Editor Cleanup For Oxygen: FDP add-on to cleanup the Oxygen editor Security & Risk Analysis

wordpress.org/plugins/editor-cleanup-for-oxygen

FDP add-on to cleanup Oxygen in the backend. Your Oxygen backend will be faster and without conflicts with other plugins.

100 active installs v0.0.9 PHP 5.6+ WP 4.6+ Updated Unknown
cleanupconflictsdebuggingoxygenperformance
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Editor Cleanup For Oxygen: FDP add-on to cleanup the Oxygen editor Safe to Use in 2026?

Generally Safe

Score 100/100

Editor Cleanup For Oxygen: FDP add-on to cleanup the Oxygen editor has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs
Risk Assessment

The "editor-cleanup-for-oxygen" plugin version 0.0.9 demonstrates a generally positive security posture based on the static analysis. The complete absence of AJAX handlers, REST API routes, shortcodes, and cron events with unprotected entry points indicates a minimal attack surface. Furthermore, the code signals reveal no dangerous functions, all SQL queries utilize prepared statements, and a high percentage of output is properly escaped, mitigating common web application vulnerabilities. The presence of capability checks, while only one, is also a good sign. The taint analysis showing no unsanitized paths or critical/high severity flows is encouraging.

However, there are areas for concern. The lack of any nonce checks is a significant weakness, especially if any functionality were to be added in the future that could be triggered by external requests. While the current attack surface is zero, this absence of nonces means that any future additions without proper authorization checks could be vulnerable to Cross-Site Request Forgery (CSRF) attacks. The plugin also performs file operations, and without more context on these operations and their sanitization, they represent a potential area of risk. The vulnerability history is clean, with no recorded CVEs, which suggests a history of secure development or that the plugin has not been extensively targeted or scrutinized. Overall, the plugin is currently in a strong security state due to its limited functionality and good coding practices, but the missing nonce checks and the file operation aspect warrant attention for future development.

Key Concerns

  • Missing nonce checks
  • File operations without context
Vulnerabilities
None known

Editor Cleanup For Oxygen: FDP add-on to cleanup the Oxygen editor Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Editor Cleanup For Oxygen: FDP add-on to cleanup the Oxygen editor Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
7
43 escaped
Nonce Checks
0
Capability Checks
1
File Operations
5
External Requests
0
Bundled Libraries
0

Output Escaping

86% escaped50 total outputs
Attack Surface

Editor Cleanup For Oxygen: FDP add-on to cleanup the Oxygen editor Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 21
actionadmin_initadmin\soitb-admin.php:8
actionadmin_enqueue_scriptsadmin\soitb-admin.php:11
actionadmin_enqueue_scriptsadmin\soitb-admin.php:14
actionadmin_headadmin\soitb-admin.php:15
actionadmin_print_scriptsadmin\soitb-admin.php:16
actionfdp_after_save_buttonadmin\soitb-admin.php:19
filterfdp_pagesadmin\soitb-admin.php:26
actionadmin_menuadmin\soitb-admin.php:35
actionplugins_loadedadmin\soitb-admin.php:168
filterplugin_action_links_editor-cleanup-for-oxygen/editor-cleanup-for-oxygen.phpadmin\soitb-admin.php:179
actionadmin_noticesadmin\soitb-fdp-inactive.php:5
actionfdp_admin_noticesadmin\soitb-fdp-inactive.php:6
actionadmin_noticesadmin\soitb-fdp-oxygen-inactive.php:5
actionadmin_noticesadmin\soitb-oxygen-inactive.php:5
actionfdp_admin_noticesadmin\soitb-oxygen-inactive.php:6
actionplugins_loadededitor-cleanup-for-oxygen.php:30
actionupgrader_process_completeeditor-cleanup-for-oxygen.php:68
filterfdp_frontend_pluginsmu-plugins\fdp-mu-oxygen.php:16
filterfdp_frontend_pluginsmu-plugins\fdp-mu-oxygen.php:21
filterfdp_ajax_pluginsmu-plugins\fdp-mu-oxygen.php:26
filterfdp_ajax_pluginsmu-plugins\fdp-mu-oxygen.php:42
Maintenance & Trust

Editor Cleanup For Oxygen: FDP add-on to cleanup the Oxygen editor Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedUnknown
PHP min version5.6
Downloads4K

Community Trust

Rating100/100
Number of ratings1
Active installs100
Developer Profile

Editor Cleanup For Oxygen: FDP add-on to cleanup the Oxygen editor Developer Profile

Jose Mortellaro

56 plugins · 26K total installs

87
trust score
Avg Security Score
99/100
Avg Patch Time
62 days
View full developer profile
Detection Fingerprints

How We Detect Editor Cleanup For Oxygen: FDP add-on to cleanup the Oxygen editor

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/editor-cleanup-for-oxygen/admin/js/oxygen-editor-cleanup-for-oxygen.js
Script Paths
/wp-content/plugins/editor-cleanup-for-oxygen/admin/js/oxygen-editor-cleanup-for-oxygen.js
Version Parameters
editor-cleanup-for-oxygen/admin/js/oxygen-editor-cleanup-for-oxygen.js?ver=

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Editor Cleanup For Oxygen: FDP add-on to cleanup the Oxygen editor