{"repo":"adityaarsharma/wordpress-malware-removal","free":true,"listed":false,"github":"https://github.com/adityaarsharma/wordpress-malware-removal","clone":"git clone https://github.com/adityaarsharma/wordpress-malware-removal.git","description":"Audit, clean, and harden a WordPress site end to end, with an AI agent (Claude/Cursor/Codex/MCP or SSH). Detects & removes hidden malware — cloaking, backdoors, database injection — scores your security posture, and hardens safely. Free, open-source (AGPL-3.0).","language":"Python","stars":30,"topics":["claude","claude-code","incident-response","japanese-keyword-hack","malware-detection","malware-removal","malware-scanner","mcp","php","security-tools"],"license":"AGPL-3.0","category":"mcp-servers","readme_excerpt":"WordPress Malware Removal Audit, clean, and harden a WordPress site — end to end, with an AI agent. Three things every WordPress owner needs, in one open-source tool: - Audit — how hackable is your site right now ? A read-only security posture score (vulnerable plugins, exposure, code risk, hardening state) with a ranked fix list. - Remove — if it's already hacked, clean it — including the hidden stuff scanners miss (cloaking, web-root backdoors, database injections), safely, and find out how they got in. - Harden — lock the doors so it doesn't happen again (2FA, permissions, REST/XML-RPC, and more) — applied safely, reversible. It looks at your site the way Google and an attacker do — not just the way a browser does — cleans safely (it won't touch a thing until you've taken a backup, nothing deleted blind, auto-rollback if a change breaks the site), and always tells you how they got in . Free · open-source (AGPL-3.0) · runs with any AI coding agent — Claude Code, Cursor, Codex, or any MCP client. --- Install (30 seconds) Options: ./install.sh --dir PATH (custom skills dir for Codex/Cursor/other), --skill wp-hardening (install one), --list (preview), --uninstall . Re-run any time to update. Helper scripts need Python 3.8+ and have zero third-party dependencies . This installs three self-contained, gateway-agnostic skills — each runs over any SSH+WP-CLI or any WordPress MCP (SproutOS recommended): Skill Ask it What it does --- --- --- wp-security-audit \"How hackable is this si","default_branch":null,"files":null,"tree":[],"storefront":"/r/adityaarsharma","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/adityaarsharma/wordpress-malware-removal/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}