
LukStack Uptime Monitor Security & Risk Analysis
wordpress.org/plugins/lukstack-uptime-monitorMonitor multiple websites for uptime, performance, and SSL certificate expiration. Get instant alerts via email, Slack, or Discord when issues occur.
Is LukStack Uptime Monitor Safe to Use in 2026?
Generally Safe
Score 100/100LukStack Uptime Monitor has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "lukstack-uptime-monitor" v2.0.2 plugin exhibits a mixed security posture. On the positive side, it demonstrates good practices in preventing common vulnerabilities, with a high percentage of SQL queries using prepared statements and nearly all output being properly escaped. The absence of known historical vulnerabilities further suggests a generally well-maintained codebase. However, a significant concern arises from the plugin's attack surface. All four identified AJAX handlers lack authentication checks, presenting a substantial risk of unauthorized access or execution of plugin functions.
The static analysis also revealed a critical taint flow with unsanitized paths. While the number of such flows is low (one out of three analyzed), the critical severity and unsanitized nature of the path indicate a potential for directory traversal or arbitrary file access vulnerabilities, depending on how the path is handled downstream. The presence of external HTTP requests also warrants attention, as these could be exploited if not properly validated or secured.
In conclusion, the plugin has strengths in its robust handling of SQL and output, and a clean vulnerability history. Nevertheless, the critical taint flow and the unprotected AJAX endpoints are serious weaknesses that significantly elevate the risk profile. These specific issues require immediate attention to mitigate potential security breaches.
Key Concerns
- AJAX handlers without auth checks
- Critical taint flow with unsanitized paths
LukStack Uptime Monitor Security Vulnerabilities
LukStack Uptime Monitor Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
LukStack Uptime Monitor Attack Surface
AJAX Handlers 4
WordPress Hooks 19
Scheduled Events 1
Maintenance & Trust
LukStack Uptime Monitor Maintenance & Trust
Maintenance Signals
Community Trust
LukStack Uptime Monitor Alternatives
LMN Site Monitor
lmn-site-monitor
A lightweight WordPress uptime and SSL monitoring plugin with email alerts, latency tracking, and dashboard widget.
Super Monitoring
website-monitoring
Monitor your website uptime and basic functions with www.supermonitoring.com and access your reports and settings directly in your WordPress panel.
WPMissionControl
wpmissioncontrol
Monitor uptime, SSL, domain, integrity, malware, visual changes, activity, and errors. Lightweight client. Requires a WPMissionControl account.
Prouptime – Uptime Monitoring & Alerts
prouptime
Prouptime monitors your wordpress site and alerts you when it is unreachable or returns an error.
StatusCake
wpstatuscake
Easy integration of StatusCake into your WordPress website.
LukStack Uptime Monitor Developer Profile
1 plugin · 0 total installs
How We Detect LukStack Uptime Monitor
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/lukstack-uptime-monitor/assets/css/admin.css/wp-content/plugins/lukstack-uptime-monitor/assets/js/admin.js/wp-content/plugins/lukstack-uptime-monitor/assets/css/style.css/wp-content/plugins/lukstack-uptime-monitor/assets/js/chart.min.js/wp-content/plugins/lukstack-uptime-monitor/assets/js/admin.js/wp-content/plugins/lukstack-uptime-monitor/assets/js/chart.min.jslukstack-uptime-monitor/assets/css/admin.css?ver=lukstack-uptime-monitor/assets/js/admin.js?ver=lukstack-uptime-monitor/assets/css/style.css?ver=lukstack-uptime-monitor/assets/js/chart.min.js?ver=HTML / DOM Fingerprints
lukstack-uptime-monitor-admin-pagelukstack-dashboard-widget<!-- LukStack Uptime Monitor --><!-- End LukStack Uptime Monitor -->data-lukstack-chart-datadata-lukstack-site-idlukstack_admin_paramslukstack_chart_data/wp-json/lukstack/v1/sites/wp-json/lukstack/v1/logs