
Auto Save Off Security & Risk Analysis
wordpress.org/plugins/auto-save-offDisables the function automatically save posts WordPress
Is Auto Save Off Safe to Use in 2026?
Generally Safe
Score 85/100Auto Save Off has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'auto-save-off' v1.0.0 plugin exhibits a generally strong security posture based on the provided static analysis. There are no identified AJAX handlers, REST API routes, shortcodes, or cron events, which significantly limits the plugin's attack surface. The absence of dangerous functions and external HTTP requests further contributes to a secure foundation. All SQL queries are prepared, and there are no file operations or Taint analysis findings, indicating good coding practices in these critical areas.
However, there are a couple of areas for improvement. The plugin has 50% of its outputs unescaped, which presents a moderate risk of cross-site scripting (XSS) vulnerabilities if these outputs contain user-controlled data. Additionally, there are no nonce checks implemented, which is a standard security measure for protecting against CSRF (Cross-Site Request Forgery) attacks, especially if any form of user interaction is managed by the plugin, even if not explicitly listed as an entry point.
The plugin's vulnerability history is exceptionally clean, with zero recorded CVEs. This suggests a track record of security diligence or that the plugin's functionality is simple enough to avoid common vulnerabilities. In conclusion, while the plugin demonstrates strengths in code hygiene and a lack of historical issues, the unescaped output and missing nonce checks are notable weaknesses that should be addressed to achieve a more robust security profile.
Key Concerns
- 50% of outputs are unescaped
- No nonce checks implemented
Auto Save Off Security Vulnerabilities
Auto Save Off Code Analysis
Output Escaping
Auto Save Off Attack Surface
WordPress Hooks 9
Maintenance & Trust
Auto Save Off Maintenance & Trust
Maintenance Signals
Community Trust
Auto Save Off Alternatives
Easy Bookmark
easy-bookmark
The Easy Bookmark Plugin provides a bookmark solution for WP websites. Users can bookmark posts and view them anytime.
Ethne Favorites Button
ethne-favourites
Favorite buttons for WordPress, Shortcodes to save and list favorite posts and pages for each user.
Jiali User Bookmarks
jiali-user-bookmarks
Let your visitors easily bookmark, save, or favorite posts! Lightweight, AJAX-powered plugin to boost user engagement and interactivity. 📑✨
Auto Save Off Developer Profile
7 plugins · 840 total installs
How We Detect Auto Save Off
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/auto-save-off/assets/css/main.css/wp-content/plugins/auto-save-off/assets/js/main.js/wp-content/plugins/auto-save-off/assets/js/main.jsHTML / DOM Fingerprints
data_brodinhosdata_brodinhos