
LH Archived Post Status Security & Risk Analysis
wordpress.org/plugins/lh-archived-post-statusAllows posts and pages to be archived so you can remove content from the main loop and feed without having to trash it.
Is LH Archived Post Status Safe to Use in 2026?
Generally Safe
Score 92/100LH Archived Post Status has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "lh-archived-post-status" plugin version 3.11 exhibits a generally strong security posture based on the provided static analysis and vulnerability history. The plugin demonstrates good security practices by having no critical or high-severity vulnerabilities in its history and no known CVEs. The code analysis reveals a clean slate regarding dangerous functions, SQL injection risks (all queries use prepared statements), file operations, and external HTTP requests. Furthermore, the absence of AJAX handlers and REST API routes, along with a complete lack of untainted flows, indicates a minimal attack surface and robust input handling.
However, a notable area for improvement lies in output escaping. With 53% of outputs properly escaped, there's a significant portion that remains potentially vulnerable to cross-site scripting (XSS) attacks. While the absence of specific taint analysis findings for unsanitized paths is positive, the unescaped outputs represent a tangible risk. The plugin also implements nonce and capability checks, which are positive signs of secure development, but the low number of capability checks (16) compared to the total outputs (47) might indicate missed opportunities for granular permission control in certain output contexts. Overall, the plugin is in good shape, but addressing the output escaping is crucial for enhancing its security.
Key Concerns
- Inconsistent output escaping (47% potentially unescaped)
LH Archived Post Status Security Vulnerabilities
LH Archived Post Status Code Analysis
Output Escaping
Data Flow Analysis
LH Archived Post Status Attack Surface
WordPress Hooks 38
Scheduled Events 2
Maintenance & Trust
LH Archived Post Status Maintenance & Trust
Maintenance Signals
Community Trust
LH Archived Post Status Alternatives
LH Inclusive Private Pages
lh-inclusive-private-pages
Extends the CRM possibilities for wordpress by allowing private posts/pages, and other CPt´s to be included in menus and also as the parent of other p …
LH Logged In Post Status
lh-logged-in-post-status
Allows you to restrict access to posts, pges etc to logged in users only.
Post Status Indicator
post-status-indicator
Allow color customization in WordPress admin for the publish state of your content.
Sortable Word Count Reloaded
sortable-word-count-reloaded
Adds a sortable column to the posts and pages admin list with the word count of each page/post.
Bulk Edit YOAST SEO fields in Spreadsheet
wp-sheet-editor-yoast-seo
Bulk Edit posts, pages, and WooCommerce products YOAST SEO fields using a spreadsheet.
LH Archived Post Status Developer Profile
77 plugins · 15K total installs
How We Detect LH Archived Post Status
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/lh-archived-post-status/css/lh-archived-post-status.css/wp-content/plugins/lh-archived-post-status/js/lh-archived-post-status.js/wp-content/plugins/lh-archived-post-status/js/lh-archived-post-status.jslh-archived-post-status/css/lh-archived-post-status.css?ver=lh-archived-post-status/js/lh-archived-post-status.js?ver=HTML / DOM Fingerprints
lh-archived-post-status-messagelh-archived-post-status-title-label<!-- LH Archived Post Status Admin --><!-- LH Archived Post Status Public -->data-lh-archived-post-status-title-labeldata-lh-archived-post-status-messagelh_archived_post_status_optionslh_archive_post_status