Title: TugraCyber
Author: skromets
Published: <strong>Ọ̀wàrà 1, 2026</strong>
Last modified: Ọ̀wàrà 1, 2026

---

Ṣàwárí àwọn plugin

![](https://ps.w.org/tugracyber/assets/banner-772x250.png?rev=3722655)

![](https://ps.w.org/tugracyber/assets/icon-256x256.png?rev=3722655)

# TugraCyber

 Láti ọwọ́ [skromets](https://profiles.wordpress.org/skromets/)

[Ṣe ìgbàsílẹ̀](https://downloads.wordpress.org/plugin/tugracyber.0.1.0.zip)

 * [Àwọn àlàyé](https://yor.wordpress.org/plugins/tugracyber/#description)
 * [Àwọn àgbéyẹ̀wò](https://yor.wordpress.org/plugins/tugracyber/#reviews)
 *  [Ìgbéwọlẹ̀](https://yor.wordpress.org/plugins/tugracyber/#installation)
 * [Ìdàgbàsókè](https://yor.wordpress.org/plugins/tugracyber/#developers)

 [Ìrànlọ́wọ́](https://wordpress.org/support/plugin/tugracyber/)

## Àpèjúwe

TugraCyber keeps an inventory of every script running on your checkout page and 
alerts you when a scriptÌtumọ̀ Yorùbá: ’s content changes silently, which is the
signature of Magecart-style card skimming attacks.

 * **Runs only on the checkout page.** This is exactly the scope of PCI DSS 4.0.1
   requirements 6.4.3 and 11.6.1.
 * **Script inventory.** A SHA-256 hash of each scriptÌtumọ̀ Yorùbá: ’s content 
   is recorded, so silent changes are caught immediately.
 * **Removed and returning script detection.** You get an alert when a known script
   disappears from the page, or reappears after being marked as removed.
 * **PCI DSS 6.4.3/11.6.1 report.** Available from the dashboard in your TugraCyber
   account.

This plugin only adds the monitoring agent to your checkout page. The dashboard,
alerts and reports live in your [TugraCyber](https://tugracyber.com) account. Setup
requires an account and a collector address.

#### Requirements

 * WooCommerce must be active (monitoring runs only on the WooCommerce checkout 
   page).
 * A TugraCyber account and a collector address.

### External Services

Through the monitoring script (agent) it places on your checkout page, this plugin
sends data to the **Collector Endpoint** address you enter on the settings page.
This address is empty by default: the plugin can be installed, but no data is sent
anywhere until you enter an address.

For each script loaded on the checkout page, the data sent is:

 * the scriptÌtumọ̀ Yorùbá: ’s URL (src),
 * the SHA-256 hash of the scriptÌtumọ̀ Yorùbá: ’s content (not the content itself;
   the hash is an irreversible digest),
 * the script type (inline or external) and your site ID.

Page content, customer data, payment information and card numbers are **never** 
collected or sent.

If you enter the TugraCyber hosted service at https://tugracyber.com as the Collector
Endpoint, data is sent to that service and the following apply:

 * Terms of Service: https://tugracyber.com/terms
 * Privacy Policy: https://tugracyber.com/privacy

Alternatively, you can enter the address of a TugraCyber collector instance running
on your own server. In that case data goes only to a server under your control and
nothing is sent to any third party.

## Ìgbéwọlẹ̀

 1. Upload and activate the plugin.
 2. Go to Settings > TugraCyber.
 3. Enter the collector endpoint of your TugraCyber account and save.
 4. Visit your checkout page once. The first script inventory is sent automatically.

## FAQ

### Which pages does this plugin run on?

Only the WooCommerce checkout page. It does nothing on other pages.

### I donÌtumọ̀ Yorùbá: ’t have a TugraCyber account. Can I still install it?

Yes, but monitoring does not start until a collector address is entered.

### What data does the plugin send?

Only the URL and SHA-256 content hash of the scripts on the checkout page. See the“
External Services” section above. Page content and customer or payment data are 
never sent.

## Àwọn àgbéyẹ̀wò

Kò sí àwọn àgbéyẹ̀wò fún plugin yìí.

## Àwọn Olùkópa & Olùgbéejáde

“TugraCyber” jẹ́ ètò ìṣàmúlò orísun ṣíṣí sílẹ̀. Àwọn ènìyàn wọ̀nyí ti ṣe ìkópa sí
plugin yìí.

Àwọn Olùkópa

 *   [ skromets ](https://profiles.wordpress.org/skromets/)

[Túmọ̀ “TugraCyber” sí èdè rẹ.](https://translate.wordpress.org/projects/wp-plugins/tugracyber)

### Ṣe o nífẹ̀ẹ́ sí ìdàgbàsókè?

[Ṣàwárí koodu](https://plugins.trac.wordpress.org/browser/tugracyber/), ṣàyẹ̀wò 
[ibi ìpamọ́ SVN](https://plugins.svn.wordpress.org/tugracyber/), tàbí ṣe àgbékalẹ̀
sí [àkọsílẹ̀ ìdàgbàsókè](https://plugins.trac.wordpress.org/log/tugracyber/) nípasẹ̀
[RSS](https://plugins.trac.wordpress.org/log/tugracyber/?limit=100&mode=stop_on_copy&format=rss).

## Àkọsílẹ̀ àwọn àyípadà

#### 0.1.0

 * Initial release: agent injection on the checkout page, settings page, automatic
   site ID and write key generation.

## Àkójọpọ̀ Meta

 *  Ẹ̀yà **0.1.0**
 *  Ìgbàgbọ́hùn tó kẹ́yìn **ọjọ́ 1 sẹ́yìn**
 *  Àwọn ìgbéwọlẹ̀ tó ṣiṣẹ́ **Tó kéré sí 10**
 *  Ẹ̀yà WordPress ** 5.8 tàbí ju bẹ́ẹ̀ lọ **
 *  Dánwò dé **7.1.2**
 *  Ẹ̀yà PHP ** 7.2 tàbí ju bẹ́ẹ̀ lọ **
 *  Èdè
 * [English (US)](https://wordpress.org/plugins/tugracyber/)
 * Àwọn àmì
 * [checkout](https://yor.wordpress.org/plugins/tags/checkout/)[magecart](https://yor.wordpress.org/plugins/tags/magecart/)
   [pci-dss](https://yor.wordpress.org/plugins/tags/pci-dss/)[security](https://yor.wordpress.org/plugins/tags/security/)
   [woocommerce](https://yor.wordpress.org/plugins/tags/woocommerce/)
 *  [Ìwòye Tó Péye](https://yor.wordpress.org/plugins/tugracyber/advanced/)

## Àwọn ìbò

Kò sí ìwádìí tí a tíì fi ránṣẹ́.

[Your review](https://wordpress.org/support/plugin/tugracyber/reviews/#new-post)

[Wo gbogbo àwọn àgbéyẹ̀wò](https://wordpress.org/support/plugin/tugracyber/reviews/)

## Àwọn Olùkópa

 *   [ skromets ](https://profiles.wordpress.org/skromets/)

## Ìrànlọ́wọ́

Nǹkan wà tí o fẹ́ sọ? Ṣé o nílò ìrànlọ́wọ́?

 [Wo àpéjọ ìrànlọ́wọ́](https://wordpress.org/support/plugin/tugracyber/)