Suggestions:
If Your Site Is HackedTuning Wordfence Resource UsageV3: Accessing and Consuming the Vulnerability Data FeedAPI CallbacksVulnerability Management: Webhook NotificationsBasic Plugin SettingsAudit LogV1: Accessing and Consuming the Vulnerability Data FeedV2: Accessing and Consuming the Vulnerability Data FeedWordfence IntelligenceCompatibilityWordfence Intelligence Webhook NotificationsWordfence ResponseWordfence CareWordfence FreePlugin / Theme ConflictsUsing Wordfence Central TeamsSub-Processors ListMySQLi storage engineAccount and Billing HistoryUsing Central’s Settings pageLogin Security PluginLogin Security OptionsLegacy Two-Factor AuthenticationUsing Wordfence plugin options TemplatesUsing the Configuration pageViewing scan FindingsUsing the Dashboard pageSetting up two-factor authenticationConnecting your sites to Wordfence CentralWordfence Central ToolImport/ExportWordfence and GDPR – General Data Protection RegulationTroubleshootingTechnical DetailsWordfence 7Blocking TroubleshootingWordfence and LiteSpeedDiagnosticsWHOIS LookupBrute Force ProtectionStatisticsGlobal OptionsWordfence APIAlertsDashboardToolsRate LimitingChangelogScan TroubleshootingFirewall Optimization TroubleshootingScan ResultsConstantsTroubleshootingLicense KeyRemove or ResetSystem requirementsScan SchedulingCountry BlockingScan OptionsFirewall OptionsFirewall Learning ModeAdvanced information and configurationIncident Response ServicesTwo-Factor AuthenticationReal-Time Live TrafficScanBlockingWordfence PremiumOptimizing The FirewallWordfence Web Application Firewall (WAF)

Using Central’s Settings page

The Settings page allows you to configure alert settings for sites connected to Central, and allows you to receive alerts via Email, SMS, or Slack.

The “Settings” page allows you to configure alert settings for sites connected to Central and allows you to receive alerts via email, SMS*, or Slack/Discord integration. It can be accessed by clicking the “Gear” icon at the top of the page, next to “Add New Site”.

*As of July 2, 2025, SMS is no longer a supported option for those in the Czech Republic, country calling code +420.

Scan Findings

This section allows you to enable alerts for issues found during a Wordfence scan, and allows you to choose one or more alert types for each degree of severity – for instance, SMS alerts can be sent if a scan on a connected site finds a Critical issue, but Email alerts can be sent for lower-severity issues.

Care & Response Incident Alerts

Care & Response Incident Alerts are a sequence of email notifications for sites with a Care or Response license. When a scan results with a high-severity security finding , Wordfence Central emails the details so you and your team can evaluate and act on them. Each email links back to the applicable license, where you can request help from Wordfence support.

These are distinct from the general Scan Findings alerts: Care & Response Incident Alerts are curated incident emails for Care and Response customers and are delivered by email only. (For SMS or Slack/Discord notifications about scan results, use the Scan Findings settings.)

Care & Response Incident Alerts are enabled by default but can be disabled.  Alerts are always sent to the account holder, plus any addresses in the Emails field of your Central alert settings. Unlike other alert types, adding specific addresses does not replace the account holder — they always receive incident alerts so a critical issue is never missed.

Daily Digest

The Daily Digest runs once every 24 hours and gives you an overview of the number and severity of security events (including scan findings) that have been recorded across all of your connected sites.

Other Security Events

You can choose to receive real-time alerts when several other security-related events occur, such as if Wordfence is Updated or Deactivated, if an administrator logs in, or if there’s an increase in attacks on your site. Note that currently, in order for alerts when an administrator or user logs in from a new device (“Only alert me when that administrator signs in from a new device” and “Only alert me when that user signs in from a new device”) to provide accurate information, all connected sites will also need to be configured to “Only alert me when that administrator signs in from a new device” and “Only alert me when that user signs in from a new device”. If this is not set, all administrator and user logins will appear to be from a new device.

Alert Type Configuration

You can use this section to configure email address(es), phone number(s), and Slack or Discord webhook to receive alerts.

Learn more about how to setup a webhook to connect Wordfence Central to Slack

Learn more about creating and using webhooks with Discord

If you’re receiving alerts from Central, you may wish to disable the alert emails sent from individual sites – you can do this by setting the “Send alerts from individual sites?” option to “No”. Please note that this disables all email alerts sent from these sites, even if they’re being sent to multiple email addresses.

SMS Alerts

SMS alerts are available in select countries, as listed below. This list of SMS available countries is subject to change.

ISO Country
AU Australia
AT Austria
BE Belgium
BR Brazil
CA Canada
CL Chile
CN China
CR Costa Rica
CY Cyprus
DK Denmark
DM Dominica
FI Finland
FR France
DE Germany
GR Greece
HK Hong Kong
HU Hungary
IS Iceland
IN India
IE Ireland
IL Israel
IT Italy
JP Japan
LV Latvia
LU Luxembourg
MY Malaysia
MU Mauritius
MX Mexico
MA Morocco
NL Netherlands
NZ New Zealand
NO Norway
PE Peru
PH Philippines
PL Poland
PT Portugal
PR Puerto Rico
RO Romania
SG Singapore
SK Slovakia
SI Slovenia
ZA South Africa
ES Spain
SE Sweden
CH Switzerland
TW Taiwan
TH Thailand
TR Turkey
UA Ukraine
GB United Kingdom
GB United Kingdom
GB United Kingdom
US United States
VN Vietnam