Securicheck – Audit et Renforcement de Sécurité WordPress Security & Risk Analysis

wordpress.org/plugins/securicheck

Auditez et sécurisez votre WordPress en 1 clic : 40+ vérifications, protection brute force, masquage login, blocage IP automatique.

30 active installs v2.1.9 PHP 7.4+ WP 6.2+ Updated Mar 8, 2026
auditbrute-forcefirewallloginsecurity
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Securicheck – Audit et Renforcement de Sécurité WordPress Safe to Use in 2026?

Generally Safe

Score 100/100

Securicheck – Audit et Renforcement de Sécurité WordPress has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 26d ago
Risk Assessment

The securicheck v2.1.10 plugin exhibits a generally strong security posture, with most critical security practices being well-implemented. The static analysis reveals a low attack surface, with only one AJAX handler and no shortcodes or cron events. Furthermore, the plugin demonstrates excellent hygiene regarding SQL queries, with 95% using prepared statements, and a high rate of properly escaped output (98%). The absence of any known CVEs and a clean vulnerability history further bolster confidence in its security. However, the taint analysis did identify two flows with unsanitized paths, which warrants attention. While no critical or high severity issues were flagged in the taint analysis, any unsanitized path represents a potential gateway for malicious input if not properly handled downstream. Additionally, while the plugin implements some capability checks and nonce checks, the numbers are relatively low compared to the number of potential entry points. The existence of file operations and external HTTP requests, though not inherently problematic, require diligent review to ensure they are not being manipulated in a way that could lead to vulnerabilities, especially when combined with the unsanitized paths.

Key Concerns

  • Unsanitized path in taint analysis flows
  • Low number of nonce checks relative to entry points
  • Low number of capability checks relative to entry points
Vulnerabilities
None known

Securicheck – Audit et Renforcement de Sécurité WordPress Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Securicheck – Audit et Renforcement de Sécurité WordPress Code Analysis

Dangerous Functions
0
Raw SQL Queries
3
61 prepared
Unescaped Output
8
478 escaped
Nonce Checks
9
Capability Checks
3
File Operations
2
External Requests
17
Bundled Libraries
0

SQL Query Safety

95% prepared64 total queries

Output Escaping

98% escaped486 total outputs
Data Flows
2 unsanitized

Data Flow Analysis

4 flows2 with unsanitized paths
hpixl_securicheck_supprimer_audit (admin\Screen_audit.php:74)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Securicheck – Audit et Renforcement de Sécurité WordPress Attack Surface

Entry Points1
Unprotected0

AJAX Handlers 1

authwp_ajax_securicheck_hide_promo_bannersecuricheck.php:96
WordPress Hooks 28
actionadmin_menuadmin\admin.php:102
actionadmin_initadmin\Screen_reglages.php:75
actionadmin_initsecuricheck.php:100
actioninitsecuricheck.php:122
filterplugin_action_links_securicheck/securicheck.phpsecuricheck.php:237
actionplugins_loadedsecuricheck.php:270
actionadmin_initsecuricheck.php:271
actionwp_enqueue_scriptssecuricheck.php:272
actionadmin_enqueue_scriptssecuricheck.php:273
actionin_plugin_update_message-8PIXL-hpixl-securicheck/hpixl-securicheck.phpsecuricheck.php:275
actionwp_dashboard_setupsecuricheck.php:277
actionadmin_headsecuricheck.php:280
filterauthenticateutils\bruteForce.php:41
actionwp_login_failedutils\bruteForce.php:126
actionwp_loginutils\bruteForce.php:141
actionlogin_initutils\bruteForce.php:144
filterlogin_urlutils\cachette.php:10
actionplugins_loadedutils\cachette.php:44
actionwp_loadedutils\cachette.php:90
filternetwork_site_urlutils\cachette.php:119
filtersite_urlutils\cachette.php:120
filterwp_redirectutils\cachette.php:121
actionwp_login_failedutils\connexions-logs.php:42
actionwp_loginutils\connexions-logs.php:49
actionwp_loginutils\notification-compte-administrateur.php:7
actionin_admin_headerutils\remote-config\class-promo-banner.php:18
actionadmin_post_hpixl_securicheck_export_reglages_jsonutils\utils.php:1726
actionadmin_post_hpixl_securicheck_export_audit_jsonutils\utils.php:1813
Maintenance & Trust

Securicheck – Audit et Renforcement de Sécurité WordPress Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 8, 2026
PHP min version7.4
Downloads3K

Community Trust

Rating100/100
Number of ratings2
Active installs30
Developer Profile

Securicheck – Audit et Renforcement de Sécurité WordPress Developer Profile

Mickael Hauwy

1 plugin · 30 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Securicheck – Audit et Renforcement de Sécurité WordPress

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/securicheck/admin/assets/css/securicheck-admin.css/wp-content/plugins/securicheck/admin/assets/js/securicheck-admin.js/wp-content/plugins/securicheck/assets/css/style.css/wp-content/plugins/securicheck/assets/js/securicheck.js
Script Paths
/wp-content/plugins/securicheck/admin/assets/js/securicheck-admin.js/wp-content/plugins/securicheck/assets/js/securicheck.js
Version Parameters
securicheck/admin/assets/css/securicheck-admin.css?ver=securicheck/admin/assets/js/securicheck-admin.js?ver=securicheck/assets/css/style.css?ver=securicheck/assets/js/securicheck.js?ver=

HTML / DOM Fingerprints

CSS Classes
securicheck-admin-wrap
HTML Comments
<!-- HPIXL_SECURICHECK_HOTLINKING_IMAGE_NON_PRESENTE --><!-- HPIXL_SECURICHECK_HOTLINKING_PARAMETRE_NON_DEFINI --><!-- START Securicheck Admin Modal --><!-- END Securicheck Admin Modal -->
Data Attributes
data-securicheck-iddata-securicheck-type
JS Globals
securicheck_params
FAQ

Frequently Asked Questions about Securicheck – Audit et Renforcement de Sécurité WordPress