Nextfly Domain Restricted Access Security & Risk Analysis

wordpress.org/plugins/nextfly-domain-restricted-access

Restrict access to post and page based on authorized email domains. Users verify identity via secure email links.

0 active installs v1.0.0 PHP 7.4+ WP 5.8+ Updated Mar 19, 2026
access-controlemail-verificationmagic-linknextflyrestricted-access
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Nextfly Domain Restricted Access Safe to Use in 2026?

Generally Safe

Score 100/100

Nextfly Domain Restricted Access has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The 'nextfly-domain-restricted-access' plugin v1.0.0 demonstrates a strong security posture based on the provided static analysis. There are no identified critical or high severity taint flows, indicating that user-supplied data is likely being handled securely. The plugin also employs good practices by exclusively using prepared statements for all SQL queries and properly escaping all output, mitigating common risks like SQL injection and cross-site scripting. The presence of nonce and capability checks on its entry points further strengthens its defense against unauthorized actions.

Despite these strengths, the plugin's vulnerability history is a blank slate, with no recorded CVEs. While this is a positive sign, it's important to note that a lack of past vulnerabilities does not guarantee future immunity, especially for newer plugins. The attack surface is minimal, with no unprotected entry points, which is commendable. The absence of dangerous functions, file operations, and external HTTP requests further reduces the potential for exploitation.

In conclusion, the 'nextfly-domain-restricted-access' plugin v1.0.0 appears to be developed with security in mind, exhibiting robust protection mechanisms. The data suggests a low-risk profile. However, continuous monitoring for any emerging vulnerabilities, as with any software, remains prudent.

Vulnerabilities
None known

Nextfly Domain Restricted Access Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Nextfly Domain Restricted Access Release Timeline

v1.0.0Current
Code Analysis
Analyzed Apr 16, 2026

Nextfly Domain Restricted Access Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
7 prepared
Unescaped Output
0
56 escaped
Nonce Checks
2
Capability Checks
3
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared7 total queries

Output Escaping

100% escaped56 total outputs
Attack Surface

Nextfly Domain Restricted Access Attack Surface

Entry Points3
Unprotected0

AJAX Handlers 2

authwp_ajax_nfdra_submit_emailincludes/class-nextfly-domain-restricted-access-frontend.php:35
noprivwp_ajax_nfdra_submit_emailincludes/class-nextfly-domain-restricted-access-frontend.php:36

Shortcodes 1

[nextfly_domain_restricted_access] includes/class-nextfly-domain-restricted-access-frontend.php:29
WordPress Hooks 9
actionadd_meta_boxesincludes/class-nextfly-domain-restricted-access-admin.php:29
actionsave_postincludes/class-nextfly-domain-restricted-access-admin.php:32
actionadmin_menuincludes/class-nextfly-domain-restricted-access-admin.php:35
actionadmin_initincludes/class-nextfly-domain-restricted-access-admin.php:38
actionadmin_enqueue_scriptsincludes/class-nextfly-domain-restricted-access-admin.php:41
actiontemplate_redirectincludes/class-nextfly-domain-restricted-access-frontend.php:32
actionwp_enqueue_scriptsincludes/class-nextfly-domain-restricted-access-frontend.php:39
actionnfdra_cleanup_tokensincludes/class-nextfly-domain-restricted-access.php:108
actionplugins_loadednextfly-domain-restricted-access.php:41

Scheduled Events 1

nfdra_cleanup_tokens
Maintenance & Trust

Nextfly Domain Restricted Access Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 19, 2026
PHP min version7.4
Downloads141

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Nextfly Domain Restricted Access Developer Profile

NEXTFLY® Web Design

3 plugins · 460 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Nextfly Domain Restricted Access

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/nextfly-domain-restricted-access/assets/css/admin-style.css/wp-content/plugins/nextfly-domain-restricted-access/assets/js/admin-script.js
Script Paths
/wp-content/plugins/nextfly-domain-restricted-access/assets/js/admin-script.js
Version Parameters
nextfly-domain-restricted-access/assets/css/admin-style.css?ver=nextfly-domain-restricted-access/assets/js/admin-script.js?ver=

HTML / DOM Fingerprints

CSS Classes
nfdra-authorized-domains-field
HTML Comments
<!-- Nextfly Domain Restricted Access Metabox --><!-- Nextfly Domain Restricted Access Settings --><!-- Email & Access Settings --><!-- Email Subject -->+3 more
Data Attributes
data-post-id
FAQ

Frequently Asked Questions about Nextfly Domain Restricted Access