Administrator Only – Protect Your Site From Unauthorized Users Security & Risk Analysis

wordpress.org/plugins/administrator-only

Enable redirects for your front end pages or your REST API routes with a few clicks.

0 active installs v1.0.0 PHP 8.0+ WP 6.2+ Updated Jul 5, 2024
administrator-onlyhide-contentprotect-the-rest-apiprotect-your-site
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Administrator Only – Protect Your Site From Unauthorized Users Safe to Use in 2026?

Generally Safe

Score 92/100

Administrator Only – Protect Your Site From Unauthorized Users has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The "administrator-only" v1.0.0 plugin exhibits an exceptionally strong security posture based on the provided static analysis. The absence of any identified entry points in the attack surface (AJAX, REST API, shortcodes, cron) is a significant strength. Furthermore, the code demonstrates excellent adherence to secure coding practices, with all identified SQL queries utilizing prepared statements and all output being properly escaped. The presence of nonce and capability checks, despite the limited attack surface, further reinforces its security. The vulnerability history is also clean, with no recorded CVEs, suggesting a history of stable and secure development. However, the complete lack of any identified taint flows or even flows analyzed, while indicative of a very limited or non-existent data processing pipeline, also means there's no evidence of how dynamic data is handled, if at all. This plugin, as presented, appears highly secure but may also be extremely limited in functionality due to its minimal attack surface.

Vulnerabilities
None known

Administrator Only – Protect Your Site From Unauthorized Users Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Administrator Only – Protect Your Site From Unauthorized Users Release Timeline

No version history available.
Code Analysis
Analyzed Apr 16, 2026

Administrator Only – Protect Your Site From Unauthorized Users Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
14 escaped
Nonce Checks
1
Capability Checks
3
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped14 total outputs
Attack Surface

Administrator Only – Protect Your Site From Unauthorized Users Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 4
actionrest_api_initincludes/class-api.php:32
actiontemplate_redirectincludes/class-front.php:19
actionrest_api_initincludes/class-rest.php:25
actionadmin_menuincludes/pages/settings/class-settings-page.php:23
Maintenance & Trust

Administrator Only – Protect Your Site From Unauthorized Users Maintenance & Trust

Maintenance Signals

WordPress version tested6.6.5
Last updatedJul 5, 2024
PHP min version8.0
Downloads662

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Administrator Only – Protect Your Site From Unauthorized Users Developer Profile

Sorin Marta

2 plugins · 0 total installs

91
trust score
Avg Security Score
96/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Administrator Only – Protect Your Site From Unauthorized Users

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/administrator-only/includes/pages/settings/js/build/index.js
Script Paths
/wp-content/plugins/administrator-only/includes/pages/settings/js/build/index.js
Version Parameters
administrator-only/includes/pages/settings/js/build/index.js?ver=administrator-only/assets/css/admin/main.css?ver=

HTML / DOM Fingerprints

JS Globals
admon_settings
REST Endpoints
/wp-json/tadamus/admon/v1/settings
Shortcode Output
<div id="settings-root"></div>
FAQ

Frequently Asked Questions about Administrator Only – Protect Your Site From Unauthorized Users