
Age Verification – simple Security & Risk Analysis
wordpress.org/plugins/age-verification-simpleWith this module you will know that each user is an adult and uses the site with his consent.
Is Age Verification – simple Safe to Use in 2026?
Generally Safe
Score 92/100Age Verification – simple has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "age-verification-simple" plugin v1.3.0 demonstrates a generally good security posture based on the provided static analysis and vulnerability history. The absence of any known CVEs, critical taint flows, raw SQL queries, file operations, or external HTTP requests is a significant strength. The plugin also appears to implement proper output escaping for the vast majority of its outputs and utilizes prepared statements for all SQL queries. The presence of nonce checks is also a positive indicator of security awareness.
However, a notable area for improvement is the complete lack of capability checks for its AJAX handlers. While the total number of entry points is low and none are immediately exposed without authentication, the absence of capability checks means that any authenticated user, regardless of their role or permissions, could potentially interact with these AJAX handlers. This could lead to unintended actions or information disclosure if the functionality within these handlers is not sufficiently restricted by other means. The taint analysis showing zero flows is reassuring, but the lack of capability checks is a missed opportunity to harden the attack surface further.
In conclusion, "age-verification-simple" v1.3.0 is a relatively secure plugin with a clean vulnerability history and good coding practices in key areas like SQL and output escaping. The main weakness lies in the missing capability checks for its AJAX handlers, which introduces a potential risk for privilege escalation or unauthorized actions by authenticated users. Addressing this would significantly enhance the plugin's overall security.
Key Concerns
- Missing capability checks on AJAX handlers
Age Verification – simple Security Vulnerabilities
Age Verification – simple Release Timeline
Age Verification – simple Code Analysis
Output Escaping
Age Verification – simple Attack Surface
AJAX Handlers 2
WordPress Hooks 3
Maintenance & Trust
Age Verification – simple Maintenance & Trust
Maintenance Signals
Community Trust
Age Verification – simple Alternatives
No alternatives data available yet.
Age Verification – simple Developer Profile
2 plugins · 0 total installs
How We Detect Age Verification – simple
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/age-verification-simple/assets/inline/css.php/wp-content/plugins/age-verification-simple/assets/inline/js.php/wp-content/plugins/age-verification-simple/tpl/popup.php/wp-content/plugins/age-verification-simple/tpl/popup_inject.php/wp-content/plugins/age-verification-simple/tpl/popup_deny.phpHTML / DOM Fingerprints
avs-popup-wrapperavs-popup-contentavs-popup-buttonsavs-popup-deny-redirectavs-popup-apply-buttonavs-popup-deny-buttonavs-popup-close<!-- AGE VERIFICATION SIMPLE - Popup -->data-avs-settingsdata-avs-varsAgeVerificationSimple/wp-json/age-verification-simple/v1/xhr_get