Custom Recovery Mode Email Security & Risk Analysis

wordpress.org/plugins/custom-recovery-mode-email

Change the recipient address when WordPress sends an email if a Fatal Error occurs.

90 active installs v1.0.6 PHP 7.4+ WP 6.0+ Updated Aug 5, 2025
fatal-errorrecovery-moderecovery-mode-email
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Custom Recovery Mode Email Safe to Use in 2026?

Generally Safe

Score 100/100

Custom Recovery Mode Email has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 8mo ago
Risk Assessment

The custom-recovery-mode-email plugin v1.0.6 presents a generally good security posture based on the provided static analysis. There are no identified AJAX handlers, REST API routes, shortcodes, or cron events, resulting in zero identified attack surface points and no unprotected entry points. The absence of dangerous functions and external HTTP requests further contributes to a positive security outlook. The plugin also demonstrates a commitment to security by including nonce checks and capability checks, indicating an effort to protect against common WordPress vulnerabilities.

Key Concerns

  • SQL queries not using prepared statements
  • Significant portion of output not properly escaped
Vulnerabilities
None known

Custom Recovery Mode Email Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Custom Recovery Mode Email Code Analysis

Dangerous Functions
0
Raw SQL Queries
1
0 prepared
Unescaped Output
10
9 escaped
Nonce Checks
1
Capability Checks
8
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

0% prepared1 total queries

Output Escaping

47% escaped19 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
dm_rme_settings_page (dm-rme-settings.php:52)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Custom Recovery Mode Email Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 11
filterrecovery_mode_emaildm-rme-filter.php:29
filterrecovery_mode_email_rate_limitdm-rme-filter.php:42
filterwp_mail_fromdm-rme-filter.php:54
filterwp_mail_from_namedm-rme-filter.php:66
actionnetwork_admin_menudm-rme-settings.php:41
actionadmin_menudm-rme-settings.php:45
actionplugins_loadeddm-rme.php:33
actioninitdm-rme.php:42
actionadmin_noticesdm-rme.php:68
actionnetwork_admin_noticesdm-rme.php:69
actionadmin_enqueue_scriptsdm-rme.php:70
Maintenance & Trust

Custom Recovery Mode Email Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedAug 5, 2025
PHP min version7.4
Downloads2K

Community Trust

Rating100/100
Number of ratings1
Active installs90
Developer Profile

Custom Recovery Mode Email Developer Profile

Jairo Ochoa

2 plugins · 190 total installs

100
trust score
Avg Security Score
100/100
Avg Patch Time
1 days
View full developer profile
Detection Fingerprints

How We Detect Custom Recovery Mode Email

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

CSS Classes
dm-rme-error-notice
FAQ

Frequently Asked Questions about Custom Recovery Mode Email