Easy to use for the novice site owner and advanced enough for the developer, Lockr secures web transactions and data at rest by protecting API and encryption keys..
Using Lockr helps keep the safe, by removing the sensitive passwords and key secrets from the code and database, following security best practices should site be compromised..
Leveraging proven enterprise-grade key technology from Townsend Security, Lockr's offsite key management delivers best-practice security to protect against critical vulnerabilities and help sites meet PCI DSS, HIPAA and other security requirements and regulations..
Upload Lockr to the wp-content plugins plugin-name directory, or install the plugin through WordPress plugins screen directly..
If you are not, follow the in the forms presented to automate the issuance of certificate to connect to Lockr. 5a.
When ready to deploy to production, follow the prompts provided which will remove the development certificate and place production one in its place.
By encrypting it before it leaves the site, Lockr has no way of knowing or accessing your key, and with HMAC you can be sure no one has interfered with the in transit.
Lockr now integrates with any plugin on your site like WooCommerce, Give, Mailchimp, Stripe etc to keep your keys and passwords secure Lockr's FIPS 140-2 compliant key managers.
Feel free to update the settings via the forms and our update hooks will ensure Lockr keeps up to date on the latest values.
As always, if you want strong encryption key to override the one your plugin was storing in the database, just check the box on the form and we'll create new, random 256-bit key to keep your data secure. 2.1.
Read more