Patchstack – WordPress & Plugins Security
by Patchstack 4.9 (61 reviews)

Patchstack – WordPress & Plugins Security

Patchstack automatically identifies and mitigates security vulnerabilities in WordPress plugins, themes, and core.

Patchstack ranks #677 among WordPress.org plugins with 60,000+ active installations, is #91 of 4,488 in the Security category, a 4.9/5 rating from 61 reviews, and was last updated Jul 28, 2026. Data from WordPress.org, refreshed twice daily — see methodology.

Tested up to WP 7.0.4 (Current: 7.1)
v2.3.7 Current Version v2.3.7
Updated 1 month ago Last Update on 28 Jul, 2026
Refreshed 6 hours ago Last Refreshed on
#91 of 4,488 in Security Top 1% by installs Downloads -42.5% this week
View on WordPress.org
Rank
#677
No change
Active Installs
60K+
+5.1%
KW Avg Position
15.4
0.2 worse
Downloads
705.7K
+826 today
Support Resolved
0%
No change
Rating
98%
Review 4.9 out of 5
4.9 (61 reviews)

Next Milestone 70K

Total Progress 20%
60K+ 70K+
60
Ranks to Climb
-
Growth Needed
8,000,000
Active Installs
Pro

Unlock Exact Install Count

See the precise estimated active installs for this plugin, calculated from real-time ranking data.

  • Exact install estimates within tiers
  • Track install growth over time
  • Milestone progress predictions
Upgrade to Pro
Need 8,000 more installs to reach 70K+

Rank Changes

643 661 679 696 714 09-09-2026 10-09-2026 11-09-2026 12-09-2026 13-09-2026 14-09-2026 15-09-2026 16-09-2026
672 679 687 694 701 01-09-2026 02-09-2026 03-09-2026 04-09-2026 05-09-2026 06-09-2026 07-09-2026 08-09-2026 09-09-2026 10-09-2026 11-09-2026 12-09-2026 13-09-2026 14-09-2026 15-09-2026 16-09-2026
Current #677
Change
Best #

Upgrade to Pro

Unlock 30-day and 90-day rank history charts with a Pro subscription.

Upgrade Now

Active Installs Growth

Active Installs 0,000,000+
Growth +0.0%
Peak 0,000,000

Downloads Growth

200 400 600 800 1K 09-09-2026 10-09-2026 11-09-2026 12-09-2026 13-09-2026 14-09-2026 15-09-2026 16-09-2026
200 400 600 800 1K 1.2K 01-09-2026 02-09-2026 03-09-2026 04-09-2026 05-09-2026 06-09-2026 07-09-2026 08-09-2026 09-09-2026 10-09-2026 11-09-2026 12-09-2026 13-09-2026 14-09-2026 15-09-2026 16-09-2026
Downloads
Growth
Peak

Upgrade to Pro

Unlock 30-day, 90-day, and yearly download history charts with a Pro subscription.

Upgrade Now

Reviews & Ratings

4.9
61 reviews
Overall 98%
5
58 (95%)
4
1 (2%)
3
0 (0%)
2
0 (0%)
1
2 (3%)

Support Threads Overview

Resolved
Unresolved
1
Total Threads
0
Resolved
1
Unresolved
0%
Resolution Rate

Security History

Source: WPVulnerability

No known vulnerabilities on record for Patchstack. Checked 1 week ago.

TL;DR

AI summary of the plugin's readme

Patchstack is for WordPress site owners, agencies, WooCommerce stores, and hosting companies that need to manage plugin, theme, and core security. It identifies vulnerabilities in installed software and, in the paid version, automatically applies targeted protection rules to block exploitation without changing site code.

  • 48-hour early vulnerability warnings
  • Automatic updates for vulnerable software
  • Remote update management
  • Snapshot security reports
  • Virtual patching (vPatches)
  • Two-factor authentication
  • Community IP blocklist
  • Custom protection rules

Frequently Asked Questions

Common questions about Patchstack – WordPress & Plugins Security

A worrisome website hacking statistic is that well over 90% of WordPress vulnerabilities are related to plugins or themes. One report found that up to 98% of WordPress vulnerabilities are due to plugins, while another study reported that 95% were caused by plugins and themes. To stay secure, always keep your WordPress plugins, themes, and core updated and monitored. Be aware of which plugins you’re using and remove any that are no longer needed.
Look for a tool that offers vPatching (see Patchstack’s features).
The Patchstack Personal (Free) plan alerts you if vulnerabilities are present in the plugins, themes, or WordPress core installed on your site. By staying informed, you can reduce the time and resources spent fixing WordPress security issues and avoid costly clean-ups.
You can detect security vulnerabilities in your WordPress plugins, themes, and core. You’ll receive email notifications if vulnerabilities are found, and access a central security overview for up to 3 websites using the Patchstack App. You can optionally enable vPatching for individual sites for $5/month.
With the Patchstack Developer plan, you can protect your sites against known plugin and theme vulnerabilities through automatic virtual patches — non-intrusive firewall rules that block exploit attempts. You also gain access to advanced hardening options, 2FA, CAPTCHA, security reports, and various alert types. Included features: Plugin vulnerability detection (also included in free) Theme vulnerability detection (also included in free) WordPress core vulnerability detection (also included in free) Logs and analytics (also included in free) Snapshot PDF security reports (also included in free) Email alerts (also included in free) vPatches for WordPress plugins vPatches for WordPress themes Unlimited custom firewall rules Unlimited custom alert triggers Weekly/monthly PDF reports Slack alerts Unlimited Patchstack App API usage
No external checks are performed. The plugin matches the installed plugins, themes, and WordPress core on your site with our vulnerability database to identify vulnerable versions.
With the Personal (Free) plan, you’ll receive alerts via email. Slack alerts are available in the paid Developer plan.
We have not encountered any conflicts. However, we recommend using as few security plugins as possible and avoiding overlapping features to prevent potential issues. If you encounter problems, contact our support team for assistance.
No, the free version does not include a firewall. It focuses on vulnerability detection and notifications.
The free version only runs scheduled tasks, with no noticeable impact on your site speed or server load. The paid version runs tasks on each page load to filter traffic, but our tests and customer feedback confirm minimal performance impact.

Sign In / Register

You need to sign in or register to use this feature.