Security Audit scans every hosted site on your Plesk server for known dependency vulnerabilities across 5 ecosystems. Get email alerts when new threats appear.
One extension to audit all your hosted sites. No agents to install, no per-site configuration.
Detects vulnerabilities in npm, Composer, Bundler, pip, and WordPress (core, plugins, themes) using official audit tools and vulnerability databases.
Run scans hourly, every 6 or 12 hours, daily, weekly, or monthly. Configure the exact time that works for your server load.
Receive HTML email reports when vulnerabilities are found above your threshold. Pro tier and above highlights newly discovered vulnerabilities so you know exactly what changed. Send to admins, customers, or both.
Dismiss known or accepted risks to focus on what matters. Ignored vulnerabilities are excluded from dashboards, emails, and exports.
With Master tier, your hosting customers can view vulnerabilities and run their own scans directly from their Plesk panel.
Detailed scan log with color-coded results. Export your vulnerability data as CSV or printable PDF for audits and compliance.
Fully integrated into Plesk's admin panel with a professional, dark-themed interface.
Overview dashboard showing severity summary cards and all domains with detected dependencies.
Per-domain vulnerability list with package name, version, severity badge, ecosystem, and CVE links.
WordPress audit showing vulnerabilities in core, plugins, and themes using the Wordfence database.
Start free, upgrade when you need automation and alerts.
$0 / forever
$4.99 / month
$9.99 / month
Open your Plesk panel, go to Extensions > Extension Catalog, search for "Security Audit", and click Install. That's it.
Installation Guide Full Documentation