| 开发者 | drepar |
|---|---|
| 更新时间 | 2026年8月26日 00:37 |
| PHP版本: | 8.1 及以上 |
| WordPress版本: | 7.1 |
| 版权: | GPLv2 or later |
| 版权网址: | 版权信息 |
ASSET-LICENSE.txt and LICENSE.txt.
SteadWeave is a separate SaaS service. Service plans may differ by the number of websites that can be managed. The Companion does not hide premium PHP code or unlock local plugin functionality with a license key.
What the Companion does
No. Activation creates local cryptographic installation material but does not contact SteadWeave. Scheduled authenticated heartbeats are enabled only after a valid pairing is completed. The first enrollment request is sent only after an administrator confirms the external-service disclosure.
The official production endpoint is https://app.steadweave.com/. A production installation cannot redirect normal SteadWeave traffic to an arbitrary server through the standard plugin interface.
They are callback endpoints used by SteadWeave to verify control of the WordPress installation and complete pairing before normal service credentials exist. The proof endpoint is available only during a short enrollment window. Both callback paths are rate-limited, and enrollment completion is cryptographically authenticated in the route permission callback before the write callback is allowed to run.
Only through the bounded Assisted Remediation features described above, after an authorized SteadWeave account user explicitly requests a supported Smart Fix. The Companion does not accept arbitrary code or arbitrary content-write commands.
No. SteadWeave Companion is the complete GPLv2-or-later WordPress plugin and contains no hidden premium PHP functionality or separate Lite edition. SteadWeave Free provides complete monitoring for one website, free forever, with no trial period or expiration. Paid service plans are available when you need to monitor more websites.
Local pairing credentials, synchronized connection state and the local Smart Fix anti-replay ledger are removed, and scheduled heartbeats are stopped. Data already held by the SteadWeave service is handled according to the service Privacy Notice and retention settings.
Documentation is published at https://docs.steadweave.com/.
permission_callback before the write callback executes.init; schedules are managed at activation, successful pairing, reset and deactivation boundaries.Tested up to declaration to WordPress 7.1.steadweave-companion WordPress.org slug.