Security

We'll keep your site secure, up to date, and working for your users.

For starters, we'll vigilantly monitor your site for security issues and software updates. When a new vulnerability is disclosed for WordPress, Drupal, Backdrop, CiviCRM, PHP, or any other software running on your server, a GR developer will evaluate the update as it pertains to your specific site.

If we determine the update is urgent, we'll apply it, test it, and launch it right away. If it's not truly urgent for you (often security vulnerabilities are narrowly conditional), we hold off and apply the update during your next regularly-scheduled round of security updates.

We'll help you fight back against spammers, hackers, card skimmers, and evil bots

Whether it's grey-market bots slamming your site and slowing things to a crawl or credit card thieves testing stolen cards on your payment forms, life on the internet is full of hazards and annoyances. We've seen it all before, and we'll work with you to take sustainable, right-sized responses to the bad actors who will show up from time to time. 

We'll work with you on proactive measures, like setting up DMARC policies and configuring DDOS protection through Cloudflare. If you do end up with a traffic surge that temporarily paralyzes your site, our automated systems will let us know, and we'll take escalating steps to get your site back online and close down avenues of attack. Spammers flooding your contact forms? We'll experiment with captchas and honeypots, and help you clean up your submission data. Has your site been fully hacked before we came along? We can help with that, too—see our Rescue page!

Whatever is happening, we'll give you plain-language explanations, we'll explain your options, and we'll get your site back online.

A balanced, human approach to security

It's our role to be a good steward of your resources, and to make pragmatic recommendations that are cost-effective and right-sized for your organization and the challenges you face. Our standard security practices fit the needs of most of our clients. In cases where an organization has greater security needs, we're here to help our clients make responsible decisions to keep their data and their people safe.

Our Security Services

01

Prevention

Cloudflare configuration

Amazon Simple Email Service Spam Monitoring

Strict server file permissioning

Nightly database & file backups

02

Monitoring

Security updates

Website uptime

Database & file backup verification

Server email deliverability