CodeMedic SupplyScope automatically scans active WordPress plugins for bundled Composer packages and checks them against a CVE intelligence feed. Results appear in a clear admin dashboard with severity levels and remediation guidance. The plugin helps prevent breaches by surfacing supply-chain vulnerabilities before they are exploited.
CodeMedic SupplyScope is an Application security & vulnerability scanning project. It focuses on detecting hidden security vulnerabilities in third-party Composer dependencies bundled inside WordPress plugins. CodeMedic SupplyScope is a B2B product aimed at wordPress site administrators and security-conscious developers. CodeMedic SupplyScope is free to use. It ships for the web, and it can be self-hosted.
Behind CodeMedic SupplyScope is adrianmikula, and it first shipped in 2026. Key capabilities include vulnerability scanning, CVE reporting, and composer dependency check.
Summary written by a language model from the project’s public pages.
What PulseGate has recorded for this listing
Closest matches by what these projects do