from THB 4,900 — 2 to 4 working days

WordPress security audit

A practical check for hacked plugins, weak settings, outdated software, suspicious users, and avoidable security holes.

WordPress installations age quickly. Plugins fall out of maintenance, admin accounts get forgotten, and the default settings that shipped with your theme five years ago are not the same settings that belong on a live website in a competitive local market.

This audit checks the parts of a WordPress installation that cause problems when ignored: outdated software, misconfigured roles, missing backups, and the kinds of entries in your file system that should not be there.

You get a plain-English report explaining what I found, why it matters, and what to fix first. No scare tactics. No inflated urgency. Just an honest picture of where your installation stands and a practical list of next steps.

If the audit reveals an active infection, that is a different kind of work covered under the WordPress Hack Recovery package.

Included

  • Core, plugin, and theme version review
  • Admin user and role sanity check
  • Basic malware and suspicious file inspection
  • Backup and update risk notes
  • Plain-English action report

Not included

  • Active malware removal or site cleanup
  • Ongoing security monitoring
  • Plugin updates or patches

What I need from you

  • Read access to WordPress admin
  • FTP or hosting panel access (to inspect files)
  • Name of your hosting provider

from THB 4,900

One-time service

50% upfront, 50% on delivery of the report.

Ask about this package