AI-Ready Security & Health Reports for WordPress
The free Security Audit plugin generates site health, exposure, vulnerability, integrity, readiness, and performance reports for your WordPress site. Review them in the admin dashboard, or let Claude, ChatGPT, or Codex read them through secure, read-only REST and MCP endpoints. You use your own AI subscription — no API key required.
Current free package for read-only security, integrity, performance, readiness, and AI-agent reports.
Current Pro add-on package extends the free plugin with retained investigation workflows and a merged Pro interface. It still avoids destructive remediation.
Free Plugin
Pro Add-on
Availability in Promptaur Plans
Security Audit remains free on WordPress.org. Security Audit Pro is planned for customers with a Promptaur WordPress Pro plan, alongside the other Pro WordPress AI plugins.
What It Checks
Security Audit reviews local WordPress signals and turns them into clear, AI-readable findings:
Agent & API Reports
REST and MCP endpoints are disabled by default. When enabled, the plugin generates local tokens you can rotate at any time. The standalone MCP endpoint exposes read-only tools for security summary, vulnerability, exposure, integrity, performance risk, readiness, and Markdown audit reports. When VideoWhisper Site Manager is active, connected sites can expose Security Audit reports through the existing Site Manager authentication path instead of configuring a separate MCP server.

