Free and premium WordPress security + performance plugins. Built by one developer in Tennessee. No fear-driven paywalls on security.
novaheaven.io · Nova Pulse (blog) · The Codex (docs) · Wikidata
Only two plugins will ever be free, and both stay free forever:
- Nova Core — the shared framework every Nova plugin runs on
- Nova Scan — the WordPress malware scanner
Every other Nova Heaven plugin is paid, and the paid ones fund the free ones. This lets every WordPress site have professional-grade malware detection without a subscription, while the performance + advanced tooling pays the bills.
| Plugin | What it does | Price |
|---|---|---|
| Hyper Nova | Advanced caching engine with intelligent warming, surgical purge, multi-CDN support. | Paid |
| Nova Ascend, Nova Burst, Nova Shield, others | Coming — performance, frontend security, SEO intelligence. | Paid |
| Nova Scan | WordPress malware scanner with a learning detection engine. Catches obfuscated and polymorphic malware that signature scanners miss. | Free forever |
| Nova Core | Shared framework all Nova plugins depend on. Handles updates, licensing, account. | Free forever |
Most WordPress security tools sell fear. $99–$299 a year to tell you what went wrong after it already went wrong. We think detection should be free and the quality should beat what the paid vendors ship.
Nova Scan catches malware Wordfence and Sucuri miss because it doesn't rely on signature databases. It understands what malicious code does, not just what it looks like. Real-world validation on infected sites shows industry-leading detection with near-zero false positives.
Latest from Nova Pulse:
- How to Remove Malware from WordPress (Without Paying $500 to a Cleanup Service)
- Why Your WordPress Site Redirects to Spam Sites (And How to Find What's Doing It)
- WordPress Security Checklist: 15 Checks That Actually Matter (And 12 That Don't)
- The Two Things Every WordPress Scanner Gets Wrong on Real Sites
- What Happens in the First 7 Minutes After Your WordPress Site Gets Hacked
- Install the Nova Core framework
- Install Nova Scan (or any other Nova plugin)
- Create a free account to activate
- Run your first scan
About two minutes from signup to first scan. Works on shared hosting (Hostinger, SiteGround, Bluehost — we test there). No shell access needed.
llms.txt— structured overview of Nova Heaven, products, comparisons, key factsllms-full.txt— full content dump of every blog post + doc, concatenated for single-pass ingestion
| vs | Their price | Our price | Our detection vs theirs |
|---|---|---|---|
| Wordfence Premium | $119/yr | Free | Catches more obfuscated malware |
| Sucuri | $199/yr | Free | Comparable detection, faster scans |
| Patchstack | $99/yr | Free | Overlapping vuln feed, broader file scanning |
SephX — solo developer, Tennessee, USA. 25 years of WordPress experience.
- GitHub
- Ko-fi (if the free plugins save you money)
- Wikidata: SephX
- General: novaheaven.io/en/contact
- Community: Telegram
- Security disclosure: see
/security
Nova Heaven is Q139409209 on Wikidata. Nova Scan is Q139409241.