LMN Site Monitor Security & Risk Analysis

wordpress.org/plugins/lmn-site-monitor

A lightweight WordPress uptime and SSL monitoring plugin with email alerts, latency tracking, and dashboard widget.

0 active installs v0.8.1 PHP 7.4+ WP 5.8+ Updated Mar 14, 2026
alertscronmonitoringssluptime
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is LMN Site Monitor Safe to Use in 2026?

Generally Safe

Score 100/100

LMN Site Monitor has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 20d ago
Risk Assessment

The "lmn-site-monitor" plugin v0.8.1 exhibits a generally strong security posture based on the provided static analysis. The absence of critical or high severity taint flows, along with 100% of SQL queries using prepared statements, indicates good development practices for database interactions. The plugin also demonstrates robust use of WordPress security features, with a significant number of nonce and capability checks present for its entry points. Furthermore, the high percentage of properly escaped output (90%) is a positive sign, reducing the risk of cross-site scripting vulnerabilities.

While the plugin has no recorded vulnerability history, which is a major strength, and a small, protected attack surface, there are a few areas that warrant attention. The presence of file operations and external HTTP requests, while not inherently insecure, represent potential avenues for vulnerabilities if not handled with extreme care. The static analysis doesn't explicitly detail the security of these operations, so a deeper manual review might be beneficial. The 10% of unescaped output, though a small proportion, could still expose the site to vulnerabilities if the unescaped data is user-controlled or sensitive. Overall, this plugin appears well-secured, but continuous vigilance and attention to the few potential weak points are recommended.

Key Concerns

  • Unescaped output present
  • File operations present
  • External HTTP requests present
Vulnerabilities
None known

LMN Site Monitor Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

LMN Site Monitor Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
20
185 escaped
Nonce Checks
14
Capability Checks
14
File Operations
5
External Requests
2
Bundled Libraries
0

Output Escaping

90% escaped205 total outputs
Data Flows
All sanitized

Data Flow Analysis

5 flows
admin_page (lmn-site-monitor.php:401)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

LMN Site Monitor Attack Surface

Entry Points3
Unprotected0

AJAX Handlers 3

authwp_ajax_lmnsimo_save_orderlmn-site-monitor.php:55
authwp_ajax_lmnsimo_toggle_pinlmn-site-monitor.php:56
authwp_ajax_lmnsimo_whoislmn-site-monitor.php:57
WordPress Hooks 19
actionadmin_menulmn-site-monitor.php:40
actionadmin_enqueue_scriptslmn-site-monitor.php:41
actionadmin_post_lmnsimo_add_sitelmn-site-monitor.php:44
actionadmin_post_lmnsimo_delete_sitelmn-site-monitor.php:45
actionadmin_post_lmnsimo_force_checklmn-site-monitor.php:46
actionadmin_post_lmnsimo_save_settingslmn-site-monitor.php:47
actionadmin_post_lmnsimo_check_alllmn-site-monitor.php:48
actionadmin_post_lmnsimo_save_widget_prefslmn-site-monitor.php:49
actionadmin_post_lmnsimo_export_csvlmn-site-monitor.php:50
actionadmin_post_lmnsimo_import_csvlmn-site-monitor.php:51
actionadmin_post_lmnsimo_bulk_actionlmn-site-monitor.php:52
actionadmin_initlmn-site-monitor.php:60
filtercron_scheduleslmn-site-monitor.php:61
actionphpmailer_initlmn-site-monitor.php:63
actionwp_mail_succeededlmn-site-monitor.php:64
actionwp_mail_failedlmn-site-monitor.php:65
actionadmin_noticeslmn-site-monitor.php:66
actionwp_dashboard_setuplmn-site-monitor.php:71
actionplugins_loadedlmn-site-monitor.php:72
Maintenance & Trust

LMN Site Monitor Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 14, 2026
PHP min version7.4
Downloads396

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

LMN Site Monitor Developer Profile

Francisco Moreno

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect LMN Site Monitor

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/lmn-site-monitor/assets/admin-theme.css/wp-content/plugins/lmn-site-monitor/assets/fonts/jetbrains-mono/jetbrains-mono.css/wp-content/plugins/lmn-site-monitor/assets/admin-theme.js
Script Paths
/wp-content/plugins/lmn-site-monitor/assets/admin-theme.js
Version Parameters
lmn-site-monitor/assets/admin-theme.css?ver=lmn-site-monitor/assets/fonts/jetbrains-mono/jetbrains-mono.css?ver=lmn-site-monitor/assets/admin-theme.js?ver=

HTML / DOM Fingerprints

CSS Classes
lm-tabslm-tabs alm-tabs a.is-activelm-tabpanellm-tabpanel.is-visiblelm-grid
Data Attributes
data-lm-monitor-site-id
JS Globals
window.LM_MONITOR_SETTINGS
FAQ

Frequently Asked Questions about LMN Site Monitor