Block Repo Plugin Updates Security & Risk Analysis

wordpress.org/plugins/block-repo-plugin-updates

Blocks plugin updates for any plugin whose folder looks like a code repo.

0 active installs v1.0.3 PHP 5.4+ WP 4.7.0+ Updated Nov 12, 2019
blockdevreporepositoryupdate
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Block Repo Plugin Updates Safe to Use in 2026?

Generally Safe

Score 85/100

Block Repo Plugin Updates has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 6yr ago
Risk Assessment

The plugin "block-repo-plugin-updates" v1.0.3 exhibits a very strong security posture based on the provided static analysis. The absence of any identified dangerous functions, raw SQL queries, unescaped output, file operations, external HTTP requests, or taint flows with unsanitized paths is highly commendable. Furthermore, the lack of exposed entry points like AJAX handlers, REST API routes, or shortcodes that lack proper authentication or permission checks significantly reduces the potential attack surface. The vulnerability history being completely clear, with no recorded CVEs of any severity, reinforces this positive assessment, indicating a history of secure development practices. While the current data points to an exceptionally secure plugin, the complete absence of nonce and capability checks on any potential (though currently non-existent) entry points is a technical observation rather than a direct risk, as there are no apparent entry points to check. The plugin's strengths lie in its clean codebase and lack of historical vulnerabilities.

Vulnerabilities
None known

Block Repo Plugin Updates Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Block Repo Plugin Updates Release Timeline

No version history available.
Code Analysis
Analyzed Mar 17, 2026

Block Repo Plugin Updates Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

Block Repo Plugin Updates Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 3
filtersite_transient_update_pluginsblock-repo-plugin-updates.php:73
filterhttp_request_argsblock-repo-plugin-updates.php:99
filterplugin_row_metablock-repo-plugin-updates.php:120
Maintenance & Trust

Block Repo Plugin Updates Maintenance & Trust

Maintenance Signals

WordPress version tested5.3.21
Last updatedNov 12, 2019
PHP min version5.4
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Block Repo Plugin Updates Developer Profile

noplanman

5 plugins · 140 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Block Repo Plugin Updates

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

CSS Classes
dashicons-locksuccess
Shortcode Output
<strong>BRPU</strong>
FAQ

Frequently Asked Questions about Block Repo Plugin Updates