In my quest to find way of securing 3rd party PHP code I discovered the PHP Security Scanner. This could be a first stage check in the process of checking WordPress templates.
Afterwards we’d have to flag unwanted commands. Well, we don’t want people opening /etc/passwd now do we?
You might also like