WordPress security intelligence

Know the risk.
Make the right move.

Clear, source-backed security records for WordPress plugins, themes and core — built to turn scattered advisories into a practical next step.

Version-awareSource-datedHuman-reviewed
Assessment previewEvidence linked
Plugin recordIdentity · version · vendor
Current statusAction is explicit
Reviewed
Affected rangePatch stateVerified sources

Facts, assessment and recommended action stay visibly separate.

01Source before claim

02Action before alarm

03Exact versions, always

04Uncertainty stays visible

Time-sensitive

Latest security alerts

Explore alerts

Publishing queue

Reviewed records are on the way.

Nothing unverified is used to fill this space. New records appear after evidence and version checks are complete.

Coverage

Intelligence index

Only reviewed, attributable records count toward this index.

Browse the database

Start with what you manage

Move from a product or disclosure to the exact versions, evidence and action that matter.

From signal to decision

Security intelligence you can act on

PluginRisk keeps evidence attached to every conclusion, so urgency never outruns accuracy.

  1. 01
    Collect the evidence

    Official repositories, vendor advisories and credible vulnerability sources are connected to each claim.

  2. 02
    Resolve the versions

    Affected ranges, patched releases and exploit conditions are normalized into one readable record.

  3. 03
    Recommend the move

    Update, disable, replace or monitor — with a reason, review date and visible confidence state.

Recently reviewed

Product assessments

Plugin directory

Publishing queue

Reviewed records are on the way.

Nothing unverified is used to fill this space. New records appear after evidence and version checks are complete.