Melli Disk Usage Security & Risk Analysis

wordpress.org/plugins/melli-disk-usage

Melli Disk Usage is a powerful WordPress plugin that displays detailed information about your hosting, WordPress installation, and hosting API in a pr …

0 active installs v4.1 PHP 7.0+ WP 5.0+ Updated Mar 24, 2025
apidisk-usagehostingperformanceserver-info
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Melli Disk Usage Safe to Use in 2026?

Generally Safe

Score 92/100

Melli Disk Usage has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The "melli-disk-usage" v4.1 plugin exhibits a strong security posture based on the provided static analysis. The absence of any identified entry points like AJAX handlers, REST API routes, or shortcodes significantly limits the potential attack surface. The code also adheres to good practices by utilizing prepared statements for all SQL queries and properly escaping all output, indicating a low risk of common web vulnerabilities such as SQL injection or Cross-Site Scripting. The lack of file operations and external HTTP requests further reduces the plugin's exposure to external threats.

However, a notable concern is the complete absence of nonce and capability checks across all potential, albeit zero, entry points. While there are currently no identified entry points, this could be a structural oversight. If the plugin were to evolve and introduce new entry points in the future, the lack of built-in authorization checks could quickly become a significant security flaw. The vulnerability history is entirely clean, showing no past issues, which is a positive indicator of the development team's commitment to security. This, combined with the robust code practices observed in the static analysis, suggests a plugin that is currently very secure.

Key Concerns

  • No nonce checks on any entry points
  • No capability checks on any entry points
Vulnerabilities
None known

Melli Disk Usage Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Melli Disk Usage Release Timeline

v4.1Current
v4.0
Code Analysis
Analyzed Apr 16, 2026

Melli Disk Usage Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
2 prepared
Unescaped Output
0
80 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared2 total queries

Output Escaping

100% escaped80 total outputs
Attack Surface

Melli Disk Usage Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 2
actionadmin_menumelli-disk-usage.php:41
actionadmin_enqueue_scriptsmelli-disk-usage.php:48
Maintenance & Trust

Melli Disk Usage Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedMar 24, 2025
PHP min version7.0
Downloads527

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Melli Disk Usage Developer Profile

arsham

1 plugin · 0 total installs

88
trust score
Avg Security Score
92/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Melli Disk Usage

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/melli-disk-usage/assets/css/style.css/wp-content/plugins/melli-disk-usage/assets/js/script.js
Script Paths
/wp-content/plugins/melli-disk-usage/assets/js/script.js
Version Parameters
melli-disk-usage-style?ver=4.0melli-disk-usage-script?ver=4.0

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Melli Disk Usage