Delete Expired Transients Security & Risk Analysis

wordpress.org/plugins/delete-expired-transients

Delete old, expired transients from WordPress wp_options table

5K active installs v2.0.7 PHP 5.3+ WP 3.7+ Updated Dec 14, 2025
cacheexpiredtransienttransientswp_options
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Delete Expired Transients Safe to Use in 2026?

Generally Safe

Score 100/100

Delete Expired Transients has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3mo ago
Risk Assessment

The 'delete-expired-transients' v2.0.7 plugin exhibits a strong security posture based on the provided static analysis. The plugin has a commendably small attack surface with no identified entry points requiring authentication. The code also demonstrates good security practices, utilizing prepared statements for all SQL queries and a high percentage of properly escaped output. The absence of dangerous functions, file operations, and external HTTP requests further bolsters its security. Crucially, there is no history of known vulnerabilities, indicating a stable and likely well-maintained codebase.

While the static analysis shows no critical or high-severity issues in taint flows, and the plugin relies on WordPress's built-in capabilities for security, the absence of explicit capability checks on any entry points (though there are no entry points) is a minor point to note. However, given the current lack of direct interaction vectors, this is not a significant concern. The overall impression is a secure and robust plugin. The plugin's strengths lie in its minimal attack surface, secure data handling, and lack of historical vulnerabilities, making it a low-risk choice for users.

Vulnerabilities
None known

Delete Expired Transients Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Delete Expired Transients Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
18 prepared
Unescaped Output
3
18 escaped
Nonce Checks
3
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared18 total queries

Output Escaping

86% escaped21 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
processActions (includes\class.DelxtransNetwork.php:83)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Delete Expired Transients Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 8
actionload-settings_page_delxtransincludes\class.DelxtransNetwork.php:21
actionnetwork_admin_menuincludes\class.DelxtransNetwork.php:22
actionadmin_print_styles-settings_page_delxtransincludes\class.DelxtransNetwork.php:23
actioninitincludes\class.DelxtransPlugin.php:34
actioninitincludes\class.DelxtransPlugin.php:46
filterplugin_row_metaincludes\class.DelxtransPlugin.php:47
actionadmin_menuincludes\class.DelxtransSite.php:20
actionadmin_print_styles-tools_page_delxtransincludes\class.DelxtransSite.php:21
Maintenance & Trust

Delete Expired Transients Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 14, 2025
PHP min version5.3
Downloads117K

Community Trust

Rating100/100
Number of ratings13
Active installs5K
Developer Profile

Delete Expired Transients Developer Profile

webaware

13 plugins · 153K total installs

77
trust score
Avg Security Score
97/100
Avg Patch Time
1595 days
View full developer profile
Detection Fingerprints

How We Detect Delete Expired Transients

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/delete-expired-transients/css/admin.css
Version Parameters
delete-expired-transients/css/admin.css?ver=

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Delete Expired Transients