSS and data injection |
| Fortify Input Sanitizer | Blocks and sanitizes malicious user input |
| Fortify Admin IP Access | Restricts admin panel access to whitelisted IPs |
| Fortify IP Blocker | Manually block specific IP addresses |
| Fortify Smart IP Blocker | Automatically blocks IPs that exceed a request rate — protection against brute-force and traffic abuse |
All plugins are also available via Composer on Packagist.
Quality first
Every plugin is built with the same quality bar:
- PHPStan at max level
- Pest tests with 90% minimum coverage
- Rector and PHP CS Fixer
- GitHub Actions CI on every change
- Works with October CMS 3.x and 4.x
Support and contact
Found a bug or have an idea? Open an issue on GitHub — I read every one. Security vulnerabilities should be reported privately, as described in each plugin's SECURITY.md.
- Email: wobqqq@gmail.com
- GitHub: github.com/wobqqq
- Packagist: packagist.org/users/wobqqq
- LinkedIn: linkedin.com/in/wobqqq
- Telegram: t.me/wobqqq
Open to custom October CMS and Laravel development, security audits and plugin integration — feel free to get in touch.
Admin IP Access
Restrict access to the admin panel by IP address for enhanced security.
Admin IP Access
Restrict access to the admin panel by IP address for enhanced security.
CSP
Add Content Security Policy headers to protect your site against XSS and data injection attacks.
CSP
Add Content Security Policy headers to protect your site against XSS and data injection attacks.
Fortify
Comprehensive security suite for October CMS with system diagnostics, configuration hardening, and advanced se...
Fortify
Comprehensive security suite for October CMS with system diagnostics, configuration hardening, and advanced se...
Input Sanitizer
Sanitize and block malicious input in headers or request data to prevent XSS and injections.
Input Sanitizer
Sanitize and block malicious input in headers or request data to prevent XSS and injections.
IP Blocker
Manually block specific IP addresses to prevent unauthorized access and attacks.
IP Blocker
Manually block specific IP addresses to prevent unauthorized access and attacks.
Smart IP Blocker
Automatically block IPs that exceed request limits to prevent brute-force and abuse.
Smart IP Blocker
Automatically block IPs that exceed request limits to prevent brute-force and abuse.