
Easy Noindex And Nofollow Security & Risk Analysis
wordpress.org/plugins/easy-noindex-and-nofollowEasily add Noindex and Nofollow to post, page, search and category page.
Is Easy Noindex And Nofollow Safe to Use in 2026?
Generally Safe
Score 85/100Easy Noindex And Nofollow has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'easy-noindex-and-nofollow' plugin v1.2 presents a generally good security posture with a minimal attack surface and no publicly known vulnerabilities. The static analysis indicates a lack of exploitable entry points like AJAX handlers, REST API routes, or shortcodes that are not properly authenticated or permission-checked. Furthermore, all SQL queries are prepared, and there are no recorded CVEs, suggesting a history of secure development and prompt patching if issues were ever found. This is a strong foundation for a secure plugin.
However, the analysis does reveal some significant concerns. The presence of the `create_function` dangerous function is a red flag, as it can lead to arbitrary code execution if user-supplied input is passed to it without proper sanitization. While no specific taint flows were detected in this analysis, the potential for exploitation exists. Additionally, the low percentage of properly escaped output (8%) indicates a risk of Cross-Site Scripting (XSS) vulnerabilities, especially if any of the file operations or other code paths involve user-controlled data. The limited number of nonce and capability checks, coupled with a low output escaping rate, suggests that while the direct attack surface is small, the internal handling of data might not be as robust as it could be.
In conclusion, the plugin benefits from a small attack surface and a clean vulnerability history. However, the use of `create_function` and the low rate of output escaping introduce potential security risks that warrant attention. Further in-depth code review and dynamic analysis focusing on these areas would be prudent to confirm the absence of exploitable vulnerabilities.
Key Concerns
- Use of dangerous function (create_function)
- Low percentage of properly escaped output
Easy Noindex And Nofollow Security Vulnerabilities
Easy Noindex And Nofollow Code Analysis
Dangerous Functions Found
Output Escaping
Easy Noindex And Nofollow Attack Surface
WordPress Hooks 9
Maintenance & Trust
Easy Noindex And Nofollow Maintenance & Trust
Maintenance Signals
Community Trust
Easy Noindex And Nofollow Alternatives
noindex SEO
noindex-seo
Control search engine indexing with robots directives using HTML meta tags or HTTP headers.
Bulk NoIndex & NoFollow Toolkit
bulk-noindex-nofollow-toolkit-by-mad-fish
Bulk set the noindex / nofollow robots tag for posts, pages, categories, and author URLs. Easily identify thin content and noindex it fast.
Nofollow External/Outbound Link (SEO)
nofollow-external-outbound-link
The Nofollow External/Outbound Link plugin is designed to enhance your website's SEO capabilities by automatically adding a rel="nofollow&qu …
Nofollow for external link
nofollow-for-external-link
Automatically insert rel=nofollow and target=_blank to all the external links into your website posts, pages or menus. Support exclude domain.
Ultimate Noindex Nofollow Tool II
ultimate-noindex-nofollow-tool-ii
Improves your blog's search engine optimization by "noindexing" pages you choose. Now also for page-based (as opposed to date-based) archives.
Easy Noindex And Nofollow Developer Profile
4 plugins · 3K total installs
How We Detect Easy Noindex And Nofollow
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/easy-noindex-and-nofollow/easy-noindex-nofollow.css/wp-content/plugins/easy-noindex-and-nofollow/static/admin.jsHTML / DOM Fingerprints
easy-noindex-nofollow-icon