security

70 indexed plugins

Plugins

70

Active Installs

26m+

Average Score

42

Audited

70

RankPluginScoreErrorsWarningsInstallsUpdatedTop Issue
#1Protect Uploads992140k+2026-06-11missing direct file access protection
#2Stop User Enumeration991150k+2025-12-15Dynamic Hookname Found
#3Safe SVG98741m+2026-04-14Missing Arg Domain
#4WPVulnerability96410k+2026-06-02trademarked term
#5Stop Spammers Classic94185130k+2026-05-24wp function not compatible with requires wp
#6Sucuri Security – Auditing, Malware Scanner and Security Hardening94525600k+2026-06-03missing direct file access protection
#7XO Security945330k+2026-04-12wp function not compatible with requires wp
#8Restricted Site Access91141110k+2026-05-11Missing Arg Domain
#9Password Strength Settings for WooCommerce8917610k+2023-10-11Missing Arg Domain
#10AntiSpam for Contact Form 78614810k+2026-04-21Text Domain Mismatch
#11WP Ghost (Hide My WP Ghost) – Security & Firewall856373100k+2026-06-02Non Prefixed Variable Found
#12Hostinger Tools8114223m+2026-06-16wp function not compatible with requires wp
#13OpenID Connect Generic Client7395910k+2026-02-13Non Prefixed Hookname Found
#14Simple Login Captcha70201910k+2026-05-26date date
#15Inactive Logout64307110k+2026-06-04Non Prefixed Variable Found
#16TrustedSite50291420k+2025-08-26Output Not Escaped
#17LWS Hide Login4555820k+2026-06-15Missing Unslash
#18BBQ Firewall – Fast & Powerful Firewall Security441717100k+2026-04-19Output Not Escaped
#19User Role Editor43117145700k+2026-05-21Output Not Escaped
#20Login No Captcha reCAPTCHA42452460k+2026-05-26Unsafe Printing Function
#21Two Factor421870100k+2026-03-27Recommended
#22Google Authenticator41396520k+2026-04-07Output Not Escaped
#23Lockdown WP Admin41205010k+2017-11-28Missing Unslash
#24Limit Login Attempts408138300k+2023-04-04Output Not Escaped
#25Blackhole for Bad Bots391236930k+2026-04-21Output Not Escaped
#26WPS Limit Login3915276100k+2025-06-24Output Not Escaped
#27Activity Log – Monitor & Record User Changes3881149200k+2026-06-07Recommended
#28MainWP Child – Securely Connects to the MainWP Dashboard to Manage Multiple Sites383136700k+2026-06-16Non Prefixed Hookname Found
#29underConstruction36986040k+2024-03-08Unsafe Printing Function
#30Security Optimizer – The All-In-One Protection Plugin3540821m+2026-05-15Missing Unslash
#31WPFront User Role Editor3533357830k+2026-05-20Output Not Escaped
#32Zero Spam for WordPress347939320k+2026-03-16Non Prefixed Variable Found
#33Companion Auto Update3315929850k+2026-03-21Direct Query
#34Admin Menu Editor32159233300k+2026-05-17Non Prefixed Variable Found
#35Advanced Access Manager – Access Governance for WordPress3284962100k+2026-05-25Output Not Escaped
#36WP fail2ban – Advanced Security327515360k+2025-04-29Dynamic Hookname Found
#37Titan Anti-spam & Security – Brute Force Protection, 2FA & Spam Filter315719650k+2026-05-19Recommended
#38My Private Site3142519020k+2026-06-05Text Domain Mismatch
#39LWS Tools3110413420k+2026-06-15Missing Unslash
#40MainWP Dashboard: Self-hosted WordPress Management for Agencies319531720k+2026-06-02Interpolated Not Prepared
#41Jetpack Protect30657217100k+2026-04-11Text Domain Mismatch
#42WPS Cleaner3043049120k+2025-06-24Output Not Escaped
#43CloudSecure WP Security2974350100k+2026-05-21Missing Unslash
#44WP Hide & Security Enhancer2712437550k+2026-06-08Input Not Sanitized
#45Kadence Central – Site Management, Backups, Security, and Reporting2646221330k+2026-06-11Text Domain Mismatch
#46Limit Login Attempts Security – Login Security, 2FA, Firewall, Brute Force Prevention256216021m+2026-06-16Unsafe Printing Function
#47Loginizer258145041m+2026-05-08Output Not Escaped
#48Nexter Extension – Security, Performance, Code Snippets & Site Toolkit2519871010k+2026-06-16Recommended
#49Simply Static – The Static Site Generator2516344630k+2026-06-19Non Prefixed Hookname Found
#50Wordfence Login Security2524841870k+2026-04-29Output Not Escaped