One scan, twelve layers of intelligence
Both reports are computed in a single read-only pass — an automated security researcher + SEO consultant for your WordPress site.
🛡️ WordPress Security Audit
$39.99Read-only security probes: nothing installed, nothing changed, no brute forcing.
🔍
WordPress Fingerprint
— Detection confidence, core/plugin/theme enumeration, version disclosure, REST user exposure.
🚨
Vulnerabilities & CVEs
— Known CVEs matched to your detected versions via NVD + OSV (+ latest WP CVE feed).
⚙️
WordPress Misconfigurations
— Sensitive-path exposure: .env, .git, wp-config backups, debug logs, directory listing, registration.
🔒
Server & TLS
— Certificate health, old TLS versions, security headers, banner disclosure, HTTP→HTTPS enforcement, TRACE.
🔑
Login & Access Hardening
— wp-login exposure, username enumeration, XML-RPC multicall, lockout detection, 2FA markers.
📧
Email & Breach Exposure
— MX/SPF/DMARC/DKIM/CAA, Spamhaus checks, and breach exposure on your site emails.
🧱
Blacklist & Content Health
— URLhaus / Safe Browsing flags, mixed content, secrets leaked in page source.
📈 WordPress SEO Audit
$39.99Full search-engine-readiness profile, upgraded with DataForSEO when connected.
🏷️
Meta & Indexability
— Title/meta descriptions, canonical, noindex, OG/Twitter/JSON-LD, robots.txt, sitemaps.
✍️
Content & Keywords
— H1/heading hierarchy, word counts, keyword coverage, alt text, internal links, broken-link sampling.
🛠️
Technical SEO
— TTFB, page weight, compression, HTTP/2, cache headers, host canonicalization, permalinks.
📈
Organic Keywords
— Organic keyword rankings with position + volume (DataForSEO Labs).
🔗
Backlinks & Authority
— Referring domains, backlink counts, authority rank (DataForSEO).