BitFire PRO

Turn security alerts into blocked operations.

When enabled, PRO runtime controls can block supported file, database, and administrator operations when a request lacks the required authority. Protection applies within each control’s documented coverage. Then investigate persistence beyond ordinary file scans with Threat Hunter and AI-assisted malware analysis.

Coverage depends on the enabled control, supported operation, and request authorization context. Review runtime-control coverage.

  • 1,000 AI malware analysis credits
  • Threat Hunter persistence audits
  • Runtime authorization controls

BitFire FREE can protect commercial sites. Choose PRO when enabled runtime controls, deeper persistence investigation, or BitFire-managed operation matter to the site.

Read FREE and PRO licensing guidance
Everything unlocked with PRO

Prevent the breach. Find what scanners miss.

PRO combines enforcement during an attack with deeper investigation after suspicious activity. It is designed for sites where compromise has a real business cost.

02 / DEEP INVESTIGATION

Threat Hunter

Inspect database content, WordPress cron jobs, database triggers, must-use plugins, the startup chain, and background PHP processes for persistence normal file scans do not see.

Explore Threat Hunter
03 / FASTER TRIAGE

AI malware analysis

Use 1,000 AI credits for an assisted review of suspicious code, understand why it was flagged, and make a more informed allow, repair, or delete decision. AI output is evidence to review, not proof by itself.

Read the scanner guide
Runtime Application Self-Protection

Three protected operations attackers depend on.

A WAF asks whether a request looks malicious. BitFire RASP also asks whether that request is authorized to perform a dangerous operation inside WordPress.

REQUESTAUTHORIZATIONPROTECTED OPERATION
Read the RASP settings guide
CONTROL 01

Filesystem protection

When the filesystem control is enabled, BitFire uses a PHP stream wrapper to evaluate supported writes to .php files. A write is blocked when the active request lacks the required administrator authorization.

BLOCKS UNAUTHORIZED PHP WRITES
CONTROL 02

Database protection

When the database control is enabled, BitFire evaluates supported user-creation and privilege-change queries. The update is blocked when the request lacks the required administrator authorization.

BLOCKS ROGUE ADMIN ACCOUNTS
CONTROL 03

Administrator impersonation protection

When this control is enabled, BitFire evaluates supported attempts to impersonate an administrator. Impersonation is blocked when the requesting session lacks the required administrator authorization.

BLOCKS AUTHENTICATION BYPASS
Advanced persistence discovery

Malware does not always live in a file.

Threat Hunter goes beyond a normal filesystem scan to find the mechanisms attackers use to survive cleanup and regain control later.

Startup chainCron tasksMU pluginsAdmin usersMySQL triggersBackground PHPDatabase content

Why it matters: a background process, scheduled task, trigger, or stored script can reinfect a site after every malicious PHP file appears to be removed.

BITFIRE · MALWARE ANALYSISPRO
BitFire malware scanner with AI-assisted analysis of suspicious code
Move from a suspicious finding to an informed decision.Review evidence, use AI analysis, and investigate the persistence paths around it.
Simple annual portfolio pricing

More sites. Lower cost per site.

Add the WordPress domains you want to protect, then choose self-management, BitFire-managed operation, or around-the-clock priority support.

STEP 01 · MANAGEMENT LEVEL

Choose who manages day-to-day protection.

Want BitFire handled for you? Managed Protection gives you a hands-off path from setup to ongoing care. BitFire staff configure and monitor protection, then fine-tune exceptions so your site keeps working as expected.

Choose an annual management and support option
STEP 02 · LICENSE DETAILS

Where should we deliver and assign your licenses?

Use an address you can access now. No order is created until you open the verification email. Add exactly one domain for every license you want included.

Type one public domain and press Enter or select Add domain.
Paste one domain per line or a comma-separated list. You can review up to 60 domains before adding them.
License domains0 licenses
    1 site$40per site / year
    2–9 sites$36per site / year · 10% portfolio discount
    10–24 sites$28per site / year · 30% portfolio discount
    25–49 sites$20per site / year · 50% portfolio discount
    50–60 sites$16per site / year · 60% portfolio discount

    Need more than 60 licenses? Contact BitFire sales.

    PLAN SUMMARY

    Review your proposed annual plan

    Base PRO license per siteAdd a domain
    Portfolio quantity discount
    Management: Managed Protection+$200 / site / year
    Annual price per site
    License quantity0
    Annual order total

    Verifying creates a one-year order. This button only emails a link, valid for 24 hours; no order is created yet. Opening that link creates the annual order shown above, activates one PRO license per domain, emails the downloads, and sends the invoice separately after activation.

    Before you upgrade

    Straight answers about PRO.

    Have a licensing or compatibility question we have not covered? Talk directly with the BitFire team.

    Contact BitFire
    What is included with BitFire PRO?

    PRO unlocks 1,000 AI malware analysis credits, advanced Threat Hunter audits, and enabled RASP controls for supported filesystem, database, and administrator impersonation operations.

    When should a commercial website choose PRO?

    BitFire FREE can protect commercial websites. Choose PRO when the site needs enabled runtime controls for supported file, database, and administrator operations, deeper persistence investigation with Threat Hunter, scheduled analysis, or BitFire-managed operation.

    How is annual pricing calculated?

    One license covers one domain. Portfolio discounts begin at 2 sites, and the matching tier applies to every license in the proposed order. The domain list controls the quantity so there are no unassigned licenses. For example, 10 sites at $28.00 per site is $280.00 per year before an optional per-site management package.

    Why can BitFire require tuning after installation?

    BitFire uses a block-by-default security model. This reduces the chance that unknown or unauthorized activity is allowed, but some legitimate traffic may initially be blocked. Those requests must be reviewed and approved so the site can perform its expected functions without weakening protection unnecessarily.

    Which management option should I choose?

    Managed Protection is the hands-off option: BitFire handles installation, configuration, maintenance, monitoring, and operational tuning during normal U.S. business hours for $200 per site per year. Choose Self-managed if your team prefers direct control with guided setup. Priority Support adds 24/7 coverage and a one-hour response time for any issue for $450 per site per year.

    Will the listed prices change?

    The published schedule beside the calculator shows upcoming single-site rates. The displayed rate is reserved for the 24-hour email-verification window, and portfolio discounts apply to every license in the order. Each activated license remains valid for one year; renewal pricing is handled separately.

    Does RASP need to recognize a known vulnerability?

    No. When an applicable RASP control is enabled, BitFire evaluates the authorization behind supported protected operations. An unknown exploit can still be blocked when it attempts a supported PHP write, administrator privilege change, or administrator impersonation without the required authorization.

    What does Threat Hunter find that a file scan may miss?

    Threat Hunter checks persistence outside ordinary malware files, including database content, cron tasks, MySQL triggers, the WordPress startup chain, must-use plugins, administrator accounts, and background PHP processes.

    Protection at runtime

    Stop plugin vulnerabilities from becoming compromises.

    Add enabled runtime controls, deeper persistence investigation, and AI-assisted malware analysis to every site you manage.

    Protect my site free →