Hello @galbaras,
Glad you reached out here, and my apologies for the slow turnaround!
You may be experiencing the “smarter notifications” we recently released for Solid Security wherein instead of sending an email every time a scan runs, the plugin only sends an alert when a new vulnerability is discovered that meets your chosen notification threshold. If the same issue is already known, muted, or below the threshold, it won’t re-trigger an email. We wrote more about this here.
A few things you can check on the site that did not send an email:
- Confirm that the Notification settings has the recipient address set up correctly and the Site Scan Results email is enabled.
- Check if there was any problem with
wp_mail or your SMTP setup and confirm that other emails are sending.
- Make sure scheduled scans are running.
- Simulate a fresh scan result by testing a known vulnerability and waiting for the scheduled site scan to run.
Let me know how it goes!
OK, so on a site that had never had this plugin installed, I installed v3.28 of Media Library Assistant. The vulnerability was picked up as Critical and logged in the database at 2025-10-06 19:00:10 (GMT+10), but no email notification has been received yet (it is now 2025-10-07 8:38).
To be sure, the only notification enabled in the settings is the one for Site Scan Results, sending to the Default Recipients, which is my particular user ID.
I’ve also confirmed that emails aren’t being caught by some spam filter along the way, but I’m not sure how to check for any background jobs that might not be scheduled properly.
Please advise.
Still no notification email today 🙁
Hi @galbaras,
Could you please confirm if your other site emails are being delivered without issues?
If so, can you please try the following steps and let us know if the Site Scan emails aren’t making it to the recipient’s inbox?
1)Enable the Debug mode per this guide.
2)Look under the Scheduler list and run the malware-scan task
3)Wait for the email to arrive
Note that this check is best done on a site that has an “undiscovered” vulnerability.
If possible, please also check if the same issue happens on a fresh site (with no to minimal plugins installed) living on the same server.
Looking forward to your findings!
Ran the troubleshooting on one site, and notifications seem to be sent now by all of them, although I’m not sure what’s made the difference.
Could it be related to using the same network protection key? Are sites linked that way somehow?
I now have new vulnerabilities, but no email notifications about them 🙁