PulseGateCategoriesMethodologyCompanyThe global software index— through the gate this hour
Coverage—in the index
Freshness—newest listing
Cadence—last week average · — today
Index9 markets90 categories · 139 niches
PulseGate

The global index of software taking shape now.

Stores show what passed through a store. Launch sites show what launched there. Catalogs show what entered their catalog. Each sees the market through its own gate. PulseGate reads across them.

FollowGitHubX (Twitter)LinkedIn
Platform
IndexIndex by setCategoriesIndustry UpdatesMethodologySupply IndexData SourcesCoverage RulesGlossaryEmbed Widget
Support
Help CenterSubmit your projectReport an Issue
Company
AboutTeamDimaxiaPress & DataContactPlatform Status
Legal
PrivacyTermsDisclaimer
Dimaxia · Dymaxio s.r.o. · Prague, Czechia · © 2026WatchlistSitemapSystem status
PulseGateSRSudoWP Radar
Visit↗
Skip to content
  1. Index›
  2. Security & compliance platforms›
  3. SudoWP Radar
← Back to the index
SR

SudoWP Radar

sudowp.com·Security & compliance platforms

SudoWP Radar is a runtime security auditor for the WordPress Abilities API in WordPress 6.9 and later. It scans registered abilities across active plugins and themes, looking for misconfigurations that could become exploitable vulnerabilities.

The scanner reports open and weak permission callbacks, including __return_true and low capabilities such as read and exist. It also checks for missing or loose input schemas on sensitive fields including path, file, url, redirect, source, target, and slug. Additional findings include REST overexposure for abilities marked show_in_rest without proper permission control, MCP overexposure for abilities marked meta.mcp.public with a weak or null permission callback, orphaned callbacks that reference functions no longer loaded, and namespace collisions where duplicate registrations can silently downgrade permissions.

Several operational details are stated as part of the tool’s design. Audit results are stored in user meta rather than global options, rate limiting uses a 30-second transient per user, and there are no public AJAX endpoints. It also has zero external dependencies and makes no external HTTP calls. When the plugin is deleted, user meta and transients are removed.

Results appear in the WordPress admin as a severity-sorted list of findings with a 0-100 risk score. The page also says SudoWP Radar registers its own ability, sudowp-radar/audit, so an AI agent connected to a WordPress site via MCP can trigger a full security audit natively; that ability requires the radar_run_audit capability and is REST-disabled by default. A community version is available, and the page notes WordPress.org plugin submission pending.

FreeWebCloud-managed
SSudoWP Radar preview
Visit sudowp.com↗
2stars
5features
2026since

Overview

5 features

SudoWP Radar sits in PulseGate's Security & compliance platforms category. It focuses on detecting and flagging security misconfigurations in WordPress Abilities API to prevent vulnerabilities. SudoWP Radar is a B2B product aimed at wordPress site administrators. SudoWP Radar costs nothing to use. It ships for the web.

It is developed by SudoWP, and it first shipped in 2026. Development happens publicly on GitHub with 4 commits in the last 90 days. Key capabilities include runtime auditing, vulnerability scanning, and wordPress integration.

Summary written by a language model from the project’s public pages.

  • ✓Runtime auditing
  • ✓Vulnerability scanning
  • ✓WordPress integration
  • ✓Misconfiguration detection
  • ✓Security reporting
Tags
wordpress-securityabilities-apiruntime-auditor

Built with & integrations

Framework
WordPress
Hosting
Cloudflare
Runs on
BrowserCloud-managed
Detected from
WordPress
/wp-content/ in the HTML · /wp-json/ in the HTML · /wp-includes/ in the HTML
Cloudflare
cf-ray header · cf-cache-status header

Trust & compliance

Verified signals
✓HTTPS✓Privacy Policy✓Terms of Service✓Free tier✓GitHub · ★ 2✓Active maintenance
Legal
Privacy Policy →Terms of Service →

Indexing history

1

What PulseGate has recorded for this listing

  1. Indexed25 Jun · 23:55 UTC
    Listing verified against its public source
    Source: PulseGate · Open ↗

Frequently asked questions about SudoWP Radar

What is SudoWP Radar?
SudoWP Radar focuses on detecting and flagging security misconfigurations in WordPress Abilities API to prevent vulnerabilities. It is catalogued under Security & compliance platforms on PulseGate.
Who should use SudoWP Radar?
SudoWP Radar is a B2B product built for wordPress site administrators.
Does SudoWP Radar have a free plan?
Yes — SudoWP Radar is free to use.
What platforms does SudoWP Radar run on?
SudoWP Radar runs on the web.
Is SudoWP Radar still maintained?
The GitHub repository shows 4 commits in the last 90 days.
What projects are similar to SudoWP Radar?
Similar projects tracked by PulseGate include Health Radar, Conflict Radar, and Aardwolf Security Scanner.Health RadarConflict RadarAardwolf Security Scanner
Who makes SudoWP Radar?
SudoWP Radar is developed by SudoWP.
How long has SudoWP Radar been around?
SudoWP Radar first shipped in 2026.

At a glance

Pricing
Free
Platforms
Web
Languages
English
Open source
Yes · ★ 2
Built for
WordPress site administrators
Model
B2B
Solves
Detecting and flagging security misconfigurations in WordPress Abilities API to prevent vulnerabilities.

Registered as

GitHub
Sudo-WP/sudowp-radar
WordPress.org
sudowp-radar

Developer

SudoWP
Solo developer
↗ GitHub

Open source

View on GitHub →
Stars
2
Forks
0
Open issues
0
Last commit
29 May 2026
Commits 90d
4
Contributors
1
Authorship
Solo
Default branch
main

Index record

Identity confidence
High · 94.4
Indexed
25 Jun 2026
Lifecycle
Alive
Last seen
25 Jun 2026
Identity audit (12)
Slug
sudowp-radar-sudowp-com
Lifecycle last checked
8 Aug 2026
Verification state
Indexed for public listing
Listing state
Listed: yes
Index status
Included in index
Latest evidence snapshot
25 Jun 2026
Timeline basis
Indexed-at chronology. This listing's first-seen date was written by the catalog backfill, not observed here, so it is not treated as a sighting.
Name from
Written by a language model from the project's public pages.
Category from
Assigned by a language model.
Summary from
Written by a language model from public pages.
Languages from
Detected by a language model, checked against the page's own declaration.
Canonical URL
https://sudowp.com/radar

Ship this? Send a correction — no account, and you get a link to follow it.

Similar projects

Closest matches by what these projects do

  • HRHealth Radarwordpress.org
  • CRConflict Radarwordpress.org
  • ASAardwolf Security Scannerwordpress.org
  • SSSite Security Auditorwordpress.org