The Viking Critical Change Alert

Сүрөттөө

The Viking Critical Change Alert is a WordPress plugin that logs and reports critical site changes. The plugin is fully admin-only and theme-agnostic, meaning it works with any WordPress theme.

The plugin automatically logs the following critical changes:

  • Plugin Updates: When plugins are updated
  • Plugin Activation/Deactivation: When plugins are activated or deactivated
  • Theme Switches: When the theme is switched
  • New Admin Users: When new administrator accounts are created

The admin dashboard provides:

  • Summary Cards: Overview of events in the last 24 hours
  • Events Table: Complete list of all events with filters
  • Search Function: Search by plugin name, theme name, or username
  • Filter Tabs: Filter by event type (All, Plugin Updates, Plugin On/Off, Theme, Admin Users)
  • Clear Log: Button to clear all events (secured with nonce)

Optional daily digest email:

  • Configurable time (default 09:00)
  • Multiple recipients (comma-separated)
  • HTML email with overview and link to admin page

Optional webhook integration:

  • Webhook notifications to n8n, Slack, etc.
  • Two modes: Immediate (send per event) or Digest only (send only with daily digest)
  • Optional redaction mode: only event types and counts, no item labels

Орнотуу

  1. Upload the plugin to /wp-content/plugins/the-viking-critical-change-alert/
  2. Activate the plugin via the ‘Plugins’ menu in WordPress
  3. Go to “The Viking Critical Change Alert” in the admin menu

FAQ.KG

How do I configure the daily digest email?

Go to “The Viking Settings” to configure:
* Enable/disable daily digest
* Set recipients (comma-separated email addresses)
* Set time (site local timezone)

How do I configure webhook notifications?

Go to “The Viking Settings” to configure:
* Enable/disable webhook
* Enter webhook URL
* Choose mode (Immediate or Digest only)
* Enable/disable redaction mode

What database table does the plugin use?

The plugin uses a custom database table: wp_tvcca_events

Table Structure:
* id (BIGINT) – Primary key
* created_at_gmt (DATETIME) – Event timestamp (UTC)
* event_type (VARCHAR 50) – Event type
* actor_user_id (BIGINT) – Actor user ID (nullable)
* actor_username (VARCHAR 60) – Actor username (nullable)
* item_key (VARCHAR 255) – Technical key (plugin file path, theme slug, user ID)
* item_label (VARCHAR 255) – Human readable name
* details_json (LONGTEXT) – JSON encoded details
* source (VARCHAR 50) – WordPress hook name

Data Retention:
* By default, the last 500 events are kept
* Older events are automatically deleted
* Configurable via filter: tvcca_max_events

What security features does the plugin have?

  • All admin functions require manage_options capability
  • Clear log action is secured with nonce
  • No email addresses are stored in events (only username/user ID)
  • Webhook redaction mode for privacy-sensitive environments

Сын-пикирлер

There are no reviews for this plugin.

Contributors & Developers

“The Viking Critical Change Alert” is open source software. The following people have contributed to this plugin.

Мүчөлөрү

Өзгөртүүлөр

1.0.2

  • Fixed: Removed Plugin URI (URL was returning 404)
  • Fixed: Removed inline CSS style tag from email template, converted to inline styles in HTML elements
  • Fixed: Improved sanitization for email recipients (validates email addresses) and time format (validates HH:MM format)

1.0.1

  • Fixed: Security issue with unescaped CSS output in email digest
  • Fixed: Plugin description language updated to standard English
  • Fixed: Domain references updated from .nl to .com
  • Fixed: Inline CSS moved to external CSS files and loaded via wp_enqueue_style()

1.0.0

  • Initial release
  • Event logging functionality
  • Admin dashboard with filters and search function
  • Daily digest email
  • Webhook integration