Plugin Health Check Security & Risk Analysis

wordpress.org/plugins/plugin-health-check

Adds checks to the Site Health screen to test installed plugins and themes.

20 active installs v0.0.5 PHP 7.2+ WP 5.2+ Updated Aug 6, 2019
health-checksite-healthsite-health-check
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Plugin Health Check Safe to Use in 2026?

Generally Safe

Score 85/100

Plugin Health Check has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 6yr ago
Risk Assessment

The plugin 'plugin-health-check' v0.0.5 exhibits an exceptionally strong security posture based on the provided static analysis and vulnerability history. The absence of any identified attack surface points, dangerous functions, direct SQL queries, or unsanitized taint flows is highly commendable and indicates robust coding practices. Furthermore, the complete absence of any historical vulnerabilities, including critical and high severity ones, suggests a mature and well-maintained codebase. The plugin also demonstrates good practices by ensuring all identified outputs are properly escaped and that nonce checks are implemented where appropriate, although capability checks are not explicitly noted as present, which could be a minor area for enhancement in a more complex plugin.

Overall, this plugin appears to be very secure with no immediate exploitable risks identified in the code analysis or historical data. The lack of any concerning signals in the static analysis, coupled with a spotless vulnerability history, positions this plugin as a low-risk option. While the absence of capability checks is a minor point, it's overshadowed by the plugin's otherwise excellent security hygiene. Users can have a high degree of confidence in the security of this plugin.

Vulnerabilities
None known

Plugin Health Check Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Plugin Health Check Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
2 escaped
Nonce Checks
2
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped2 total outputs
Attack Surface

Plugin Health Check Attack Surface

Entry Points0
Unprotected0
Maintenance & Trust

Plugin Health Check Maintenance & Trust

Maintenance Signals

WordPress version tested5.2.24
Last updatedAug 6, 2019
PHP min version7.2
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs20
Developer Profile

Plugin Health Check Developer Profile

kero

1 plugin · 20 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Plugin Health Check

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/plugin-health-check/assets/css/plugin-health-check.css/wp-content/plugins/plugin-health-check/assets/js/plugin-health-check.js
Script Paths
/wp-content/plugins/plugin-health-check/assets/js/plugin-health-check.js
Version Parameters
plugin-health-check/assets/css/plugin-health-check.css?ver=plugin-health-check/assets/js/plugin-health-check.js?ver=

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Plugin Health Check