
Activity Logger Security & Risk Analysis
wordpress.org/plugins/activity-loggerLogs all activity within the CMS by logged-in users. Allows for user-defined exclusions, filtering, and log exports.
Is Activity Logger Safe to Use in 2026?
Generally Safe
Score 92/100Activity Logger has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "activity-logger" plugin v1.1.1 exhibits a strong security posture based on the provided static analysis and vulnerability history. The absence of any detected dangerous functions, file operations, or external HTTP requests is highly positive. Furthermore, the plugin demonstrates good practices with a high percentage of SQL queries using prepared statements and a significant portion of outputs being properly escaped. The low number of taint flows and the complete lack of critical or high severity issues in this analysis indicate a well-secured codebase against common injection and data manipulation vulnerabilities.
The vulnerability history further reinforces this positive assessment, showing no known CVEs associated with this plugin. This suggests a track record of secure development and maintenance. The plugin also incorporates a reasonable number of nonce and capability checks, contributing to its overall resilience against unauthorized actions.
While the attack surface appears minimal with no AJAX handlers, REST API routes, shortcodes, or cron events exposed directly, the plugin's security relies heavily on the effectiveness of the checks it does perform. The overall security is good, with no immediate critical risks identified in the static analysis or history. However, a truly comprehensive assessment would require deeper code review beyond the scope of this data.
Activity Logger Security Vulnerabilities
Activity Logger Release Timeline
Activity Logger Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Activity Logger Attack Surface
WordPress Hooks 16
Maintenance & Trust
Activity Logger Maintenance & Trust
Maintenance Signals
Community Trust
Activity Logger Alternatives
LogAction – Activity Logs for Admin
logaction
Track and log WordPress activities to monitor and improve your site's security and administrative tasks.
Disable User Gravatar
disable-user-gravatar
Stops WordPress from grabbing a user avatar using their registrated email from gravatar.com.
BotWriter – AI Writer & Content Generator
botwriter
AI Writer & content generator for WordPress & WooCommerce. Auto blogging, AI writing plugin, product descriptions and SEO content.
Plainview Activity Monitor
plainview-activity-monitor
Real-time monitoring of users, content, functionality, appearance, security, and updates.
UptimeMonster Site Monitor
uptimemonster-site-monitor
Monitor all activities and error logs of your WordPress site with UptimeMonster. Effortlessly simplify website management.
Activity Logger Developer Profile
2 plugins · 60 total installs
How We Detect Activity Logger
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/activity-logger/js/admin.js/wp-content/plugins/activity-logger/css/admin.css/wp-content/plugins/activity-logger/js/admin.jsactivity-logger/js/admin.js?ver=activity-logger/css/admin.css?ver=