Wordfence CLI is an open source, high performance, multi-process security scanner, written in Python, that quickly scans local and network filesystems to detect PHP malware and WordPress vulnerabilities. Wordfence CLI is open source under GPLv3. We offer both Free and Premium CLI license options. CLI Premium detects all known PHP malware - over 14 million malware variants. CLI Free has a 30 day delay for malware detection. CLI also detects over 11,800 WordPress vulnerabilities, including the very newest vulnerabilities, using our open and continuously updated vulnerability database. Vulnerability scanning is free for all license types.
The free version of Wordfence CLI has a 30-day delay on malware signatures. The premium version of Wordfence CLI has access to the complete, real-time malware signatures for more demanding environments. Real-time signatures are used by both the paid version of the Wordfence Plugin and the paid version of Wordfence CLI. We add approximately 30 to 70 new signatures every month. Wordfence's vulnerability scanning is free for everyone.
Wordfence CLI Premium pricing is based on the number of sites being scanned. Starting with a base price of $149 for the first 100 sites, add on additional sites at increments of 100 with pricing dependent on the total number of sites (see Site Pricing above). The number of sites is self-reported, however, we've included a <count-sites> subcommand that automatically detects WordPress sites to help you determine the number of sites to include for your license. CLI Premium includes access to Wordfence's industry leading Customer Support Team.
Enterprise CLI is designed for very large hosts with more than 100,000 customers. For example, if you are hosting several million WordPress sites and would like to conduct daily or even hourly high performance scans across your entire fleet, we'd love to chat with you. Please contact our team for a quote.
Access Wordfence's Real-Time Malware Signatures
Purchase a Wordfence CLI Premium license for access to real-time malware signatures. Licensing is based on how many websites are being scanned and includes support from our Team. We recommend real-time malware signatures for hosting providers and other production environments. Wordfence CLI's <remediate> sub-command allows you to automatically restore known files from WordPress Core, plugins and themes.
Wordfence's Industry Leading Vulnerability Scanning
Wordfence CLI includes industry leading vulnerability scanning which is completely free for all license types. CLI's vulnerability scanner uses our open vulnerability database which is continually updated by our team using our own research, and by triaging external research into the database as quickly as it is published.
What is the difference between the Wordfence Plugin and Wordfence CLI?
The Wordfence Plugin is an excellent overall security solution for WordPress and includes a firewall, two-factor authentication, brute force protection, and IP blocklist with many other features in addition to a malware scanner. Wordfence CLI provides more technical server administrators and operations teams with high performance malware and vulnerability scanning capability.
CLI's malware-scan is parallelizable, meaning that it can take advantage of all your CPU cores when scanning, providing very high performance. CLI is also able to execute at a higher permissions level than your web server and website, giving it an additional layer of protection against compromise. CLI is also incredibly flexible and can be scheduled using cron and combined with other command line tools.
How To Install Wordfence CLI
We've drastically improved the installation process starting with CLI version 2.0.1. Simply install the package, run 'wordfence configure' for the first time to configure CLI, and then start scanning. You can install CLI using Python's pip, your Debian based package manager, or your RedHat style package manager. Instructions for each method are below, along with a few alternative methods of installation for Wordfence CLI. Happy scanning!!
If installing Wordfence CLI 1.1.0 or earlier, click here to request a free license key.
Installation Options
Install Wordfence CLI using one of the commands below depending on your operating system. Debian and RPM packages require the package downloaded prior to install. Click here for additional installation help.
Python Package
Python 3 is required. Install commands below are dependent upon operating system.
pip install wordfence
pip3 install wordfence
Debian Package
Debian based linux operating systems Ubuntu, Debian, Mint, Kali
Register below to receive email notifications about updates to Wordfence CLI License Terms and Conditions.
This website uses cookies, pixels, and similar technologies (collectively “Cookies”) to improve your browsing experience. By clicking “Accept All”, you agree to the storing of Cookies on your device and that we may share, track, store, and analyze your interactions with the website to enhance site navigation, analyze site usage, and assist in our marketing efforts. For more information on our use of cookies please review our Cookie Policy.
Cookie Options
For additional information on how this site uses cookies, please review our Privacy Policy. The cookies used by this site are classified into the following categories and can be configured below.
Strictly Necessary
Always active
The “Strictly Necessary” cookies are necessary for the Sites and Services to work properly, and cannot be disabled. They include any essential authentication and authorization cookies for the Services. If you select the “Reject All” button, or choose to do nothing, only the strictly necessary cookies are active by default.
Functional
Disabled via "Do Not Sell or Share My Information" request. This category cannot be enabled.
Your browser is sending a Global Privacy Control signal which automatically disables this category. You may change your browser settings to enable it.
These cookies allow us to remember choices you make, such as your username, language, or region. This helps provide a more personalized and consistent experience by tailoring the Services to your preferences. For example, we can remember your preferred settings or login details, so you don't have to re-enter them each time you visit.
Performance/Analytical
Disabled via "Do Not Sell or Share My Information" request. This category cannot be enabled.
Your browser is sending a Global Privacy Control signal which automatically disables this category. You may change your browser settings to enable it.
These Cookies allow us to collect certain information about how you navigate the Sites or utilize the Services running on your device. They help us understand which areas you use and what we can do to improve them.
Targeting
Disabled via "Do Not Sell or Share My Information" request. This category cannot be enabled.
Your browser is sending a Global Privacy Control signal which automatically disables this category. You may change your browser settings to enable it.
These Cookies are used to deliver relevant information related to the Services to an identified machine or other device (not a named or otherwise identifiable person) which has previously been used to visit our Sites. Some of these types of Cookies on our Sites are operated by third parties with our permission and are used to identify advertising sources that are effectively driving customers to our Sites.
Do Not Sell or Share My Personal Information
This form enables you to request that we stop selling or sharing your personal information with third parties. "Selling" includes exchanging your information for money or other benefits, while "sharing" refers to providing your data to third parties for targeted advertising purposes. For more information on how we process personal information, please review our Privacy Notice.
When you submit this form, we will:
Immediately disable retargeting and remarketing cookies on your current browser/device
Browser/Device Specific: This opt-out applies to the specific browser from which you submit the request. To opt out on additional devices or browsers, you will need to submit separate requests.
Cookie Management: You may also manage cookies directly through your browser settings, or on our Cookie Control form.
Your request has been received. We will no longer share or sell your personal information on this browser.
An error occurred while attempting to submit your request. Please try again or contact support.