Panel access
Two-factor authentication, SSH management, credential rotation and audit logging help protect administrative access.
Security
EasyCP is designed to reduce unnecessary privilege, create clearer boundaries around sensitive operations and fit into the security stack hosting providers already run.
Privilege separation
EasyCP separates the ordinary web application from root-required server operations. That narrows the privilege exposed to day-to-day application code and creates a deliberate boundary for sensitive actions.
The main EasyCP service runs as the dedicated easycp user.
Root-level work is handled by a separate privileged component with scoped operations.
Privileged requests can be validated and recorded instead of exposing an unrestricted root shell path.
Layered defence
EasyCP brings together the controls operators need to protect the panel, hosted sites and the server around them.
Two-factor authentication, SSH management, credential rotation and audit logging help protect administrative access.
WAF / ModSecurity, firewall controls and bot management give you layers around web-facing services.
ClamAV, malware scanning, CrowdSec and Imunify360 integrations extend protection beyond the panel itself.
Security operations
Security is easier to operate when it sits beside logs, process visibility, network status, raw access data, service health and diagnostics.
“Security by design” means reducing the amount of code that needs privilege, not just adding another firewall switch.
EasyCP architecture principleSecurity, backups, performance, billing and email integrations are part of the operating model.