
Full Site Login Security & Risk Analysis
wordpress.org/plugins/full-site-loginForce users to log in before viewing any part of your WordPress site.
Is Full Site Login Safe to Use in 2026?
Generally Safe
Score 100/100Full Site Login has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'full-site-login' plugin v1.0 exhibits an excellent security posture based on the static analysis. The complete absence of exposed attack surface points like AJAX handlers, REST API routes, shortcodes, and cron events, especially those lacking authentication checks, is a significant strength. Furthermore, the code demonstrates robust security practices with no identified dangerous functions, all SQL queries utilizing prepared statements, and all output properly escaped. The presence of at least one capability check also indicates an awareness of WordPress's permission system. The lack of any recorded vulnerabilities in its history further reinforces its secure design. The taint analysis showing zero unsanitized paths and no critical or high severity flows is also a positive sign. While the plugin appears very secure on paper, the complete absence of any entry points and the limited scope of the static analysis (0 flows, 0 outputs, 0 file operations, 0 external requests) might mean the plugin's functionality is extremely minimal or that certain security aspects were not covered by the analysis. However, based on the provided data, this plugin can be considered highly secure.
Full Site Login Security Vulnerabilities
Full Site Login Code Analysis
Full Site Login Attack Surface
WordPress Hooks 4
Maintenance & Trust
Full Site Login Maintenance & Trust
Maintenance Signals
Community Trust
Full Site Login Alternatives
Private Website – Login Required
private-website
This plugin requires users to be logged in to view the website. Activate the plugin to enforce login, and deactivate it to remove the restriction.
All-In-One Security (AIOS) – Security and Firewall
all-in-one-wp-security-and-firewall
Protect your website investment with All-In-One Security (AIOS) – a comprehensive and easy to use security plugin designed especially for WordPress.
Limit Login Attempts
limit-login-attempts
Limit rate of login attempts, including by way of cookies, for each IP. Fully customizable.
WPS Limit Login
wps-limit-login
WPS Limit login limit connection attempts by IP address
Wordfence Login Security
wordfence-login-security
Secure your website with Wordfence Login Security, providing two-factor authentication, login and registration CAPTCHA, and XML-RPC protection.
Full Site Login Developer Profile
1 plugin · 0 total installs
How We Detect Full Site Login
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.