Updates for the free version of WP Ghost (Hide My WP)
WP Ghost Free
= 7.0.09 (17 August 2026) =
* New - AI Security Explanations: every finding on the Security Check page explained for your own website, in plain language
* New - AI Security Explanations rank your findings by what actually exposes your site, using your server type, your rules and your security mode
* New - A plain-language summary of your whole website, above the list of what to fix
* New - Open Details on any finding to read why it matters on your server and what an attacker would do with it
* Fix - Fix it now works for the Security Check tasks that change a plugin setting, such as Hide Old Paths, Hide Common Files, Hide wp-login and Disable XML-RPC
* Fix - Fix it no longer answers with "Ajax is not loading correctly. Clear all cache and try again." after the paths have been changed
* Fix - The Security Check summary now shows whether your paths are working instead of always reporting that they have not been checked
* Update - Published a coordinated vulnerability disclosure policy (SECURITY.md), a list of the third-party components we bundle (sbom.json), and a declared 5 year security update period
= 7.0.09 (17 August 2026) =
* New - AI Security Explanations: every finding on the Security Check page explained for your own website, in plain language
* New - AI Security Explanations rank your findings by what actually exposes your site, using your server type, your rules and your security mode
* New - A plain-language summary of your whole website, above the list of what to fix
* New - Open Details on any finding to read why it matters on your server and what an attacker would do with it
* Fix - Fix it now works for the Security Check tasks that change a plugin setting, such as Hide Old Paths, Hide Common Files, Hide wp-login and Disable XML-RPC
* Fix - Fix it no longer answers with "Ajax is not loading correctly. Clear all cache and try again." after the paths have been changed
* Fix - The Security Check summary now shows whether your paths are working instead of always reporting that they have not been checked
* Update - Published a coordinated vulnerability disclosure policy (SECURITY.md), a list of the third-party components we bundle (sbom.json), and a declared 5 year security update period