Magento 2 MageArgus Security Scanner extension by W3ctrl runs a deep white-box security audit from inside your Magento 2 / Adobe Commerce store and turns 29+ checks into a single 0–100 security score with prioritised, copy-paste fixes.
Main Features:
- Easy to use — one-click “Run scan now” from the admin, plus a CLI command.
- Scans the real filesystem, database and configuration for malware, webshells and injected skimmer code.
- Confirms critical CVEs/security patches (SessionReaper, CosmicSting) are actually applied on disk, and flags outdated Magento versions.
- Audits admin hardening (2FA, secret-key URLs, custom admin path, CAPTCHA, login lockout), exposed files/secrets (.git, env backups, DB dumps) and file permissions.
- One-click auto-fix for safe issues, with a security dashboard, full scan history and downloadable PDF reports.
- Scheduled daily/weekly/monthly cron scans with email reports and PDF attachment.
- Multi-store supported and follows Magento best practices — easily customizable by other developers.
- Free support and troubleshooting.










Reviews
There are no reviews yet.