
Site Health Manager Security & Risk Analysis
wordpress.org/plugins/site-health-managerControl which status tests and what debug information appear in your Site Health screen.
Is Site Health Manager Safe to Use in 2026?
Generally Safe
Score 85/100Site Health Manager has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "site-health-manager" v1.1.2 plugin exhibits a strong security posture based on the provided static analysis. The complete absence of AJAX handlers, REST API routes, shortcodes, and cron events with exposed attack vectors significantly reduces the potential for external exploitation. Furthermore, the code demonstrates good practices by utilizing prepared statements for all SQL queries and having a robust capability check in place. The presence of a nonce check is also a positive indicator of secure development.
Key Concerns
- Percentage of properly escaped outputs is low
Site Health Manager Security Vulnerabilities
Site Health Manager Code Analysis
Output Escaping
Site Health Manager Attack Surface
WordPress Hooks 5
Maintenance & Trust
Site Health Manager Maintenance & Trust
Maintenance Signals
Community Trust
Site Health Manager Alternatives
WPVulnerability
wpvulnerability
Get WordPress vulnerability alerts from the WPVulnerability Database API.
SiteLock Security – WP Hardening, Login Security & Malware Scans
sitelock
Free, lightweight WordPress security. Harden your site with login protection & 2FA, see Site Health clearly and run on-demand checks—setup in minutes.
WP Disable Site Health
wp-disable-site-health
License: GPLv2 or later Disables new Site Health screen from WP Dashboard
DiveWP – Boost Site Performance with Clear, Actionable Steps
divewp-boost-site-performance
Learn WP Best Practices Through Your Own Site! Get clear insights about Performance, Security, and Best Practices – explained in plain English.
BoonRisk – Site Security Check & Report
boonrisk-site-security-check-report
Security posture report for WordPress — 30+ checks, prioritized risks, and a printable report. Get a clear picture in minutes.
Site Health Manager Developer Profile
4 plugins · 250 total installs
How We Detect Site Health Manager
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/site-health-manager/site-health-manager.phpHTML / DOM Fingerprints
tools_page_site-health-managersite-health-manager-navstatus-tableinfo-tablehealth-check-tabs-wrapperhealth-check-tab<!-- TODO: move to a method. -->