VigiGuard Security Security & Risk Analysis

wordpress.org/plugins/vigiguard-security

Simple one-click WordPress security. Protect your site in 30 seconds.

0 active installs v1.0.0 PHP 7.4+ WP 5.8+ Updated Unknown
brute-forcefirewallhardeninglogin-protectionsecurity
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is VigiGuard Security Safe to Use in 2026?

Generally Safe

Score 100/100

VigiGuard Security has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs
Risk Assessment

The "vigiguard-security" v1.0.0 plugin demonstrates a strong security posture based on the provided static analysis. The absence of any critical or high-severity taint flows, coupled with a high percentage of SQL queries using prepared statements and properly escaped output, indicates good development practices regarding common web vulnerabilities like SQL injection and cross-site scripting. The plugin also implements a substantial number of nonce and capability checks, further bolstering its defenses against unauthorized actions and privilege escalation. Its attack surface, while containing several AJAX handlers, is fully protected by authentication checks, mitigating potential risks associated with these entry points. Furthermore, the lack of any recorded vulnerabilities in its history, including CVEs, suggests a mature and well-maintained codebase or a lack of focused exploitation attempts. However, the analysis did not cover all potential attack vectors such as file operations or external HTTP requests, and the absence of taint analysis results might mean that some flows were not analyzed or detected by the tool. While the current version appears robust, ongoing vigilance and a comprehensive security audit beyond static analysis would be beneficial.

Key Concerns

  • SQL queries only 35% prepared
  • 1% of outputs unescaped
Vulnerabilities
None known

VigiGuard Security Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

VigiGuard Security Code Analysis

Dangerous Functions
0
Raw SQL Queries
15
8 prepared
Unescaped Output
1
107 escaped
Nonce Checks
9
Capability Checks
12
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

35% prepared23 total queries

Output Escaping

99% escaped108 total outputs
Attack Surface

VigiGuard Security Attack Surface

Entry Points7
Unprotected0

AJAX Handlers 7

authwp_ajax_vigiguard_fix_all_issuesadmin\class-vigiguard-admin.php:67
authwp_ajax_vigiguard_dismiss_noticeadmin\class-vigiguard-admin.php:68
authwp_ajax_vigiguard_unlock_ipadmin\class-vigiguard-admin.php:69
authwp_ajax_vigiguard_run_file_checkadmin\class-vigiguard-admin.php:71
authwp_ajax_vigiguard_reset_pluginadmin\class-vigiguard-admin.php:72
authwp_ajax_vigiguard_clear_logsadmin\class-vigiguard-admin.php:73
authwp_ajax_vigiguard_run_file_checkadmin\class-vigiguard-admin.php:75
WordPress Hooks 19
actionadmin_noticesincludes\class-vigiguard-core.php:117
actionadmin_menuincludes\class-vigiguard-core.php:125
actionadmin_enqueue_scriptsincludes\class-vigiguard-core.php:126
actionadmin_enqueue_scriptsincludes\class-vigiguard-core.php:127
actionvigiguard_security_weekly_file_checkincludes\modules\class-file-integrity.php:57
filterthe_generatorincludes\modules\class-hardening.php:54
filterstyle_loader_srcincludes\modules\class-hardening.php:55
filterscript_loader_srcincludes\modules\class-hardening.php:56
filterxmlrpc_enabledincludes\modules\class-hardening.php:61
filterwp_headersincludes\modules\class-hardening.php:62
actiontemplate_redirectincludes\modules\class-hardening.php:72
filterrest_authentication_errorsincludes\modules\class-hardening.php:73
actionsend_headersincludes\modules\class-hardening.php:78
filterauthenticateincludes\modules\class-login-protection.php:57
actionwp_login_failedincludes\modules\class-login-protection.php:60
actionwp_loginincludes\modules\class-login-protection.php:63
actionlogin_errorsincludes\modules\class-login-protection.php:66
actionadmin_noticesvigiguard-security.php:65
actionadmin_noticesvigiguard-security.php:71

Scheduled Events 2

vigiguard_security_daily_cleanup
vigiguard_security_weekly_file_check
Maintenance & Trust

VigiGuard Security Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedUnknown
PHP min version7.4
Downloads132

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

VigiGuard Security Developer Profile

Kashif Ahmed Khan

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect VigiGuard Security

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/vigiguard-security/admin/css/vigiguard-admin.css/wp-content/plugins/vigiguard-security/admin/js/vigiguard-admin.js/wp-content/plugins/vigiguard-security/public/css/vigiguard-public.css/wp-content/plugins/vigiguard-security/public/js/vigiguard-public.js
Script Paths
/wp-content/plugins/vigiguard-security/admin/js/vigiguard-admin.js/wp-content/plugins/vigiguard-security/public/js/vigiguard-public.js
Version Parameters
vigiguard-security/admin/css/vigiguard-admin.css?ver=vigiguard-security/admin/js/vigiguard-admin.js?ver=vigiguard-security/public/css/vigiguard-public.css?ver=vigiguard-security/public/js/vigiguard-public.js?ver=

HTML / DOM Fingerprints

CSS Classes
vigiguard-security-admin-wrapvigiguard-fix-all-buttonvigiguard-button-primaryvigiguard-spinner
HTML Comments
<!-- VigiGuard Security Settings --><!-- VigiGuard Security Dashboard --><!-- VigiGuard Security Activity Log -->
Data Attributes
data-noncedata-actiondata-targetdata-id
JS Globals
VigiGuardAdminVigiGuardPublicvigiguardAjaxUrl
REST Endpoints
/wp-json/vigiguard-security/v1/settings/wp-json/vigiguard-security/v1/fix-issue/wp-json/vigiguard-security/v1/dismiss-notice/wp-json/vigiguard-security/v1/unlock-ip
FAQ

Frequently Asked Questions about VigiGuard Security