Table of Contents

Security AI for Magento 2 User Guide

For a shopper-friendly overview of features and setup, see the Magento 2 Security AI User Guide - CMS Content Risk Scanning on the storefront. This wiki page remains the full technical documentation.

Extension context

This is a Toweringmedia Magento 2 extension guide for the current admin extension catalog.

Product page

Overview

Security AI scans Magento CMS content — pages, blocks, and related files — for risky or injected markup and reports what it finds as reviewable findings. It runs on a schedule within a spend budget you set, and can alert staff when new findings appear. It is a detection and reporting tool: it surfaces problems for a human to action.

What this extension does

Requirements

Installation

Install and validate in a staging environment before production rollout.

cd /path/to/magento
composer require toweringmedia/module-security-ai
 
bin/magento module:enable Toweringmedia_SecurityAi
bin/magento setup:upgrade
bin/magento setup:di:compile
bin/magento setup:static-content:deploy -f
bin/magento cache:flush

Currently published versions at the time of writing:

Toweringmedia packages are served from the licensed Composer repository https://composer.toweringmedia.com/. If Composer reports that the package could not be found, your credentials are missing or the license does not cover this package yet. Retrieve your keys from My Account on toweringmedia.com, or contact support@toweringmedia.com.

General installation notes that apply to every Toweringmedia extension are in the installation guide.

Configuration

Basic usage and what to expect

  1. Configure AI Core first, then set the scan scope and budget in Content Security AI.
  2. Run an initial scan and review the findings grid — expect some false positives on a first pass while you tune scope.
  3. Set up alerts once the findings are at a level your team can act on.

Notes and limitations

Validation checklist

Troubleshooting

Support