Is Site Rescue Review a penetration test?
No. It is a defensive diagnostic review of WordPress security and revenue reliability signals. It does not include destructive testing, denial of service, credential attacks, persistence, or exfiltration.
Find hidden WordPress, WooCommerce, security, checkout and payment-critical signals before they cost traffic, sales or trust.
Public exposure
Headers, XML-RPC, REST and exposed-file signals
Revenue paths
Cart, checkout, account and payment-critical flows
Software posture
Plugin, theme, WooCommerce and gateway context
Handoff
Severity, evidence, limitations and recommended fixes
Evidence backed
Observable signals stay separate from assumptions.
Authorised scope
No passwords by email or destructive testing.
Checkout aware
Revenue-critical paths are reviewed when relevant.
Fixes separate
Implementation is quoted only after review.
Diagnostic report preview
Site trustThe review separates observable evidence from assumptions, then ranks fixes by trust, checkout impact, and implementation risk.
Sample deliverable
Plain-English report structure
Diagnostic evidence only. Fixes, production changes, and guarantees stay outside the review unless separately scoped.
Before intake
The review can start from an export, screenshots, site context or a written description. It is not dependent on a perfect scan.
Review intake
Submit the request first. We reply with the minimum evidence needed and a manual payment link or invoice before the review begins.
Verification
Related checks
After the review
If the review identifies a clear fix path, we can quote a fixed-scope implementation pack separately. The review stays diagnostic.
Preview the diagnostic reportFAQ
No. It is a defensive diagnostic review of WordPress security and revenue reliability signals. It does not include destructive testing, denial of service, credential attacks, persistence, or exfiltration.
You can send a VDL Site Leak Scanner export, plugin/theme list, screenshots, hosting alerts, support notes, WooCommerce examples, or a written description of the issue.
No. These are diagnostic signals. They may justify cleanup or closer review, but they do not automatically prove compromise or financial impact.
Yes. The review can include cart, checkout, account, order-pay, order-received, and payment-critical paths where they are relevant to the evidence.