MailMoo SMTP Security & Risk Analysis

wordpress.org/plugins/mailmoo-smtp

Simple, no bloat, no paid features SMTP plugin.

0 active installs v1.0.1 PHP 7.4+ WP 6.5+ Updated Feb 13, 2026
emailmediamoosmtp
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is MailMoo SMTP Safe to Use in 2026?

Generally Safe

Score 100/100

MailMoo SMTP has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The mailmoo-smtp plugin v1.0.1 demonstrates a strong security posture based on the provided static analysis. It exhibits excellent adherence to secure coding practices, with all identified SQL queries utilizing prepared statements and a high percentage of output being properly escaped. The absence of file operations and external HTTP requests further reduces the potential attack surface. Crucially, the plugin incorporates robust authentication and authorization mechanisms, evidenced by the presence of nonce and capability checks on its entry points. The lack of any recorded vulnerabilities in its history suggests a commitment to security or, at the very least, a fortunate lack of past exploits. This overall picture indicates a well-developed and secure plugin.

Vulnerabilities
None known

MailMoo SMTP Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

MailMoo SMTP Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
10 prepared
Unescaped Output
5
53 escaped
Nonce Checks
5
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared10 total queries

Output Escaping

91% escaped58 total outputs
Data Flows
All sanitized

Data Flow Analysis

4 flows
<admin-page> (includes\admin-page.php:0)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

MailMoo SMTP Attack Surface

Entry Points1
Unprotected0

AJAX Handlers 1

authwp_ajax_mailmoo_get_log_detailsmailmoo.php:41
WordPress Hooks 7
actioninitmailmoo.php:35
actionadmin_menumailmoo.php:36
actionadmin_initmailmoo.php:37
actionphpmailer_initmailmoo.php:38
actionwp_mail_failedmailmoo.php:39
filterwp_mailmailmoo.php:40
actionadmin_enqueue_scriptsmailmoo.php:42
Maintenance & Trust

MailMoo SMTP Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedFeb 13, 2026
PHP min version7.4
Downloads274

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

MailMoo SMTP Developer Profile

creatorcow

3 plugins · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect MailMoo SMTP

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/mailmoo-smtp/assets/css/admin.css/wp-content/plugins/mailmoo-smtp/assets/js/logs.js
Script Paths
/wp-content/plugins/mailmoo-smtp/assets/js/logs.js
Version Parameters
mailmoo-smtp/assets/css/admin.css?ver=mailmoo-smtp/assets/js/logs.js?ver=

HTML / DOM Fingerprints

HTML Comments
<!-- MailMoo SMTP Settings --><!-- MailMoo Email Logs --><!-- MailMoo: Log Details Modal --><!-- MailMoo: Settings Form -->+14 more
Data Attributes
data-mailmoo-log-id
JS Globals
mailmoo_ajax
REST Endpoints
/wp-json/mailmoo/v1/logs
FAQ

Frequently Asked Questions about MailMoo SMTP