
JSON API Auth Security & Risk Analysis
wordpress.org/plugins/json-api-authExtends the JSON API Plugin for RESTful user authentication
Is JSON API Auth Safe to Use in 2026?
Generally Safe
Score 100/100JSON API Auth has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "json-api-auth" plugin v3.0.0 demonstrates an exceptionally strong security posture based on the provided static analysis. The complete absence of identified AJAX handlers, REST API routes, shortcodes, and cron events significantly limits its potential attack surface. Furthermore, the code analysis reveals a commitment to secure coding practices, with no dangerous functions, all SQL queries utilizing prepared statements, and all output being properly escaped. The lack of file operations and external HTTP requests further reduces the risk of common web vulnerabilities. The plugin's vulnerability history is also clean, with no recorded CVEs, indicating a history of responsible development and maintenance. The absence of taint analysis results suggests no apparent pathways for unsanitized data to enter critical functions. In conclusion, this plugin appears to be very well-secured.
JSON API Auth Security Vulnerabilities
JSON API Auth Code Analysis
Output Escaping
JSON API Auth Attack Surface
WordPress Hooks 4
Maintenance & Trust
JSON API Auth Maintenance & Trust
Maintenance Signals
Community Trust
JSON API Auth Alternatives
REST API Toolbox
rest-api-toolbox
Allows tweaking of several REST API settings
JSON API User
json-api-user
Extends the JSON API Plugin to allow RESTful user registration, authentication & many other User Meta, BP functions. A Pro version is also available.
REST API Helper
rest-api-helper
This plugin help REST API for display featured media source, author, categories, and custom fields.
Kill JSON REST API
kill-json-rest-api
Completely disables JSON REST API for both registered and anonymous users in WordPress 4.7.* and removes API links and tags.
Get Json Api
get-json-api
Retrieve the results of the API of a site that uses the plugin JSON API
JSON API Auth Developer Profile
5 plugins · 2K total installs
How We Detect JSON API Auth
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.