78% wp-security-master

Code Review | WP Security Master

WordPress plugin WP Security Master scored78%from 54 tests.

About plugin

  • Plugin page: wp-security-master
  • Plugin version: 1.0.2
  • PHP version: 7.4.16
  • WordPress compatibility: 4.6-5.2
  • WordPress version: 6.3.1
  • First release: Apr 29, 2019
  • Latest release: May 8, 2019
  • Number of updates: 17
  • Update frequency: every 0.6 days
  • Top authors: yeungon (100%)

Code review

54 tests

User reviews

1 review

Install metrics

10+ active /588 total downloads

Benchmarks

Plugin footprint 83% from 16 tests

Installer Passed 1 test

🔺 Critical test (weight: 50) | Verifying that this plugin installs correctly without errors
The plugin installed gracefully, with no errors

Server metrics [RAM: ▲0.06MB] [CPU: ▼4.67ms] Passed 4 tests

This is a short check of server-side resources used by WP Security Master
No issues were detected with server-side resource usage
PageMemory (MB)CPU Time (ms)
Home /3.53 ▲0.0645.85 ▲2.08
Dashboard /wp-admin3.37 ▲0.0650.17 ▲0.40
Posts /wp-admin/edit.php3.42 ▲0.0655.49 ▼0.53
Add New Post /wp-admin/post-new.php5.97 ▲0.0884.41 ▼20.63
Media Library /wp-admin/upload.php3.29 ▲0.0637.85 ▲2.47

Server storage [IO: ▲0.04MB] [DB: ▲0.00MB] Passed 3 tests

Analyzing filesystem and database footprints of this plugin
The plugin installed successfully
Filesystem: 14 new files
Database: no new tables, 8 new options
New WordPress options
can_compress_scripts
widget_recent-comments
wp_security_master
widget_theysaidso_widget
theysaidso_admin_options
wp_security_master_activate_state
widget_recent-posts
db_upgraded

Browser metrics Passed 4 tests

Checking browser requirements for WP Security Master
Normal browser usage
PageNodesMemory (MB)Script (ms)Layout (ms)
Home /2,812 ▲5114.28 ▼0.132.17 ▲0.5051.27 ▲9.14
Dashboard /wp-admin2,215 ▲355.65 ▲0.01104.79 ▲11.9941.25 ▲2.35
Posts /wp-admin/edit.php2,127 ▲242.02 ▲0.0240.21 ▼6.7335.17 ▼7.04
Add New Post /wp-admin/post-new.php1,385 ▼14116.63 ▼6.71581.75 ▼108.0347.89 ▼10.39
Media Library /wp-admin/upload.php1,427 ▲244.20 ▼0.10102.23 ▲5.9146.10 ▲0.72

Uninstaller [IO: ▲0.00MB] [DB: ▲0.00MB] 75% from 4 tests

🔸 Tests weight: 35 | The uninstall procedure must remove all plugin files and extra database tables
These items require your attention
  • The uninstall procedure has failed, leaving 6 options in the database
    • widget_recent-posts
    • widget_theysaidso_widget
    • theysaidso_admin_options
    • db_upgraded
    • can_compress_scripts
    • widget_recent-comments

Smoke tests 50% from 4 tests

Server-side errors Passed 1 test

🔹 Test weight: 20 | Just a short smoke test targeting errors on the server (in the Apache logs)
Everything seems fine, however this is by no means an exhaustive test

SRP 0% from 2 tests

🔹 Tests weight: 20 | It is important to ensure that your PHP files perform no action when accessed directly, respecting the single-responsibility principle
Please fix the following
  • 1× GET requests to PHP files return non-empty strings:
    • > /wp-content/plugins/wp-security-master/includes/views/mainmenu.php
  • 3× PHP files trigger errors when accessed directly with GET requests:
    • > PHP Notice
      Undefined variable: timetotrigger in wp-content/plugins/wp-security-master/includes/views/mainmenu.php on line 21
    • > PHP Notice
      Undefined variable: state in wp-content/plugins/wp-security-master/includes/views/mainmenu.php on line 25
    • > PHP Notice
      Undefined variable: nonce in wp-content/plugins/wp-security-master/includes/views/mainmenu.php on line 16

User-side errors Passed 1 test

🔹 Test weight: 20 | This is just a short smoke test looking for browser issues
Everything seems fine on the user side

Optimizations

Plugin configuration 93% from 29 tests

readme.txt 94% from 16 tests

The readme.txt file describes your plugin functionality and requirements and it is parsed to prepare the your plugin's listing
Please fix the following attributes:
  • Requires php: Invalid version format
Please take inspiration from this readme.txt

wp-security-master/wp-security-master.php 92% from 13 tests

The main file in "WP Security Master" v. 1.0.2 serves as a complement to information provided in readme.txt and as the entry point to the plugin
Please make the necessary changes and fix the following:
  • Description: The description should be shorter than 140 characters (currently 255 characters long)

Code Analysis Passed 3 tests

File types Passed 1 test

🔸 Test weight: 35 | A short glimpse at programming languages used with this plugin and a check that no dangerous files are present
There were no executable files found in this plugin449 lines of code in 5 files:
LanguageFilesBlank linesComment linesLines of code
PHP4146124416
JavaScript121433

PHP code Passed 2 tests

This is a short overview of cyclomatic complexity and code structure for this plugin
This plugin has no cyclomatic complexity issues
Cyclomatic complexity
Average complexity per logical line of code0.46
Average class complexity0.00
▷ Minimum class complexity0.00
▷ Maximum class complexity0.00
Average method complexity0.00
▷ Minimum method complexity0.00
▷ Maximum method complexity0.00
Code structure
Namespaces0
Interfaces0
Traits0
Classes0
▷ Abstract classes00.00%
▷ Concrete classes00.00%
▷ Final classes00.00%
Methods0
▷ Static methods00.00%
▷ Public methods00.00%
▷ Protected methods00.00%
▷ Private methods00.00%
Functions15
▷ Named functions15100.00%
▷ Anonymous functions00.00%
Constants0
▷ Global constants00.00%
▷ Class constants00.00%
▷ Public constants00.00%

Plugin size Passed 2 tests

Image compression Passed 2 tests

PNG files should be compressed to save space and minimize bandwidth usage
4 compressed PNG files occupy 0.01MB
Potential savings
Compression of 4 random PNG files using pngquant
FileSize - originalSize - compressedSavings
public/images/shield_16.png0.62KB0.72KB0.00%
public/images/shield_256.png8.19KB7.05KB▼ 13.93%
public/images/shield.png0.54KB0.49KB▼ 8.01%
public/images/lock.png0.70KB0.78KB0.00%