
Divi Content Restrictor Security & Risk Analysis
wordpress.org/plugins/content-restrictor-for-diviConditionally restrict partial content on divi page. Divi visual builder compatible. Grant access to logged-in users, users belonging to any/all selec …
Is Divi Content Restrictor Safe to Use in 2026?
Generally Safe
Score 100/100Divi Content Restrictor has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "content-restrictor-for-divi" version 2.0.0 exhibits a mixed security posture. On the positive side, it demonstrates good practices by avoiding dangerous functions, performing all SQL queries using prepared statements, and having no recorded vulnerabilities or CVEs in its history. The absence of file operations and external HTTP requests also reduces potential attack vectors. However, significant concerns arise from the static analysis. The plugin exposes one REST API route without any permission callbacks, creating a direct and unprotected entry point that could be exploited if not properly secured by the surrounding WordPress installation or other plugins. Furthermore, the complete lack of nonce checks and capability checks across all identified entry points is a major weakness, as it allows any authenticated or even unauthenticated user (depending on the REST API endpoint's underlying logic) to potentially trigger actions or access data without proper authorization verification.
Key Concerns
- REST API route without permission callback
- No nonce checks found
- No capability checks found
- Output escaping is not fully comprehensive
- Bundled library Freemius v1.0 is potentially outdated
Divi Content Restrictor Security Vulnerabilities
Divi Content Restrictor Code Analysis
Bundled Libraries
Output Escaping
Divi Content Restrictor Attack Surface
REST API Routes 1
WordPress Hooks 13
Maintenance & Trust
Divi Content Restrictor Maintenance & Trust
Maintenance Signals
Community Trust
Divi Content Restrictor Alternatives
No alternatives data available yet.
Divi Content Restrictor Developer Profile
15 plugins · 6K total installs
How We Detect Divi Content Restrictor
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/content-restrictor-for-divi/js/script.js/wp-content/plugins/content-restrictor-for-divi/js/script.min.jsHTML / DOM Fingerprints
d5-content-restricted-sectionet_pb_dcr_sectiondata-d5-content-restricted-section-visibilitydata-d5-content-restricted-section-accessdata-d5-content-restricted-section-usersdata-dcr-user-rolesdata-dcr-user-idwindow.D5ContentRestrictor/wp-json/d5-content-restrictor/v1/settings-data