The WordPress Plugin Detector scans public asset paths, markup, script identifiers, and recognizable front-end patterns. Detected plugins are enriched with WordPress.org information when an official directory record is available, including the icon, rating, version, compatibility requirements, official page, and download links.
Find WordPress plugins that expose public assets or recognizable front-end signals.
How this tool helps
Plugin detection is never a complete inventory. Security, backup, admin-only, server-side, custom, and bundled plugins may not load anything on the inspected page. Treat the result as a list of publicly visible plugins, not as access to the website dashboard.
How to use it
- Paste a public WordPress page URL.
- Run the plugin scan and wait for the visible asset analysis.
- Review each plugin card and its confidence level.
- Open the official directory or developer page before installing a similar plugin.
Frequently asked questions
Can this find every installed WordPress plugin?
No. It can find only plugins that expose public assets or recognizable front-end signals on the scanned page.
Why does a plugin appear without an icon or rating?
The plugin may be premium, custom, renamed, removed from the directory, or detected only through a public marker.
Is plugin detection harmful to the target website?
The tool makes a limited public page request. It does not log in, exploit vulnerabilities, or attempt to change the website.
Important: Review generated configuration before using it on a production website. Detector results are based on public signals and may be incomplete.
