
Hide Old Posts Security & Risk Analysis
wordpress.org/plugins/hide-old-postsHides posts older than given amount of time.
Is Hide Old Posts Safe to Use in 2026?
Generally Safe
Score 85/100Hide Old Posts has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'hide-old-posts' plugin v1.2.1 exhibits a generally strong security posture, particularly in its limited attack surface and exclusive use of prepared statements for SQL queries. The absence of known vulnerabilities and a clean vulnerability history are positive indicators. However, significant concerns arise from the static analysis, specifically the total lack of output escaping on all identified outputs. This suggests a high risk of Cross-Site Scripting (XSS) vulnerabilities, allowing attackers to inject malicious scripts into the site.
While the plugin's attack surface is commendably small and no critical or high severity taint flows were detected, the complete absence of output escaping on two identified outputs is a critical oversight. The presence of a single capability check is a positive, but it does not mitigate the XSS risk. The vulnerability history being completely clean is good, but it cannot compensate for the identified code-level security weaknesses.
In conclusion, the plugin demonstrates good practices by minimizing its attack surface and handling SQL securely. Nevertheless, the critical flaw in output escaping presents a substantial security risk that needs immediate attention. A clean vulnerability history is reassuring, but it does not excuse the current unaddressed code vulnerabilities.
Key Concerns
- Outputs not properly escaped
Hide Old Posts Security Vulnerabilities
Hide Old Posts Code Analysis
Output Escaping
Data Flow Analysis
Hide Old Posts Attack Surface
WordPress Hooks 4
Maintenance & Trust
Hide Old Posts Maintenance & Trust
Maintenance Signals
Community Trust
Hide Old Posts Alternatives
Keep it Fresh
keep-it-fresh
Keep it Fresh will stop WordPress from showing posts older than a set number of days or a specific date.
Post Grid
post-grid
Post Grid is a powerful WordPress plugin for creating customizable post grid layouts with advanced query options, allowing users to display posts dyna …
Hide Posts
whp-hide-posts
Allows you to hide any posts on the home page, category page, search page, tags page, authors page, RSS Feed, REST API, XML sitemaps, SEO integrations …
Unlist Posts & Pages
unlist-posts
Hide posts, pages or custom items from your site and make them accessible only with the direct link.
No External Links
mihdan-no-external-links
Convert external links into internal links, site wide or post/page specific. Add NoFollow, Click logging, and more...
Hide Old Posts Developer Profile
8 plugins · 200 total installs
How We Detect Hide Old Posts
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/hide-old-posts/languages