TechnologyWisdom Upload Guard gives administrators fine-grained control over media uploads in WordPress by enforcing restrictions based on
user roles.
You can define:
- Maximum upload file size (in MB)
- Maximum image width and height (in pixels)
- Allowed MIME types (JPG, PNG, WEBP, GIF, AVIF, PDF, MP4, and more)
All rules are applied before the file is uploaded, preventing unwanted or oversized files from entering your media library.
Users with multiple roles receive the
strictest combined limits. MIME types are validated with WordPress filetype checks (not only the browser-reported type). A dedicated
Guest setting applies to visitors who are not logged in, for example file upload fields on public forms. Upload Guard rules override supported form upload restrictions, ensuring your configured file type, size, and image dimension rules are always enforced.
Key Features
- Role-based upload restrictions with per-role enable/disable toggle
- Guest (not logged in) upload limits for public form uploads
- Upload rules enforced across Media Library uploads and supported frontend forms
- File size limits per role
- Image dimension validation (width and/or height)
- MIME type allowlist with WordPress filetype detection
- In-plugin support form and Technology Wisdom support portal integration with site owner consent
- Settings removed on uninstall
Note:
Allowing SVG is optional and risky unless you also use a trusted SVG sanitizer.
If you upload a plugin ZIP via Plugins → Add New, that ZIP is blocked unless ZIP is allowed for your admin role in Upload Guard settings.
Upgrade to TW Security Toolkit
Need more advanced WordPress file protection and security monitoring features?
TW Upload Guard is also available as part of the premium TW Security Toolkit. The Security Toolkit brings login hardening, content workflow controls, file protection, and security monitoring into one admin menu — all without custom development.
Premium Features Include
- Secure Login Path with a custom login URL
- Upload Guard with role-based file size, type, and dimension limits
- Login Alert & Tracker with last-login tracking and email alerts
- Disable File Editor to block theme and plugin editors
- Post Modifier Tracker showing who last edited content
- Link Expiration by date and/or click count
- CPT Revisions control per custom post type
- Post Approval Notifier with optional draft hold-for-approval
- Security Dashboard with recent activity overview
- Complete Audit Log with CSV/PDF export
- Failed Login Monitoring & Brute Force Protection
- IP Blacklist to block unwanted visitors
- Two-Factor Authentication (email OTP) and role policies
- Login History by User with advanced filters
- Email, Slack & Discord security notifications
- Scheduled Security Reports (daily, weekly, or monthly)
- Suspicious Activity Detection & Alerts
- Security Health Check with recommendations
- File Change Detection for important WordPress files
Whether you are hardening login access, protecting uploads and file editors, managing content approvals, or monitoring suspicious activity, TW Security Toolkit provides the tools needed to secure and oversee your WordPress site from a single plugin.
Upgrade to TW Security Toolkit and unlock a complete set of WordPress security features designed for growing websites and teams.
For full Premium details, pricing, and feature comparison, visit the
TW Security Toolkit.