
Integrity Checker Security & Risk Analysis
wordpress.org/plugins/integrity-checkerThe WordPress Integrity Checker checks your WordPress installation by detecting modified files, permissions issues and other common problems.
Is Integrity Checker Safe to Use in 2026?
Generally Safe
Score 100/100Integrity Checker has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "integrity-checker" v0.10.0 plugin exhibits a mixed security posture. While it benefits from a lack of documented vulnerabilities and a high percentage of SQL queries using prepared statements, several concerning areas warrant attention. The presence of the `unserialize` function, a known source of vulnerabilities, is a significant red flag, especially given the limited output escaping. Furthermore, the plugin exposes a REST API route without proper permission callbacks, creating an unprotected entry point that could be exploited to trigger the `unserialize` function or other unintended actions. The limited scope of taint analysis, reporting zero flows, might indicate a lack of thorough dynamic testing or that the plugin's design genuinely avoids complex data flow issues. However, the static analysis findings, particularly the `unserialize` function and the unprotected REST API endpoint, represent tangible risks that need mitigation.
Key Concerns
- Unprotected REST API route
- Dangerous function: unserialize
- Low percentage of output escaping
- Bundled library (DataTables) without version check
Integrity Checker Security Vulnerabilities
Integrity Checker Code Analysis
Dangerous Functions Found
Bundled Libraries
SQL Query Safety
Output Escaping
Integrity Checker Attack Surface
REST API Routes 7
WordPress Hooks 11
Maintenance & Trust
Integrity Checker Maintenance & Trust
Maintenance Signals
Community Trust
Integrity Checker Alternatives
SX User Name Security
user-name-security
SX User Name Security prevents WordPress from showing your real Login everywhere. It ovverides the body_class function, User Nicename, Nickname and Di …
Block wp-login
block-wp-login
This plugin completely blocks access to wp-login.php and creates a new secret login URL
Virus Finder
virus-finder
Find viruses in your WordPress easily. Virus scan, malware finder.
Reset Password Removed
reset-password-removed
Enhance the security of your blogs by preventing password reset over email function.
WP Security By Made I.T.
wp-security-by-made-it
Secure your WordPress Website.
Integrity Checker Developer Profile
1 plugin · 200 total installs
How We Detect Integrity Checker
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/integrity-checker/css/style.css/wp-content/plugins/integrity-checker/css/jqCron.css/wp-content/plugins/integrity-checker/css/font-awesome.min.css/wp-content/plugins/integrity-checker/css/jquery.dataTables.min.css/wp-content/plugins/integrity-checker/js/main.js/wp-content/plugins/integrity-checker/js/jquery.dataTables.min.js/wp-content/plugins/integrity-checker/js/jqCron.js/wp-content/plugins/integrity-checker/js/main.js/wp-content/plugins/integrity-checker/js/jquery.dataTables.min.js/wp-content/plugins/integrity-checker/js/jqCron.jsintegrity-checker/js/main.js?ver=integrity-checker/js/jquery.dataTables.min.js?ver=integrity-checker/js/jqCron.js?ver=integrity-checker/css/style.css?ver=integrity-checker/css/jqCron.css?ver=integrity-checker/css/font-awesome.min.css?ver=integrity-checker/css/jquery.dataTables.min.css?ver=HTML / DOM Fingerprints
jq-cron<!-- Integrity Checker -->data-tab-idintegrityCheckerApi/wp-json/integrity-checker/v1