Linux 软件免费装
Banner图

DevDome Analytics: Visitor Tracker, Site Stats & Bot Detection

开发者 devdome
更新时间 2026年9月23日 06:26
PHP版本: 7.4 及以上
WordPress版本: 7.1
版权: GPLv2 or later
版权网址: 版权信息

标签

visitor tracking visitor tracker bot detection ai referrals cookieless analytics

下载

1.0.6 1.1.1 1.0.4 1.0.8 1.0.2 1.0.5 1.0.7 1.0.1 1.1.2 1.1.0

详情介绍:

DevDome Analytics is a WordPress visitor tracker for real-time website statistics, traffic sources, sessions and outbound clicks. It reports known bots and AI crawlers separately from human visitors, so detected automated traffic does not inflate your visitor stats. A free DevDome account is required to process analytics events and generate reports through the hosted service. Site stats and real-time visitors Use DevDome as a traffic monitor to see visits as they happen and review website traffic over time. Key metrics appear inside WordPress; detailed web analytics reports in your DevDome dashboard cover periods from the last 24 hours up to 12 months. The reports include: The live visitor count answers how many people are visiting now. These real time visitors are shown as aggregate traffic stats, without identifying WordPress user accounts. Page views and blog stats Review page views and post views in the Pages report to find popular posts and other frequently visited content. Per-page reports include visits, visitors, pageviews, referrers, outbound clicks, countries, browsers, operating systems and devices. For private reporting, the visitor counter and page view counter provide different measures: how many visitors arrived and how many pages they viewed. This website counter is part of your analytics reports; the plugin does not provide a public counter widget. Bot detection and AI crawler tracking Search engines, SEO crawlers, monitoring services and AI bots request WordPress pages. DevDome Analytics detects known crawlers and separates them from human traffic in your visitor analytics. Detected crawlers include Googlebot, Bingbot, GPTBot, ChatGPT-User, ClaudeBot, PerplexityBot, Google-Extended, CCBot, AhrefsBot, SemrushBot and other known crawlers. Unknown, new or deliberately disguised bots may not always be identifiable. Known AI bots are also distinguished from search-engine bots, helping you see when services such as ChatGPT, Claude, Perplexity and Google-Extended access your content. The plugin reports detected crawlers. It does not block them. AI referral tracking identifies visits referred by supported assistants, including ChatGPT and Perplexity, separately from other traffic sources. Outbound click tracking and event tracking Track clicks on links that leave your WordPress site, including: The link click counter records outbound clicks in your reports. Clicks can be relayed through your own WordPress server so they can continue to be measured when ordinary third-party analytics requests are blocked. Event tracking also covers the documented page activity and, while Track Clicks is on, searches made through your site's search form. Search terms are limited to 200 characters. External services below lists the fields sent with each event. Cookieless analytics and First-Party Delivery General website analytics are cookieless on new installations. Track Returning Visitors is optional and disabled by default. Outbound click tracking can use random visitor and session identifiers when someone clicks an external link. With returning-visitor tracking off, those identifiers stay in memory for the current page. Outbound tracking can be disabled independently. First-Party Delivery is available on supported DevDome plans. When enabled, the analytics script is served from your own domain and events are relayed through your WordPress server using randomized paths specific to your site. This can reduce data loss caused by browser extensions and ad blockers that target known third-party analytics domains. No tracking method guarantees detection of every visit. Tracking settings and privacy controls You control collection through separate settings: Administrators and editors are excluded by default on new installations. You can exclude additional WordPress roles. The browser Do Not Track signal is respected by default. DevDome Analytics does not collect post content, WordPress user accounts, customer data, order data or activity inside wp-admin. It does not collect visitor form field values except the site's own search terms when tracking and click tracking are enabled. Full transmission and storage details appear below. Hosted reports without WordPress analytics tables DevDome is a lightweight Google Analytics alternative for WordPress. Analytics events are processed by the hosted DevDome Analytics service, with no custom analytics tables or analytics event storage inside your WordPress database. The WordPress Overview tab shows key metrics. Your DevDome account provides full traffic, referral, click, location, device and crawler reports. No visitor data is tracked or sent until the site is connected. The DevDome Tools dashboard's plugin catalog request and the connection-status check on the plugin's own screen are described under External services. AI and agent support On WordPress 6.9 and newer, DevDome Analytics registers WordPress Abilities for: Compatible AI agents and MCP clients can discover and use these abilities when the site exposes them, for example through the official WordPress MCP Adapter. Every ability runs the same code as the plugin screen under the same administrator capability. Disconnect and data reset require explicit confirmation and are annotated destructive. Agent output never carries email addresses or the site token. On an unconnected site, only abilities you deliberately invoke contact DevDome: the confirmed connect-link request and the connection test. The pre-connection requests are detailed under External services.

安装:

  1. Install and activate the plugin from Plugins > Add New.
  2. Open DevDome > Analytics.
  3. Select Connect Via DevDome Account and approve the link on devdome.com.
  4. Review the Settings tab and enable only the tracking features you want.

屏幕截图:

  • Plugin settings: cookieless tracking, outbound clicks, AI referrals, bot visits, Do Not Track and admin exclusion.
  • DevDome Analytics dashboard: WordPress visitor statistics for 30 days with visits, unique visitors, pageviews, clicks and bot hits counted separately from humans, plus the pages table.
  • Countries: world map and per-country visits, visitors, bot hits, clicks and pageviews.
  • Pages report: per-page visits, visitors, pageviews, referrers, outbound click tracking, countries, browsers, OS and devices.
  • Referrers report: traffic sources for human visitors, search engines, social networks, AI assistants and other sites.
  • Devices report: desktop, mobile and tablet with pageviews, visitors, clicks, countries, browsers, OS, top pages and referrers.

常见问题:

Do I need a DevDome account?

Yes. DevDome Analytics connects WordPress to the hosted DevDome Analytics service, where analytics events are processed and full reports are displayed. A free plan is available. No visitor data is collected until you connect the site.

Does it remove all bot traffic from visitor reports?

It detects known bots and AI crawlers and reports them separately from human visitors. Unknown, new or deliberately disguised bots may not always be identifiable.

Is anything sent before I connect?

No visitor data is sent. Before the site is connected, the tracking script is not added and no analytics events are sent. Opening the plugin's own screen can send a connection-status check containing only this site's domain and secret token. This lets a site already connected on devdome.com appear connected here without another connect step. The DevDome Dashboard also requests the plugin catalog, sending only the bundled core version. An error report is sent only if you press "Report this error". External services lists these requests and the connection requests you deliberately initiate.

Does visitor tracking set cookies?

General traffic tracking is cookieless on new installations. Returning-visitor tracking is optional and disabled by default. Outbound-link tracking keeps its random IDs in memory only while Track Returning Visitors is off. With it on, they are stored like the page tracker's IDs. See "What is stored on my site and on a visitor's device?" below for details.

Can I exclude myself and my team?

Yes. Logged-in administrators are excluded by default through Do Not Track Admins, and new installations also exclude the Editor role. You can exclude any additional WordPress role.

Will it slow down my site?

The tracking script loads asynchronously and does not block page rendering. The plugin does not write analytics events to your WordPress database.

Does it work with caching plugins?

Yes. The tracking snippet is the same for every visitor, so it works with full-page caching. Connecting or disconnecting also clears common page caches so the change is applied.

Which crawlers can it report?

The current detection list includes GPTBot, ChatGPT-User, ClaudeBot, PerplexityBot, Google-Extended, Bytespider, CCBot, Googlebot, bingbot, Slurp, DuckDuckBot, Baiduspider, YandexBot, AhrefsBot, SemrushBot, MJ12bot, DotBot and Screaming Frog. The plugin reports detected crawlers; it does not block them.

What happens when I disconnect?

Tracking stops immediately. You can also delete the site's hosted analytics data when disconnecting or by selecting Reset Analytics. Data that remains inactive is deleted automatically after 90 days.

Does it support WordPress multisite?

Yes. Settings and the connection are per site: each site is connected from its own Analytics screen. On a subdomain or mapped-domain network, each site has its own Site ID and reports. On a subdirectory network, every site shares the main site's domain and therefore one Site ID, one secret token and one report. Connecting or disconnecting on a subdirectory network requires a network administrator.

Where do I see site stats and who is online?

The WordPress Overview tab shows key metrics, including live visitors. This shows how many visitors are active, without identifying their WordPress accounts. Full traffic, referral, click, location, device and crawler reports are available in your DevDome account.

What is stored on my site and on a visitor's device?

What is stored on your site. Roughly thirty option rows hold the tracking switches, service addresses, this site's ID and secret token, your Account ID and account email, and the connection timestamp. For First-Party Delivery, they also hold the switch and the randomized path and file names generated for this site. On a site DevDome set up itself, they also hold the relay credential DevDome issued to it. When First-Party Delivery is on, two JavaScript files are placed under your uploads folder: the tracking script and bundled bot detector, both copied from the plugin's own package. Both are removed at uninstall using the names the plugin stored. One more row can appear after a plugin update on a host where the plugin folder belonged to another system user. The shared DevDome core copies the folder so WordPress can update it, keeps the old folder hidden under a dot name in wp-content/plugins because the web server cannot delete it, and records its fingerprint in one option row so DevDome Malware Scanner recognises it. That hidden folder loads nothing; your server administrator can remove it. The fingerprint option row is not removed at uninstall in this version. There are no custom tables, post meta, user meta or stored analytics events. Short-lived transients hold:

  • A connect handle for 10 minutes.
  • The cached bot-visit figure for 1 hour.
  • The cached First-Party Delivery plan answer for a day.
  • Flood counters for /dd-e and First-Party relay endpoints for 2 minutes, keyed by an MD5 hash of the visitor's IP address.
Public paths the plugin adds. There are up to four:
  • /dd-e, only while connected, accepts the outbound-click beacon described in External services. It answers empty to everything else, requires the browser's own same-site Origin header, ignores requests from excluded roles, is rate limited per IP address and stores nothing.
  • The First-Party Delivery relay, only while that switch is on, uses a randomized path unique to your site. It accepts the tracking events described in External services under the same rules and stores nothing. Its own per-IP limit runs when the site has a persistent object cache; without one, the DevDome service's per-site limit applies.
  • /.well-known/devdome-analytics.txt, only while connected, returns one short line of fixed text so DevDome can confirm the plugin is installed on the connected domain.
  • /.well-known/devdome-connect-proof.txt returns a one-way SHA-256 fingerprint of this site's secret token, never the token itself, so DevDome can confirm during connection that the request came from this site.
What is stored on a visitor's device. Two independent settings decide this. Track Returning Visitors is off on new installations. While off, the DevDome tracking script writes no cookie, localStorage or sessionStorage. Unique visitors are still counted using an identifier DevDome derives on its server from the site, date, IP address and user agent, combined with a secret key. It changes daily, differs per site and cannot be reversed to identify a person. A visitor who returns tomorrow counts as new. Turning the setting on stores a random visitor ID in a first-party cookie and localStorage, plus a session ID in sessionStorage. This recognises returning visitors across days and ties a click back to its visit. With the setting on, events the browser could not deliver because of a network interruption are kept in localStorage, up to fifty, and sent on the next page load. With it off, nothing is queued. These are random values with nothing personal in them, but they use storage on a visitor's device, so you may need visitor consent for it. The setting explains this where you switch it on. Track Outbound Links is on by default. The built-in click detector counts clicks on links that leave your site. With Track Returning Visitors off, its two random IDs stay in memory for the current page and nothing is stored on the device. With Track Returning Visitors on, they are stored like the page tracker's IDs so the outbound click can be tied to the same visit. Sites upgrading from an earlier version keep returning-visitor tracking on, exactly as before. Nothing changes on a live site until you decide otherwise. IP addresses. The plugin never stores a visitor's IP address on your site in readable form. The address reaches DevDome in two ways: the tracking script connects from the visitor's browser, as with any web request; and relayed outbound-click and First-Party Delivery events deliberately carry the visitor's real address so visits are not all attributed to your server. DevDome uses it for geolocation and per-visitor counts. How to turn things off. Enable Tracking is the master switch. Turning it off stops all collection. Track Clicks, Track Outbound Links, Track AI Referrals and Track Bot Visits can each be switched off independently. Do Not Track Admins is on by default. Excluded roles lets you name any role that must never be tracked; new installations start with Administrator and Editor. Respect Do Not Track is on by default and honours the browser signal. How to remove your data. Disconnect stops everything immediately: the tracking script is no longer added to pages, /dd-e stops relaying, and the domain-verification file is no longer served. To delete data already collected by DevDome, press Reset Analytics or tick "Also delete my data on DevDome" while disconnecting. Otherwise, DevDome deletes it automatically after 90 days of inactivity. On your own site, there is no analytics data to clean up beyond the option rows listed above. The plugin creates no tables and stores no analytics data locally.

更新日志:

1.1.2 1.1.1 1.1.0 1.0.8 1.0.7 1.0.6 1.0.5 1.0.4 1.0.3 1.0.2 1.0.1 1.0.0