from THB 4,900 — 2 to 4 working days
WordPress security audit
A practical check for hacked plugins, weak settings, outdated software, suspicious users, and avoidable security holes.
WordPress installations age quickly. Plugins fall out of maintenance, admin accounts get forgotten, and the default settings that shipped with your theme five years ago are not the same settings that belong on a live website in a competitive local market.
This audit checks the parts of a WordPress installation that cause problems when ignored: outdated software, misconfigured roles, missing backups, and the kinds of entries in your file system that should not be there.
You get a plain-English report explaining what I found, why it matters, and what to fix first. No scare tactics. No inflated urgency. Just an honest picture of where your installation stands and a practical list of next steps.
If the audit reveals an active infection, that is a different kind of work covered under the WordPress Hack Recovery package.
Included
- Core, plugin, and theme version review
- Admin user and role sanity check
- Basic malware and suspicious file inspection
- Backup and update risk notes
- Plain-English action report
Not included
- Active malware removal or site cleanup
- Ongoing security monitoring
- Plugin updates or patches
What I need from you
- Read access to WordPress admin
- FTP or hosting panel access (to inspect files)
- Name of your hosting provider
from THB 4,900
One-time service
50% upfront, 50% on delivery of the report.