A Free SEO Site Audit For Woocommerce by Benchmark Hero Security & Risk Analysis

wordpress.org/plugins/benchmark-hero-quick-site-audit-for-your-ecommerce

A free store audit pinpointing what you can easily do to improve your Woocommerce store today!

0 active installs v1.0.1 PHP 7.0+ WP 5.0+ Updated Nov 4, 2024
ecommercegoogle-adsseosite-auditwoocommerce
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is A Free SEO Site Audit For Woocommerce by Benchmark Hero Safe to Use in 2026?

Generally Safe

Score 92/100

A Free SEO Site Audit For Woocommerce by Benchmark Hero has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The plugin "benchmark-hero-quick-site-audit-for-your-ecommerce" v1.0.1 exhibits a mixed security posture. On the positive side, it demonstrates good practices regarding SQL queries, utilizing prepared statements exclusively, and ensures all output is properly escaped, preventing common cross-site scripting vulnerabilities. There are no reported vulnerabilities in its history, and no dangerous functions or file operations were detected. This suggests a solid foundation in handling sensitive code aspects.

However, significant security concerns arise from the unprotected AJAX handlers. The presence of two AJAX entry points without authentication or capability checks creates a substantial attack surface. This means any unauthenticated user could potentially trigger these functions, leading to unintended actions or information disclosure if the functionality within these handlers is not inherently secure. The lack of nonce checks further exacerbates this risk, as it opens the door for Cross-Site Request Forgery (CSRF) attacks.

The plugin's vulnerability history is notably clean, indicating a potentially well-maintained or recently developed component. However, this absence of past issues should not overshadow the critical risks identified in the static analysis. The lack of nonce and capability checks on AJAX handlers are immediate and actionable concerns that require attention.

Key Concerns

  • Unprotected AJAX handlers
  • Missing nonce checks on AJAX handlers
  • Missing capability checks on AJAX handlers
Vulnerabilities
None known

A Free SEO Site Audit For Woocommerce by Benchmark Hero Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

A Free SEO Site Audit For Woocommerce by Benchmark Hero Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
12 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
1
Bundled Libraries
0

Output Escaping

100% escaped12 total outputs
Attack Surface
2 unprotected

A Free SEO Site Audit For Woocommerce by Benchmark Hero Attack Surface

Entry Points2
Unprotected2

AJAX Handlers 2

authwp_ajax_sybm_run_analysissrc\storeya_benchmark_ajax_handler.php:5
authwp_ajax_sybm_get_job_statussrc\storeya_benchmark_ajax_handler.php:6
WordPress Hooks 3
actionadmin_menusrc\storeya_benchmark_admin.php:5
actionadmin_enqueue_scriptssrc\storeya_benchmark_admin.php:6
actionsend_repeated_report_requestsrc\storeya_benchmark_cron_handler.php:5

Scheduled Events 1

send_repeated_report_request
Maintenance & Trust

A Free SEO Site Audit For Woocommerce by Benchmark Hero Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedNov 4, 2024
PHP min version7.0
Downloads2K

Community Trust

Rating100/100
Number of ratings1
Active installs0
Developer Profile

A Free SEO Site Audit For Woocommerce by Benchmark Hero Developer Profile

storeya

5 plugins · 1K total installs

86
trust score
Avg Security Score
88/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect A Free SEO Site Audit For Woocommerce by Benchmark Hero

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/benchmark-hero-quick-site-audit-for-your-ecommerce/css/admin.css/wp-content/plugins/benchmark-hero-quick-site-audit-for-your-ecommerce/js/admin.js/wp-content/plugins/benchmark-hero-quick-site-audit-for-your-ecommerce/js/admin-ajax.js
Script Paths
/wp-content/plugins/benchmark-hero-quick-site-audit-for-your-ecommerce/js/admin.js/wp-content/plugins/benchmark-hero-quick-site-audit-for-your-ecommerce/js/admin-ajax.js
Version Parameters
benchmark-hero-quick-site-audit-for-your-ecommerce/css/admin.css?ver=benchmark-hero-quick-site-audit-for-your-ecommerce/js/admin.js?ver=benchmark-hero-quick-site-audit-for-your-ecommerce/js/admin-ajax.js?ver=

HTML / DOM Fingerprints

CSS Classes
sybm-admin-stylessybm-admin-scriptssybm-admin-ajax-scripts
JS Globals
sybmVariables
FAQ

Frequently Asked Questions about A Free SEO Site Audit For Woocommerce by Benchmark Hero