
More Privacy Options Security & Risk Analysis
wordpress.org/plugins/more-privacy-optionsAdds three more levels of privacy(visibility) to the Settings-->Reading page.
Is More Privacy Options Safe to Use in 2026?
Generally Safe
Score 85/100More Privacy Options has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "more-privacy-options" v4.6 exhibits a generally positive security posture, with a notably clean vulnerability history and a complete absence of known CVEs. The static analysis reveals a minimal attack surface, with no discovered AJAX handlers, REST API routes, shortcodes, or cron events that could be exploited. Furthermore, the plugin demonstrates good practices regarding SQL queries, with 100% utilizing prepared statements, and no file operations or external HTTP requests were detected. However, a significant concern lies in the output escaping, where only 10% of the 21 identified outputs are properly escaped, leaving a substantial risk of cross-site scripting (XSS) vulnerabilities. The taint analysis also identified one flow with unsanitized paths, which, while not classified as critical or high severity, still represents a potential vector for attack if exploited in conjunction with other weaknesses. The lack of explicit nonce checks is also a point of concern, although this is mitigated by the absence of AJAX handlers. The plugin's strength lies in its clean history and minimal attack surface, but the significant output escaping issues and the unsanitized path flow present clear risks that need to be addressed.
Key Concerns
- Low percentage of properly escaped output
- Taint flow with unsanitized path
More Privacy Options Security Vulnerabilities
More Privacy Options Release Timeline
More Privacy Options Code Analysis
Output Escaping
Data Flow Analysis
More Privacy Options Attack Surface
WordPress Hooks 24
Maintenance & Trust
More Privacy Options Maintenance & Trust
Maintenance Signals
Community Trust
More Privacy Options Alternatives
BuddyPress Activity Privacy
buddypress-activity-privacy
BuddyPress Activity Privacy plugin add a privacy level to activity stream component.
Membership Lock
membership-lock
Membership Lock down lets you easily lock all post content including attached images, video, docs, and everything else.
Turn on Blog Privacy
turn-on-blog-privacy
Globally alters the site visibility settings to "Ask search engines not to index this site" when enabled. Upon deactivation it selects " …
Onion Service by Adam Szokol
adamszokol-onion-service
A focused plugin designed to enable Onion Service & Mapping support for your WordPress site.
Surbma | GDPR Multisite Privacy
surbma-gdpr-multisite-privacy
A GDPR Multisite plugin, that adds special privileges to a subsite Administrator for Privacy settings.
More Privacy Options Developer Profile
6 plugins · 210 total installs
How We Detect More Privacy Options
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/more-privacy-options/style.cssmore-privacy-options/style.css?ver=HTML / DOM Fingerprints
ds-privacy-options-settings<!-- This program is free software; you can redistribute it and/or modifyTips:?????????? Notes/Questions about allowing wp-activate.php on a private site ????????????????????First, but using string matching is dumb and easily bypasses login page. Adding "?wp-activate.php" to any url+15 moredata-sitewide-privacyDS_MORE_PRIVACY_OPTIONS_NETWORK_SETTINGS