WordPress activity log, built for security
Know exactly what happens on your site.
Harvest records every change, detects intrusions, scores threats, and reconstructs incidents — so you can investigate, not just audit.

Why Harvest
More than an audit log.
Most logs just list events. Harvest helps you understand them.
See everything
Every login, content edit, user and role change, plugin and settings change — with user, IP, and a clear description. Searchable and filterable.
Catch intrusions
Password spraying, brute force, and distributed attempts are grouped into campaigns — one clear signal instead of endless failed-login lines.
Know what matters
A threat-scoring engine ranks the highest-risk IPs and accounts right now, so you stop guessing which alerts to act on.

The activity log
Every change, searchable.
A clean, modern log viewer with severity at a glance. Filter by user, time, or severity and find the exact moment something changed.
Security analytics
See the highest-risk activity first.
Harvest scores every security-relevant event and surfaces a ranked feed of the riskiest IPs and accounts — with detected campaigns grouped for you.

Pricing
Pick the tier that fits.
Start free. Upgrade when you need intrusion detection, threat scoring, and the incident timeline.
Lite
- Activity log viewer
- Activity logging engine
- Configurable retention
- Enable/disable events
- Exclude objects from the log
- Reverse proxy / WAF support
- CSV export
- Free-text search
- Attack detection & alerts
- Delete specific data (GDPR)
- Hide plugin from other users
- IP geolocation enrichment
- Import/export settings
- Log access permissions
- Login page notice
- Notes on log entries
- Third-party integrations
- Email settings & templates
- Notification rules
- Reports
- Statistics dashboard
- Advanced search filters
- Saved filters
- Auto-block on critical attacks
- IP block management
- Incident investigation timeline
- Intrusion response & campaigns
- Per-user activity profiles
- Threat scoring
- User session management
- Username Protection
- Automated retention & cleanup
- Automated scheduled reports
- Automated threat response
- Log archiving
- External database storage
- Mirror logs to SIEM/services
- Multisite network support
- Network-wide user activity
- Write log to file
Premium
- Activity log viewer
- Activity logging engine
- Configurable retention
- Enable/disable events
- Exclude objects from the log
- Reverse proxy / WAF support
- CSV export
- Free-text search
- Attack detection & alerts
- Delete specific data (GDPR)
- Hide plugin from other users
- IP geolocation enrichment
- Import/export settings
- Log access permissions
- Login page notice
- Notes on log entries
- Third-party integrations
- Email settings & templates
- Notification rules
- Reports
- Statistics dashboard
- Advanced search filters
- Saved filters
- Auto-block on critical attacks
- IP block management
- Incident investigation timeline
- Intrusion response & campaigns
- Per-user activity profiles
- Threat scoring
- User session management
- Username Protection
- Automated retention & cleanup
- Automated scheduled reports
- Automated threat response
- Log archiving
- External database storage
- Mirror logs to SIEM/services
- Multisite network support
- Network-wide user activity
- Write log to file
Elite
- Activity log viewer
- Activity logging engine
- Configurable retention
- Enable/disable events
- Exclude objects from the log
- Reverse proxy / WAF support
- CSV export
- Free-text search
- Attack detection & alerts
- Delete specific data (GDPR)
- Hide plugin from other users
- IP geolocation enrichment
- Import/export settings
- Log access permissions
- Login page notice
- Notes on log entries
- Third-party integrations
- Email settings & templates
- Notification rules
- Reports
- Statistics dashboard
- Advanced search filters
- Saved filters
- Auto-block on critical attacks
- IP block management
- Incident investigation timeline
- Intrusion response & campaigns
- Per-user activity profiles
- Threat scoring
- User session management
- Username Protection
- Automated retention & cleanup
- Automated scheduled reports
- Automated threat response
- Log archiving
- External database storage
- Mirror logs to SIEM/services
- Multisite network support
- Network-wide user activity
- Write log to file
Compare every feature.
See exactly what each tier includes.