
Nilly Security & Risk Analysis
wordpress.org/plugins/nillyPrivacy-first web analytics. Simple & fast real-time website analytics that belong to you.
Is Nilly Safe to Use in 2026?
Generally Safe
Score 85/100Nilly has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "nilly" plugin v1.3.1 exhibits an exceptionally clean static analysis report, showing no detectable attack surface, dangerous functions, or vulnerable code patterns like raw SQL queries, unescaped output, or file operations. The absence of external HTTP requests and the complete lack of taint flows further bolster its secure coding profile. Additionally, the plugin has no recorded vulnerability history, with zero CVEs, indicating a strong track record of security. This points to a highly secure plugin developed with meticulous attention to security best practices. The plugin's strengths lie in its minimal attack surface, absence of exploitable code signals, and a clear history of security. There are no identified weaknesses or areas of concern based on the provided data, suggesting it is a very safe option for WordPress sites.
Nilly Security Vulnerabilities
Nilly Code Analysis
Output Escaping
Nilly Attack Surface
WordPress Hooks 7
Maintenance & Trust
Nilly Maintenance & Trust
Maintenance Signals
Community Trust
Nilly Alternatives
Sitesights Analytics
sitesights-analytics
Sitesights Analytics is a cookieless and privacy-first web analytics alternative to Google Analytics.
Bubo Insights — Self‑Hosted Privacy‑Friendly Analytics
bubo-insights
Bubo Insights: Privacy friendly WordPress plugin for self-hosted website analytics, traffic monitoring, and visitor tracking.
Burst Statistics – Privacy-Friendly WordPress Analytics (Google Analytics Alternative)
burst-statistics
Analytics you'll actually use. Privacy-friendly, zero config, and designed to be actionable. Get insights, not just raw data.
Matomo Analytics – Ethical Stats. Powerful Insights.
matomo
Privacy friendly, GDPR compliant and self-hosted. Matomo is the #1 Google Analytics alternative that gives you control of your data. Free and secure.
Statify
statify
Visitor statistics for WordPress with focus on data protection, transparency and clarity. Perfect as a widget in your WordPress Dashboard.
Nilly Developer Profile
1 plugin · 10 total installs
How We Detect Nilly
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/nilly/css/nilly-admin.css/wp-content/plugins/nilly/js/nilly-admin.jsplugin_dir_url(__FILE__) . 'js/nilly-admin.js'nilly-admin.css?ver=nilly-admin.js?ver=HTML / DOM Fingerprints
data-nilly-settingswindow.nilly_data