WPHI Diagnostic Suite Lite

Description

WP Health Inspector shows you what broke your WordPress site — and what changed right before it did. Every plugin update, activation, and core change is plotted against your PHP error spikes and scored 0–99, so you stop guessing which change caused the problem. And because every query is read-only, it is completely safe to run on a live production site.

Think of it as a medical chart for your WordPress install. It surfaces findings, flags issues, and helps you trace the root cause of problems — but it never acts without your permission. Every database query is SELECT-only. Nothing is inserted, updated, or deleted.

Who it’s for

  • Site owners who want to understand why their site is slow or broken
  • Developers debugging PHP errors and plugin conflicts
  • Agencies doing pre-launch or ongoing site audits
  • Anyone who wants to stop guessing and start knowing

The Modules

🔴 Error Log Viewer
PHP error log analysis — grouped, severity-rated, and sorted so you see the most important errors first. Each group shows first-seen and last-seen timestamps, occurrence count, file path, and line number. The viewer also detects whether your debug log is web-accessible and escalates the health score if so.

📅 What Changed? — Timeline Correlation
The most useful debugging tool on this list. Every plugin update, activation, WordPress core update, and theme switch plotted on the same interactive timeline as your PHP error spikes. Hover any event to see correlation scores (0–99) with plain-English reasoning explaining why a change and an error are likely connected.

🗄️ DB Health Inspector
Table bloat analysis, autoloaded options ranked by size, orphaned postmeta counts, Action Scheduler history, and autoload index verification. If your database is slowing you down, this is where you find out why.

⚙️ Cron Inspector
Standard WP-Cron and Action Scheduler jobs in a single unified view, sorted chronologically with next-run times, intervals, and overdue highlighting. No more mystery cron tasks.

🔌 Blast Radius Analyzer
Shows the full footprint of every active plugin: custom database tables, scheduled cron jobs, REST API routes, enqueued scripts and stylesheets, and hook registrations. Know exactly what a plugin owns before you deactivate it.

🚀 Update Impact
Before updating any plugin, see what it shares with the rest of your site — common hooks, custom DB tables, scheduled jobs, REST endpoints, and asset bundle size — so you can anticipate conflicts before they happen.

📦 Autoload Governor
Per-plugin autoload size attribution. See exactly which plugins are adding weight to every single page load, and how much.

💣 Time Bomb Detector
SSL certificate expiry monitoring, PHP version risk assessment, and stale plugin flagging. Problems that tend to surface at the worst possible time — surfaced early, on your schedule.

🕵️ Plugin Abandonment Radar
Every installed plugin cross-checked against the WordPress.org Plugin API for last-updated staleness, tested-up-to drift, and closed or removed status. Closed plugins are often removed for unpatched security vulnerabilities — this module tells you before it becomes a problem.

📜 Asset Inspector
Every script and stylesheet WordPress has enqueued, with file sizes and running totals, separated by JavaScript and CSS.

🖥️ Server & PHP Environment
php.ini directive audit, key wp-config.php constants review, PHP extension checklist, and database server details — all in one place.

📊 Hosting Benchmark
On-demand database, PHP, and filesystem performance probes with letter grades and object-cache detection.

✉️ Mail Health Inspector
WordPress mail transport detection, live SPF/DKIM/DMARC/MX DNS record checks, and a one-click send test that returns real failure messages instead of generic errors.

📄 Export Report
Generates a self-contained, downloadable HTML diagnostic report covering the health score, database metrics, error log summary, and full system snapshot. Shareable with hosting support or a developer without granting admin access.

100% Read-Only

Every query this plugin runs is SELECT-only. It reads your site’s state; it never changes it. No rows inserted, no settings modified, no plugins deactivated.

Want more?

WP Health Inspector Pro builds on everything in Lite with automated analysis and tools for teams and agencies: Root Cause Analysis, Conflict Detector, Request Profiler, Code Linter, External Dependency Monitoring, Performance Baselines, Core Web Vitals estimates, Security Audit, and Content Health. It also adds Fleet Sync — monitor every client site from one central dashboard, sorted worst-first — and Integrations that file any error straight to Jira, Trello, Asana, ClickUp, Linear, GitHub, or Slack, plus weekly Health Digest emails and white-label report branding.

Learn more at wphealthinspector.com

External Services

This plugin connects to the official WordPress.org Plugin API to power the Plugin Abandonment Radar module.

What it does: for each installed plugin, the plugin requests that plugin’s public directory listing (last-updated date, tested-up-to version, and open/closed status) from the WordPress.org Plugin API, so it can flag plugins that appear abandoned or removed.

When it happens: only when an administrator views the Plugin Abandonment Radar page. Results are cached for 12 hours between requests.

Data sent: only the plugin slugs of plugins already installed on your site. No site content, user data, or personally identifiable information is sent.

Service provider: WordPress.org
API endpoint: https://api.wordpress.org/plugins/info/1.2/
Terms of Service: https://wordpress.org/about/terms-of-service/
Privacy Policy: https://wordpress.org/about/privacy/

Captures d’écran

Installation

  1. Install the plugin through the WordPress Plugins screen, or upload the plugin files to /wp-content/plugins/wphi-diagnostic-suite-lite.
  2. Activate the plugin through the Plugins screen in WordPress.
  3. Navigate to Health Inspector in the admin menu to get started.

No configuration required. The health score dashboard loads immediately on activation.

FAQ

Why did my WordPress site break after an update?

Most likely, a recent change is responsible — a plugin update, an activation, a core update, or a theme switch. The What Changed? module plots every one of those changes on the same timeline as your PHP error spikes and scores each pairing 0–99, so you can see at a glance which change lines up with the moment things broke instead of guessing.

How do I read the WordPress debug.log?

The Error Log Viewer reads your debug.log for you and groups identical errors together, rates each group by severity, and shows the first-seen and last-seen time, occurrence count, file path, and line number — so the error that matters is at the top instead of buried in thousands of raw lines. It also warns you if your debug.log is publicly web-accessible.

What’s the difference between the Free version and Pro?

Lite gives you 14 fully-working diagnostic modules for one site — nothing is locked or time-limited. Pro adds more modules for teams and agencies: automated Root Cause Analysis, a Conflict Detector, Fleet Sync for monitoring many sites from one dashboard, and integrations that file errors straight to your task tracker.

Does this plugin make any changes to my database?

No. Every query uses SELECT, SHOW, or SHOW INDEX. Nothing is inserted, updated, or deleted. It is fully safe to run on a live production site.

Can I use this on a live production site?

Yes. The plugin is designed specifically for production diagnostics. It has no frontend footprint — no scripts or styles are loaded for visitors — and all admin queries are read-only.

Will this slow down my site?

No. The plugin only runs queries when an administrator loads one of its own pages. There is no code running on the frontend and no persistent background processing beyond a lightweight daily snapshot used by the What Changed? timeline.

What is the correlation score in What Changed?

Each error–change pairing is given a 0–99 score. File-path matching — where the error originates inside the changed plugin’s own folder — scores 80–99 regardless of timing. Temporal matching scores lower based on time proximity and source reliability.

Who can see the plugin pages?

The plugin requires the manage_options capability. Only administrators can access its pages.

Does it work alongside WP Health Inspector Pro?

Yes. If Pro is also installed, Lite enters a hibernation mode: it stays listed as active (for WordPress.org update checks) but registers zero hooks and uses zero resources. Pro handles everything.

Avis

Il n’y a aucun avis sur cette extension.

Contributeurs & développeurs

« WPHI Diagnostic Suite Lite » est un logiciel libre. Les personnes suivantes ont contribué à cette extension.

Contributeurs

Historique des changements

3.4.0

  • Changed: Blast Radius and Server & PHP now ship a complete basic view; Pro-only depth is described in a static notice rather than shown as locked.
  • Changed: Time Bomb Detector ships the SSL expiry check; additional checks are described as Pro features.
  • Changed: Deep Autoload Diagnostics shows all findings in full; guided copy-paste cleanup commands are a Pro feature.
  • Added: Dashboard now includes a dismissible « Available in Pro » section and a contextual upgrade note based on your own health score.
  • Removed: Legacy locked « Pro feature » pages and the per-site teaser statistics they displayed.
  • Housekeeping: Removed bundled runtime cache and log artifacts from the plugin package.

3.3.1

  • Fixed: Admin notices from other plugins and WordPress core now display correctly on Health Inspector pages (no longer suppressed)
  • Fixed: Dismissing a fatal error in the dashboard now redirects correctly back to the dashboard
  • Fixed: « Upgrade to Pro » menu entry removed — upgrade information is available in the dashboard
  • Fixed: Backup files removed from plugin package
  • Fixed: Uninstall routine now correctly cleans up all plugin data and references Lite (not Pro)
  • Improved: Textdomain loader registered so the plugin is ready for translation
  • Improved: All permission-check messages are now translatable
  • Improved: Admin submenu scrollbar CSS now delivered via wp_add_inline_style instead of a raw echo
  • Improved: Method names now follow WordPress snake_case conventions throughout

3.3.0

  • New: Plugin Abandonment Radar — every installed plugin checked against WordPress.org for last-updated staleness, tested-up-to drift, and closed/removed status; risk-sorted table with 12-hour cache
  • New: Mail Health Inspector — transport detection, live SPF/DKIM/DMARC/MX DNS checks, one-click send test with real failure messages
  • New: Hosting Benchmark — on-demand DB/PHP/filesystem/loopback probes with letter grades, object-cache detection, and history chart
  • Fixed: « What Changed? » and « Update Impact » pages are now correctly registered in the admin menu
  • Fixed: Admin styles and scripts now load correctly on every plugin page
  • Improved: Admin menu reordered into a clearer, more logical grouping
  • Improved: Error log parser rewritten — three-stage matching handles all PHP error formats correctly including uncaught fatals
  • Removed: Unused Pro-only module files that were bundled by mistake and never ran

3.1.0

  • New: What Changed? — interactive SVG timeline correlating change events to PHP error spikes; two-phase correlation (file-path matching first, temporal proximity fallback); 0–99 correlation scores with plain-English reasoning
  • New: Update Impact — before every update, see shared hooks, DB tables, cron jobs, REST routes, and asset footprint for the plugin being updated
  • New: Table pagination across all data tables — 10/25/50/100/All page size selector, result counter, and page navigation
  • Improved: Dashboard health issue list includes direct links to the relevant module for each issue
  • Improved: WP_DEBUG_LOG health check now verifies actual web accessibility of the log file
  • Improved: Error log search uses class-based filtering so it composes correctly with pagination

3.0.0

  • New: Error Log Aggregation module
  • New: Export Report feature
  • Improved: PHP requirement raised to 8.0
  • Improved: All date output now uses gmdate() for timezone safety
  • Improved: AJAX endpoints now verify nonces
  • Fixed: Unprefixed global functions renamed with a wphi_ prefix
  • Fixed: Database queries use $wpdb->prepare() and esc_like() throughout

2.0.0

  • New: Health Score dashboard with animated SVG gauge
  • New: Server and PHP Environment module
  • New: Complete CSS design system with CSS custom properties
  • New: Full mobile responsiveness across all pages
  • Improved: Consistent Model/View architecture across all modules
  • Fixed: Autoload size query now covers auto in addition to yes, on, auto-on

1.1.0

  • Initial structured release with DB Health, Blast Radius, Asset Inspector, Cron Inspector, Autoload Governor, and Time Bomb Detector modules.