Incognito Admin Manager Security & Risk Analysis

wordpress.org/plugins/incognito-admin-manager

Customize your WordPress login screen, style the admin interface, and control menu visibility per user role.

10 active installs v1.0.2 PHP 7.4+ WP 5.0+ Updated Unknown
admin-customizationadmin-themelogin-pagerole-managerwhite-label
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Incognito Admin Manager Safe to Use in 2026?

Generally Safe

Score 100/100

Incognito Admin Manager has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs
Risk Assessment

The Incognito Admin Manager plugin version 1.0.2 exhibits a strong security posture based on the provided static analysis and vulnerability history. The absence of identified dangerous functions, raw SQL queries, file operations, and external HTTP requests is commendable. Furthermore, all identified output is properly escaped, and the plugin demonstrates a good reliance on nonce and capability checks for its identified entry points. The taint analysis also reveals no critical or high-severity issues, indicating that data flows within the plugin are handled securely.

The plugin's vulnerability history is completely clean, with zero known CVEs, including none that are unpatched. This lack of historical vulnerabilities suggests a proactive and diligent approach to security by the plugin developers over time. The attack surface is also reported as zero for all analyzed categories (AJAX, REST API, shortcodes, cron events), implying that there are no directly exposed functionalities that could be easily targeted.

Overall, the Incognito Admin Manager v1.0.2 appears to be a very secure plugin. The comprehensive use of security best practices, such as prepared statements and output escaping, coupled with a clean vulnerability record and a negligible attack surface, contributes to a high level of confidence in its security. There are no apparent risks identified in the provided data that would warrant a deduction from the initial score.

Vulnerabilities
None known

Incognito Admin Manager Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Incognito Admin Manager Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
175 escaped
Nonce Checks
4
Capability Checks
6
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped175 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
incognito_settings_page (modules\includes\settings-page.php:17)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Incognito Admin Manager Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 16
actionadmin_enqueue_scriptsincognito-admin-manager.php:36
actionadmin_menuincognito-admin-manager.php:111
actionadmin_initmodules\admin-theme-styler.php:188
actionadmin_enqueue_scriptsmodules\admin-theme-styler.php:219
actionadmin_enqueue_scriptsmodules\admin-theme-styler.php:630
actionwp_enqueue_scriptsmodules\admin-theme-styler.php:720
actionadmin_initmodules\custom-login-screen.php:68
actionadmin_enqueue_scriptsmodules\custom-login-screen.php:157
actionlogin_enqueue_scriptsmodules\custom-login-screen.php:396
actionlogin_enqueue_scriptsmodules\custom-login-screen.php:397
filterlogin_headerurlmodules\custom-login-screen.php:1134
filterlogin_headertextmodules\custom-login-screen.php:1142
actionadmin_initmodules\includes\force-hide.php:88
actionadmin_menumodules\includes\force-hide.php:146
actionadmin_menumodules\includes\menu-apply.php:123
actionadmin_initmodules\includes\settings-register.php:4
Maintenance & Trust

Incognito Admin Manager Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedUnknown
PHP min version7.4
Downloads247

Community Trust

Rating100/100
Number of ratings3
Active installs10
Developer Profile

Incognito Admin Manager Developer Profile

diyaaaboualloul

1 plugin · 10 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Incognito Admin Manager

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/incognito-admin-manager/assets/css/admin-dashboard.css/wp-content/plugins/incognito-admin-manager/assets/css/admin-access-roles.css/wp-content/plugins/incognito-admin-manager/assets/css/admin-theme-styler.css
Script Paths
/wp-content/plugins/incognito-admin-manager/assets/js/admin-access-roles.js
Version Parameters
incognito-admin-manager/assets/css/admin-dashboard.css?ver=incognito-admin-manager/assets/css/admin-access-roles.css?ver=incognito-admin-manager/assets/js/admin-access-roles.js?ver=incognito-admin-manager/assets/css/admin-theme-styler.css?ver=

HTML / DOM Fingerprints

CSS Classes
iam-dashboardiam-headeriam-quick-startiam-stepsiam-stepiam-step-numiam-step-contentincognito-arc-mode-option+5 more
Data Attributes
data-incognito-admin-theme-styler
JS Globals
incognito_admin_access_roles_script_params
FAQ

Frequently Asked Questions about Incognito Admin Manager