Security Audit
Find out where your site stands.
A one time review of your WordPress site, written up in plain language, with every finding ranked by how much it matters.
Why people ask
Nothing is on fire. You just aren’t sure.
Most audits start with a sentence like “the last developer left and I have no idea what they installed,” or “our insurance renewal asked how the website is secured.”
Sometimes nobody has looked under the hood in a couple of years. Any of those is a good reason.
What we check
What we check.
Every audit covers the same ground, so the report reads the same whether your site is big or small.
| Area | What we look for |
|---|---|
| Accounts | Who has admin access, weak or shared passwords, missing two factor login |
| Plugins and theme | Outdated versions, known vulnerabilities, abandoned plugins with no updates |
| WordPress core | Version, and file integrity against the official release |
| Hosting | PHP version, file permissions, SSL setup, server level protections |
| Backups | Whether they exist, how often they run, and whether a restore actually works |
| Forms and data | What your forms collect, where it goes, and who can see it |
| Signs of trouble | Existing malware, spam links, or leftovers from an old compromise |
What you receive
The report.
- Summary for the owner, one page, no jargon
- Findings ranked high, medium, and low
- The fix for each finding, and whether you can do it yourself
- A 30 minute call to walk through it
You keep the report. Hand it to any developer, including us.
Price
One WordPress site. Report delivered within 5 business days of access.
Start a Care Plan within 30 days and the full $495 comes off your Care Plan fees.
Security Audit