Auto-Deselect Uncategorized Security & Risk Analysis

wordpress.org/plugins/auto-deselect-uncategorized

Deselect "Uncategorized" (or your chosen "default category") when others are selected; re-select it when no others are.

40 active installs v1.0.3 PHP 5.6+ WP 5.0+ Updated Dec 8, 2020
categorydeselectdeuncategorizetaxonomyuncategorized
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Auto-Deselect Uncategorized Safe to Use in 2026?

Generally Safe

Score 85/100

Auto-Deselect Uncategorized has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5yr ago
Risk Assessment

The "auto-deselect-uncategorized" plugin v1.0.3 exhibits a remarkably clean static analysis report. The absence of any detected dangerous functions, raw SQL queries, unescaped output, file operations, external HTTP requests, or tainted data flows suggests a highly secure codebase. Furthermore, the plugin has no recorded vulnerability history, indicating a lack of past security incidents. This points to a strong adherence to secure coding practices.

However, the static analysis also reveals a significant absence of security checks like nonces and capability checks, and a complete lack of protected entry points (AJAX, REST API, shortcodes, cron events). While the plugin might not have exposed functionality that *requires* these checks in its current state, the complete absence suggests a potential for future vulnerabilities if new features are added without implementing proper authorization and input validation. The overall security posture is good due to the current clean code, but there is a weakness in the lack of built-in security mechanisms for extensibility.

Key Concerns

  • Missing nonce checks on entry points
  • Missing capability checks on entry points
Vulnerabilities
None known

Auto-Deselect Uncategorized Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Auto-Deselect Uncategorized Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

Auto-Deselect Uncategorized Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 3
actioninitauto-deselect-uncategorized.php:97
actionenqueue_block_editor_assetsauto-deselect-uncategorized.php:100
filterauto_deselect_uncategorizedauto-deselect-uncategorized.php:154
Maintenance & Trust

Auto-Deselect Uncategorized Maintenance & Trust

Maintenance Signals

WordPress version tested5.5.18
Last updatedDec 8, 2020
PHP min version5.6
Downloads2K

Community Trust

Rating100/100
Number of ratings1
Active installs40
Developer Profile

Auto-Deselect Uncategorized Developer Profile

gnowland

1 plugin · 40 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Auto-Deselect Uncategorized

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/auto-deselect-uncategorized/build/js/index.js
Script Paths
/wp-content/plugins/auto-deselect-uncategorized/build/js/index.js
Version Parameters
auto-deselect-uncategorized?ver=1.0.3auto-deselect-uncategorized/build/js/index.asset.php?ver=1.0.3

HTML / DOM Fingerprints

JS Globals
scriptParams
FAQ

Frequently Asked Questions about Auto-Deselect Uncategorized