Vigil Security Scanner Security & Risk Analysis

wordpress.org/plugins/vigil-security-scanner

AI-powered WordPress plugin that scans for vulnerabilities and outdated components in plugins, core, and PHP. Stay secure with proactive alerts.

0 active installs v0.9.1 PHP 7.0+ WP 5.0+ Updated Feb 2, 2026
aiscanscannersecurityvulnerabilities
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Vigil Security Scanner Safe to Use in 2026?

Generally Safe

Score 100/100

Vigil Security Scanner has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The "vigil-security-scanner" plugin version 0.9.1 exhibits a strong security posture based on the provided static analysis. The plugin has no identified entry points that are unprotected, meaning all interactions are expected to be properly authenticated and authorized. The code also demonstrates good practices regarding dangerous functions and output escaping, with a very high percentage of outputs being properly escaped. Taint analysis reveals no critical or high-severity issues, indicating no apparent avenues for malicious data injection through analyzed flows.

While the static analysis is very positive, the limited number of flows analyzed (3) in the taint analysis could potentially mask undiscovered vulnerabilities. The plugin also performs file operations and external HTTP requests, which, although not flagged as issues here, are common areas where vulnerabilities can arise if not implemented with extreme care. The vulnerability history is clean, with no known CVEs, which is a significant strength and suggests a history of secure development. However, this can also be attributed to the plugin potentially being less popular or having fewer eyes on its code. Overall, the plugin appears to be developed with security in mind, but the limited scope of taint analysis warrants a degree of caution.

Vulnerabilities
None known

Vigil Security Scanner Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Vigil Security Scanner Code Analysis

Dangerous Functions
0
Raw SQL Queries
1
4 prepared
Unescaped Output
1
38 escaped
Nonce Checks
8
Capability Checks
2
File Operations
2
External Requests
4
Bundled Libraries
0

SQL Query Safety

80% prepared5 total queries

Output Escaping

97% escaped39 total outputs
Data Flows
All sanitized

Data Flow Analysis

3 flows
vigisesc_scan_listing_datatable_data (admin\class-vigil-settings.php:350)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Vigil Security Scanner Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 5
actionadmin_enqueue_scriptsincludes\class-vigil.php:136
actionadmin_enqueue_scriptsincludes\class-vigil.php:137
actionwp_enqueue_scriptsincludes\class-vigil.php:152
actionwp_enqueue_scriptsincludes\class-vigil.php:153
actionupgrader_process_completevigil-security-scanner.php:83
Maintenance & Trust

Vigil Security Scanner Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedFeb 2, 2026
PHP min version7.0
Downloads304

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Vigil Security Scanner Developer Profile

Vigil

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Vigil Security Scanner

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/vigil-security-scanner/admin/css/vigil-admin-style.css/wp-content/plugins/vigil-security-scanner/admin/js/vigil-admin-script.js
Script Paths
/wp-content/plugins/vigil-security-scanner/admin/js/vigil-admin-script.js
Version Parameters
vigil-security-scanner/admin/css/vigil-admin-style.css?ver=vigil-security-scanner/admin/js/vigil-admin-script.js?ver=

HTML / DOM Fingerprints

JS Globals
vigil_scanner_data
REST Endpoints
/wp-json/vigil-security-scanner/v1/settings/wp-json/vigil-security-scanner/v1/scan/wp-json/vigil-security-scanner/v1/sync
FAQ

Frequently Asked Questions about Vigil Security Scanner