Installation and activation
Download, install and activate Scudo Security on your WordPress site.
Scudo Security is available as a free plugin from WordPress.org or as a premium version from Freemius. Download the free version through your WordPress admin under Plugins > Add New, search for 'Scudo Security', click Install Now, then Activate. Alternatively, download the plugin ZIP file from WordPress.org, go to Plugins > Upload Plugin in your WordPress admin, select the file, click Install Now, and then Activate.
Upon activation, Scudo Security creates its database schema, schedules background scanning jobs, and generates a recovery token that is emailed to your site admin. This token is a one-time-use link that allows you to enter Safe Mode if you ever get locked out of wp-admin. The plugin then automatically applies a secure baseline of safe hardening controls that cannot break your site—these include hiding the WordPress version number, disabling theme and plugin file editing, and enabling security headers.
No manual configuration is required immediately after activation; the plugin works out of the box. You can access the Scudo Security dashboard by going to the WordPress admin menu and clicking the Scudo Security icon to begin reviewing your security score and recommendations.