
Block Temporary Email Security & Risk Analysis
wordpress.org/plugins/block-temporary-emailThis plugin stops users from giving you disposable or fake email addresses when signing up. This helps reduce spam and fraud.
Is Block Temporary Email Safe to Use in 2026?
Generally Safe
Score 100/100Block Temporary Email has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'block-temporary-email' v1.7.5 plugin exhibits a mixed security posture. On the positive side, the plugin demonstrates good practices regarding database interactions, utilizing prepared statements for all SQL queries and showing no critical or high-severity taint analysis findings. The absence of known vulnerabilities (CVEs) and a history of no recorded vulnerabilities also suggests a generally well-maintained codebase. However, significant security concerns arise from the attack surface analysis. The plugin exposes four AJAX handlers, all of which lack authentication checks. This creates a substantial entry point for potential attackers to interact with the plugin's functionality without proper authorization. Furthermore, the plugin lacks nonce checks for its AJAX actions, which is a critical oversight that can lead to Cross-Site Request Forgery (CSRF) vulnerabilities. While direct output escaping is not a major issue with 73% being properly escaped, the overall lack of authorization and nonce verification on its AJAX endpoints poses a considerable risk.
Key Concerns
- 4 AJAX handlers without auth checks
- 0 Nonce checks on AJAX handlers
Block Temporary Email Security Vulnerabilities
Block Temporary Email Code Analysis
Output Escaping
Block Temporary Email Attack Surface
AJAX Handlers 4
WordPress Hooks 14
Maintenance & Trust
Block Temporary Email Maintenance & Trust
Maintenance Signals
Community Trust
Block Temporary Email Alternatives
Ultimate Email Validator – Validate and Stop Fake, Temporary and Disposable Emails
ultimate-email-validator
Enhance Website Security: Stop Fake, Temporary, and Disposable Emails Across Registration, Contact Form 7, Mailchimp, Woocommerce, and More!
Temp Mail Detector – Block Temporary Emails
temp-mail-detector-block-temporary-emails
Detect and block temporary emails from registering on your website using the Temp Mail Detector plugin.
Email Blocklist
email-blocklist
Keep your WordPress site clean by blocking signups and comments from temporary or disposable email domains. 100% free, no paid APIs.
Block Disposable Email
block-disposable-email-addresses
This plugin detects one-time email addresses (disposable email, trashmail, mailinator, 10minutemail) and helps to keep your userbase and comments clea …
Disposable Email Blocker – Contact Form 7
disposable-email-blocker-contact-form-7
Now You Can Easily Block/Prevent Disposable/Temporary Spam Emails From Submitting on CF7 Form.
Block Temporary Email Developer Profile
1 plugin · 500 total installs
How We Detect Block Temporary Email
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.