
Domainer Security & Risk Analysis
wordpress.org/plugins/domainerThis plugin is no longer being developed.
Is Domainer Safe to Use in 2026?
Generally Safe
Score 92/100Domainer has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "domainer" v1.2.1 plugin exhibits a generally positive security posture, with no known vulnerabilities or CVEs recorded in its history. The static analysis indicates a small attack surface, with no exposed AJAX handlers, REST API routes, shortcodes, or cron events. This lack of direct entry points is a significant strength. However, the code analysis reveals concerning areas. While a majority of SQL queries use prepared statements, the 36% rate of improperly escaped output is a notable weakness. The taint analysis further highlights this, with two high-severity flows and four flows with unsanitized paths, indicating potential for injection vulnerabilities if these unsanitized paths are exposed.
The absence of a vulnerability history suggests good development practices in the past. However, the current code analysis, particularly the taint flows and output escaping, indicates potential for future vulnerabilities if not addressed. The plugin's strengths lie in its limited attack surface and a good approach to SQL query security. Its weaknesses stem from potential input sanitization and output escaping issues, which are critical for preventing common web vulnerabilities. Overall, while the plugin has a clean history, the current static analysis warrants attention to code quality regarding sanitization and escaping.
Key Concerns
- High severity taint flows found
- Unsanitized paths in taint flows
- Low percentage of properly escaped output
Domainer Security Vulnerabilities
Domainer Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Domainer Attack Surface
Maintenance & Trust
Domainer Maintenance & Trust
Maintenance Signals
Community Trust
Domainer Alternatives
Multi-Domain Favicon Manager
multi-domain-favicon-manager
Unique favicon support for each domain mapping in Multiple Domain Mapping plugin.
Ultimate Multisite – WordPress Multisite SaaS & WaaS Platform
ultimate-multisite
Ultimate Multisite turns your WordPress network into a WaaS platform with subscriptions, site provisioning, and domain mapping.
Code Snippets
code-snippets
An easy, clean and simple way to enhance your site with code snippets.
User Switching
user-switching
Instant switching between user accounts in WordPress and WooCommerce.
Safe Redirect Manager
safe-redirect-manager
Safely manage your website's HTTP redirects.
Domainer Developer Profile
7 plugins · 1K total installs
How We Detect Domainer
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/domainer/assets/dist/css/domainer.css/wp-content/plugins/domainer/assets/dist/js/domainer.jsdomainer/assets/dist/css/domainer.css?ver=domainer/assets/dist/js/domainer.js?ver=HTML / DOM Fingerprints
<!-- Domainer :: Settings -->data-urldomainer_admindomainer_settings<script class="domainer-auth-url"