Monitor Activities Log Security & Risk Analysis

wordpress.org/plugins/monitor-activities-log

Get notified with all plugin activities inside your applicatin. In one place you can track plugin activities by the users such as activation, deactiva …

0 active installs v1.0.0 PHP + WP 3.0.1+ Updated Jun 28, 2022
monitor-activities-logmonitor-pluginmonitor-plugin-statusplugin-activitiesplugin-activity
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Monitor Activities Log Safe to Use in 2026?

Generally Safe

Score 85/100

Monitor Activities Log has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3yr ago
Risk Assessment

The 'monitor-activities-log' plugin v1.0.0 exhibits a mixed security posture. While the static analysis shows a seemingly small attack surface with no identified AJAX handlers, REST API routes, shortcodes, or cron events that lack authentication or permission checks, and a high percentage of properly escaped output, there are significant underlying concerns. The complete absence of nonce checks and capability checks, coupled with the fact that 100% of its SQL queries are not using prepared statements, points to a considerable risk of SQL injection vulnerabilities. Furthermore, the taint analysis revealing flows with unsanitized paths, even without critical or high severity, suggests potential for sensitive data exposure or manipulation if these flows are triggered. The lack of any known vulnerability history is positive but does not negate the inherent risks identified in the code.

Key Concerns

  • SQL queries not using prepared statements
  • No nonce checks found
  • No capability checks found
  • Flows with unsanitized paths
Vulnerabilities
None known

Monitor Activities Log Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Monitor Activities Log Code Analysis

Dangerous Functions
0
Raw SQL Queries
2
0 prepared
Unescaped Output
7
101 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

0% prepared2 total queries

Output Escaping

94% escaped108 total outputs
Data Flows
3 unsanitized

Data Flow Analysis

5 flows3 with unsanitized paths
filter_filters (classes\class-mpa-list.php:32)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Monitor Activities Log Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 7
filterset-screen-optionadmin\class-monitor-plugins-activities-admin.php:56
actionplugins_loadedincludes\class-monitor-plugins-activities.php:162
actionadmin_enqueue_scriptsincludes\class-monitor-plugins-activities.php:177
actionadmin_enqueue_scriptsincludes\class-monitor-plugins-activities.php:178
actionadmin_menuincludes\class-monitor-plugins-activities.php:179
actionwp_enqueue_scriptsincludes\class-monitor-plugins-activities.php:195
actionwp_enqueue_scriptsincludes\class-monitor-plugins-activities.php:196
Maintenance & Trust

Monitor Activities Log Maintenance & Trust

Maintenance Signals

WordPress version tested6.0.11
Last updatedJun 28, 2022
PHP min version
Downloads683

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Monitor Activities Log Developer Profile

Dipankar Pal

3 plugins · 400 total installs

86
trust score
Avg Security Score
88/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Monitor Activities Log

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/monitor-activities-log/admin/css/monitor-plugins-activities-admin.css/wp-content/plugins/monitor-activities-log/admin/js/monitor-plugins-activities-admin.js/wp-content/plugins/monitor-activities-log/admin/css/daterangepicker.css/wp-content/plugins/monitor-activities-log/admin/js/daterangepicker.min.js/wp-content/plugins/monitor-activities-log/admin/js/list.js/wp-content/plugins/monitor-activities-log/admin/css/font-awesome.min.css/wp-content/plugins/monitor-activities-log/admin/css/list.css
Script Paths
wp-includes/js/dist/vendor/moment.js
Version Parameters
monitor-activities-log/admin/css/monitor-plugins-activities-admin.css?ver=monitor-activities-log/admin/js/monitor-plugins-activities-admin.js?ver=monitor-activities-log/admin/css/daterangepicker.css?ver=time()monitor-activities-log/admin/js/daterangepicker.min.js?ver=time()monitor-activities-log/admin/js/list.js?ver=monitor-activities-log/admin/css/font-awesome.min.css?ver=time()monitor-activities-log/admin/css/list.css?ver=time()

HTML / DOM Fingerprints

CSS Classes
mpa_log_per_page
HTML Comments
<!-- Provide a list of plugins that can be logged --><!-- Add screen options for page -->
Data Attributes
data-plugin-slug="monitor-activities-log"
JS Globals
window.plugin_slug
FAQ

Frequently Asked Questions about Monitor Activities Log