How to Export a Client Security Report
The security report gives you a structured CSV snapshot of every security setting on the site — ideal for client reporting, audits, and compliance documentation.
What is Included in the Report
The exported CSV contains a complete audit of the site's security posture at the time of export, organised into sections:
- Plugin and WordPress versions, PHP version, report timestamp, and site URL
- Multisite and network-managed status
- All hardening settings: XML-RPC, file editor, WP version, author enumeration, REST endpoints
- Login settings: custom URL status, slug value, brute force limits, lockout configuration, email alerts
- Spam settings: comment status, moderation mode, pingback status
- HTTP security headers status
- Current license plan and upgrade URL
How to Export the Report
- Navigate to Tools → WP 1 Click LockDown.
- In the right sidebar under "Security Report", click "Export CSV Report".
- Your browser will download a file named wp1clicklockdown-security-report-YYYY-MM-DD-HHmmss.csv.
- Open in Excel, Google Sheets, or Numbers to view and format.
CSV report export requires a Starter plan ($99/year, 5 sites) or higher. Free users see an upgrade prompt in the sidebar.
Using the Report for Client Communication
The CSV is designed to be dropped into a spreadsheet, reformatted with your agency branding, and sent to clients. It gives clients a tangible record of the security work you have done. Agency plan users can create white-label branded versions of this output.
Export a report before and after applying the preset to show clients the "before" state. This makes the value of your security service immediately visible.
Was this article helpful?
Need more help? Contact our support team →