Awesome Login Customizer Security & Risk Analysis

wordpress.org/plugins/awesome-login-customizer

Easily customize your WordPress login page to match your brand with Awesome Login Customizer.

0 active installs v1.0.0 PHP 7.2+ WP 5.2+ Updated May 25, 2025
brandingcustom-admin-login-pagecustom-wp-loginlogin-customizerlogin-page
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Awesome Login Customizer Safe to Use in 2026?

Generally Safe

Score 100/100

Awesome Login Customizer has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 11mo ago
Risk Assessment

The "awesome-login-customizer" v1.0.0 plugin demonstrates a strong security posture based on the provided static analysis. There are no identified AJAX handlers, REST API routes, shortcodes, or cron events that could serve as direct entry points for attackers. Furthermore, the code signals show a clean bill of health, with no dangerous functions, file operations, or external HTTP requests. All SQL queries are properly prepared, and all output is correctly escaped, indicating good development practices in these critical areas.

The absence of any recorded vulnerabilities in its history is also a positive sign, suggesting a well-maintained and secure plugin. The taint analysis revealing zero flows with unsanitized paths further reinforces this. The plugin appears to be developed with security in mind, focusing on preventing common web vulnerabilities.

However, a notable observation is the complete absence of nonce checks and capability checks. While the current version may not have exposed attack vectors through its limited entry points, this omission represents a potential weakness. If new features are added in the future that introduce entry points, the lack of these fundamental security mechanisms could expose the plugin to cross-site request forgery (CSRF) or unauthorized access vulnerabilities. The overall security is good, but this oversight warrants attention for future development.

Key Concerns

  • Missing nonce checks
  • Missing capability checks
Vulnerabilities
None known

Awesome Login Customizer Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Awesome Login Customizer Release Timeline

No version history available.
Code Analysis
Analyzed Mar 17, 2026

Awesome Login Customizer Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
21 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped21 total outputs
Attack Surface

Awesome Login Customizer Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 7
actionadmin_menuawesome-login-customizer.php:20
actionadmin_enqueue_scriptsawesome-login-customizer.php:27
actionadmin_enqueue_scriptsawesome-login-customizer.php:33
actionlogin_headawesome-login-customizer.php:110
actionlogin_enqueue_scriptsawesome-login-customizer.php:115
filterlogin_headerurlawesome-login-customizer.php:120
actionadmin_initawesome-login-customizer.php:127
Maintenance & Trust

Awesome Login Customizer Maintenance & Trust

Maintenance Signals

WordPress version tested6.6.5
Last updatedMay 25, 2025
PHP min version7.2
Downloads640

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Awesome Login Customizer Developer Profile

MD Ripon

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Awesome Login Customizer

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/awesome-login-customizer/css/alcwp-admin-style.css/wp-content/plugins/awesome-login-customizer/js/alcwp-media-uploader.js/wp-content/plugins/awesome-login-customizer/css/alcwp-style.css
Script Paths
/wp-content/plugins/awesome-login-customizer/js/alcwp-media-uploader.js
Version Parameters
awesome-login-customizer/css/alcwp-admin-style.css?ver=1.0.0awesome-login-customizer/js/alcwp-media-uploader.js?ver=1.0.0awesome-login-customizer/css/alcwp-style.css?ver=1.0.0

HTML / DOM Fingerprints

CSS Classes
alcwp_main_areaalcwp_body_areaalcwp_commonalcwp-custom-bg-imagealcwp-logo-image-urlalcwp-remove-imagealcwp-primary-coloralcwp-sec-color+1 more
Data Attributes
data-input-id
JS Globals
window.alcwp_media_uploader_button
FAQ

Frequently Asked Questions about Awesome Login Customizer