Subscription Settings scan
What It Checks
This scanner checks if your subscription settings are set correctly. If user registrations are open on your site, it verifies that the default user role is set to "Subscriber" (or the minimum role) and that your registration page is protected from bots.
Why It Matters
If user registrations are open, the default user role should be "Subscriber" (or the minimum role). Moreover, your registration page should be protected from bots. Without proper protection, bots can create accounts automatically, which can lead to spam or security issues.
What You'll See
Good Status:
- Your subscription settings are set correctly.
- A captcha module has been activated to block bot registration.
- The user role for new registrations has been set to Subscriber.
Bad Status:
- The default role in your installation is Administrator and it should be Subscriber, or registrations should be closed.
- The registration page is not protected from bots.
- The default role is not Subscriber in [number] of your sites.
Warning:
- Unable to determine the status of your subscription settings. But you can activate the "Use a Captcha on login page" protection from the Users & Login module.
- You have a big network, SecuPress must work on some data before being able to perform this scan.
How to Fix
Activate the option "Use a Captcha on login page" in the Users & Login module. Set the default user's role to Subscriber. This ensures that new users don't automatically get administrator privileges.
Membership Settings