AWP Disallow Root Control Security & Risk Analysis

wordpress.org/plugins/awp-disallow-root-control

Disallow access to the root directory via robots.txt with an option to enable or disable.

0 active installs v1.0.1 PHP + WP 5.0+ Updated Sep 20, 2024
access-controlrobots-txtsearch-engine-optimizationseo
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is AWP Disallow Root Control Safe to Use in 2026?

Generally Safe

Score 92/100

AWP Disallow Root Control has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The "awp-disallow-root-control" plugin v1.0.1 exhibits a very strong security posture based on the provided static analysis. The absence of any identified attack surface points (AJAX, REST API, shortcodes, cron events) suggests a minimal exposure to external input. Furthermore, the code signals are all positive, with no dangerous functions, all SQL queries using prepared statements, and all output properly escaped. Taint analysis also indicates no identified vulnerabilities related to unsanitized data flows. The plugin also has a clean vulnerability history, with no known CVEs recorded.

This plugin appears to be well-written from a security perspective, adhering to best practices for input validation, data sanitization, and output escaping. The lack of any recorded vulnerabilities or concerning code signals is a significant strength. However, it's worth noting that the absence of nonce checks and capability checks, while not directly indicating a vulnerability given the lack of entry points, could be a potential concern if the plugin's functionality were to expand or its entry points were to change in future versions without these security measures being implemented. For its current version and observed functionality, it is a very secure plugin.

Key Concerns

  • No nonce checks
  • No capability checks
Vulnerabilities
None known

AWP Disallow Root Control Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

AWP Disallow Root Control Release Timeline

v1.0.1Current
v1.0.0
Code Analysis
Analyzed Apr 16, 2026

AWP Disallow Root Control Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
4 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped4 total outputs
Attack Surface

AWP Disallow Root Control Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 2
actionadmin_initawp-disallow-root-control.php:41
actiondo_robotstxtawp-disallow-root-control.php:78
Maintenance & Trust

AWP Disallow Root Control Maintenance & Trust

Maintenance Signals

WordPress version tested6.6.5
Last updatedSep 20, 2024
PHP min version
Downloads1K

Community Trust

Rating100/100
Number of ratings4
Active installs0
Developer Profile

AWP Disallow Root Control Developer Profile

Algorithus

2 plugins · 0 total installs

88
trust score
Avg Security Score
92/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect AWP Disallow Root Control

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

HTML Comments
<!-- Robots.txt generated by AWP Disallow Root Control plugin -->
FAQ

Frequently Asked Questions about AWP Disallow Root Control