Stop abuse before origin
Blocklists, allowlists, rate limits, and 404 bans run in Sitewrap so scanners never wake your Drupal host.
- IP block & allow lists
- Rate limits + 404 bans
- Rules sync to Sitewrap Edge
Sitewrap sits in front of Drupal so anonymous pages hit edge cache, /user and admin stay gated, and scanners die before PHP workers wake up.
/ anonymous HTML · cached /node/* cached when public /user/login gated /admin/* gated /core/* probe-hardened Drupal already does a lot. Sitewrap adds the visitor-facing edge: cache, firewall, form defense, and visibility without another full-stack migration.
Blocklists, allowlists, rate limits, and 404 bans run in Sitewrap so scanners never wake your Drupal host.
Gate admin and login surfaces until Sitewrap unlocks them with a passwordless magic link or short code — so random scans never reach the unlock screen.
Cache HTML and assets at Sitewrap Edge. Preload from your sitemap so first visitors already hit warm pages.
Detect HTML forms on proxied pages, harden submissions, and land clean leads in Sitewrap with field mapping.
See every visit in the Sitewrap request log, then ship the same event catalog to Mixpanel and GA4 without stacking more origin plugins.
Deploy selected pages, preload cache, and roll back from the dashboard — while your CMS stays the content source of truth.
Register the domain, exclude authenticated paths, warm the sitemap, then cut traffic.
Enter the public domain and current origin. Sitewrap verifies ownership and checks reachability.
Turn on firewall, admin gating, cache, and form protection. Exclude editor or checkout paths that must stay live to origin.
Point preload at your Drupal sitemap so key URLs are cached before you switch traffic.
Issue TLS, flip the A record, and operate from the dashboard — cache, firewall, forms, analytics, deploy.
Request logs, live users, Mixpanel/GA4, and deploys sit beside Drupal — not inside module sprawl.
Wrap Drupal properties next to WordPress microsites and static docs under one Sitewrap account.
No. Sitewrap sits in front of your existing Drupal origin. Keep your templates, apps, hosting, and editors — Sitewrap adds the edge layer.
Yes. Keep admin, editor, and other private paths origin-bound or gated. Public visitors get the cached, protected experience.
No. Firewall, cache, analytics, forms, deploy, and admin gating work in front of any CMS or static site. WordPress gets extra remaps and WAF defaults.
Yes. Wrap each client domain — whether Drupal, WordPress, or static — and manage cache, security, leads, and deploys from one Sitewrap account.
Create a Sitewrap account, gate admin, warm public pages, and point DNS.