
Fatal Plugin Auto Deactivator – Never let a plugin break your site Security & Risk Analysis
wordpress.org/plugins/fatal-plugin-auto-deactivatorAutomatically deactivates plugins that cause fatal errors to prevent site crashes and keep your WordPress site running smoothly.
Is Fatal Plugin Auto Deactivator – Never let a plugin break your site Safe to Use in 2026?
Generally Safe
Score 100/100Fatal Plugin Auto Deactivator – Never let a plugin break your site has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'fatal-plugin-auto-deactivator' plugin v1.1.0 demonstrates a generally strong security posture based on the provided static analysis. The plugin has no recorded vulnerabilities, which is a significant positive. Furthermore, the absence of AJAX handlers, REST API routes, shortcodes, and cron events with unprotected entry points indicates a limited attack surface. The code also shows good practices like using prepared statements for all SQL queries, and a reasonable percentage of output escaping. The presence of nonce and capability checks also contributes to its secure design.
However, the taint analysis reveals a potential area of concern. Two taint flows were analyzed, and both had unsanitized paths. While these did not escalate to critical or high severity in this analysis, it's crucial to understand the nature of these unsanitized paths. Unsanitized paths, even if they don't lead to immediate vulnerabilities in the current version, represent a potential risk if other parts of the code or future modifications handle this data insecurely. The file operations, while not explicitly flagged as problematic, could also warrant further scrutiny in conjunction with the unsanitized paths.
In conclusion, the plugin is built with a good foundation of security practices, particularly regarding its limited attack surface and SQL handling. The lack of vulnerability history is reassuring. The primary area for improvement lies in investigating and sanitizing the identified unsanitized paths to completely eliminate potential risks.
Key Concerns
- Taint flow with unsanitized paths identified
- File operations present without explicit context
Fatal Plugin Auto Deactivator – Never let a plugin break your site Security Vulnerabilities
Fatal Plugin Auto Deactivator – Never let a plugin break your site Code Analysis
Output Escaping
Data Flow Analysis
Fatal Plugin Auto Deactivator – Never let a plugin break your site Attack Surface
WordPress Hooks 5
Maintenance & Trust
Fatal Plugin Auto Deactivator – Never let a plugin break your site Maintenance & Trust
Maintenance Signals
Community Trust
Fatal Plugin Auto Deactivator – Never let a plugin break your site Alternatives
ClickCease Click Fraud Protection
clickcease-click-fraud-protection
Protect your website and ad campaigns from bots, competitors, and click fraud with ClickCease's advanced fraud prevention and real-time monitoring.
CHEQ Essentials
cheq-essentials-go-to-market-security
Protect, analyze & block threats in real time your website from bots, click fraud, and invalid traffic with CHEQ Essentials.
Disable Fatal Error Handler
disable-fatal-error-handler
Your website will not send any email in case of fatal errors.
Redirect All 404 URLs to Home Page
redirect-all-404-urls-to-home-page
A powerful yet simple solution to redirect 404 errors and manage custom redirects in WordPress.
Custom Recovery Mode Email
custom-recovery-mode-email
Change the recipient address when WordPress sends an email if a Fatal Error occurs.
Fatal Plugin Auto Deactivator – Never let a plugin break your site Developer Profile
1 plugin · 50 total installs
How We Detect Fatal Plugin Auto Deactivator – Never let a plugin break your site
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/fatal-plugin-auto-deactivator/includes/class-fatal-error-handler.php/wp-content/plugins/fatal-plugin-auto-deactivator/includes/class-dropin-manager.php/wp-content/plugins/fatal-plugin-auto-deactivator/includes/class-admin.php/wp-content/plugins/fatal-plugin-auto-deactivator/includes/class-plugin-lifecycle.php/wp-content/plugins/fatal-plugin-auto-deactivator/includes/class-utils.php/wp-content/plugins/fatal-plugin-auto-deactivator/includes/fatal-error-handler-dropin.php