
Site Backup Security & Risk Analysis
wordpress.org/plugins/site-backupBackup and restore your site in one click. Schedule automatic backup of your site. No worries anymore!!!
Is Site Backup Safe to Use in 2026?
Generally Safe
Score 85/100Site Backup has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "site-backup" plugin v1.0.0 exhibits a generally good security posture, with no known vulnerabilities and a promising approach to input sanitization and authentication. The static analysis shows no unsanitized taint flows, indicating a strong defense against common injection attacks. All entry points, including AJAX handlers and cron events, appear to have appropriate checks, and SQL queries exclusively use prepared statements, which is a significant strength. However, there are areas for improvement that introduce potential risks. The presence of dangerous functions like `create_function` and `exec` within the code is a notable concern, as these can be exploited if not handled with extreme care. Furthermore, a significant portion of output (56%) is not properly escaped, leaving the plugin vulnerable to Cross-Site Scripting (XSS) attacks if user-supplied data is not sanitized before being displayed. The plugin also uses nonce checks and capability checks, which are good security practices, but the relatively low count of these checks against the number of outputs and entry points warrants closer inspection for potential gaps.
Key Concerns
- Dangerous functions found (`create_function`, `exec`)
- Significant unescaped output (56%)
Site Backup Security Vulnerabilities
Site Backup Code Analysis
Dangerous Functions Found
Output Escaping
Data Flow Analysis
Site Backup Attack Surface
AJAX Handlers 3
WordPress Hooks 4
Scheduled Events 1
Maintenance & Trust
Site Backup Maintenance & Trust
Maintenance Signals
Community Trust
Site Backup Alternatives
WP Database Backup – Unlimited Database & Files Backup by Backup for WP
wp-database-backup
Create & Restore Database Backup easily on single click. Manual or automated backups (backup to Dropbox, Google drive, Amazon s3,FTP,Email).
UpdraftPlus: WP Backup & Migration Plugin
updraftplus
Backup, restore or migrate your WordPress website to another host or domain. Schedule backups or run manually. Migrate in minutes.
Duplicator – Backups & Migration Plugin – Cloud Backups, Scheduled Backups, & More
duplicator
The best WordPress backup and migration plugin. Quickly and easily backup ,migrate, copy, move, or clone your site from one location to another.
Backuply – Backup, Restore, Migrate and Clone
backuply
Backup, restores, and migration with Backuply are fairly simple with a wide range of storage options from Local Backups, FTP to cloud options like AWS …
BackWPup – WordPress Backup & Restore Plugin
backwpup
Create a complete WordPress backup easily. Schedule automatic backups, store securely, and restore effortlessly with the best WordPress backup plugin!
Site Backup Developer Profile
1 plugin · 10 total installs
How We Detect Site Backup
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/site-backup/assets/css/admin-style.css/wp-content/plugins/site-backup/external/bootstrap-3.3.7/css/bootstrap-theme.min.css/wp-content/plugins/site-backup/external/bootstrap-3.3.7/css/bootstrap.min.css/wp-content/plugins/site-backup/external/bootstrap-3.3.7/css/ripples.min.css/wp-content/plugins/site-backup/assets/js/admin-script.js/wp-content/plugins/site-backup/external/bootstrap-3.3.7/js/bootstrap.min.js/wp-content/plugins/site-backup/assets/js/admin-script.jssite-backup/external/bootstrap-3.3.7/css/bootstrap.min.css?ver=site-backup/external/bootstrap-3.3.7/css/bootstrap-theme.min.css?ver=site-backup/external/bootstrap-3.3.7/css/ripples.min.css?ver=site-backup/assets/css/admin-style.css?ver=site-backup/external/bootstrap-3.3.7/js/bootstrap.min.js?ver=site-backup/assets/js/admin-script.js?ver=HTML / DOM Fingerprints
gb-site-backup<!-- Security Check --><!-- OS independent directory seperator shortning --><!-- Signature Macro of the plugin --><!-- Main class of the plugin -->+59 moredata-targetdata-toggledata-keyboarddata-backdropdata-showGB_AJAXURL_GB_SECURITYsite_backup_options