
Auto Post Expire Security & Risk Analysis
wordpress.org/plugins/ninja-auto-post-expireSets an expiration date for posts, auto moving them to draft after the set period.
Is Auto Post Expire Safe to Use in 2026?
Generally Safe
Score 100/100Auto Post Expire has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The ninja-auto-post-expire v1.2 plugin exhibits a generally strong security posture based on the provided static analysis. The absence of any AJAX handlers, REST API routes, shortcodes, or external HTTP requests significantly limits the potential attack surface. Furthermore, the code demonstrates good practices by utilizing prepared statements for all SQL queries and performing nonce and capability checks, which are crucial for preventing common web vulnerabilities.
Despite the positive indicators, a minor concern arises from the 15% of output that is not properly escaped. While this percentage is relatively low, it could potentially lead to cross-site scripting (XSS) vulnerabilities if user-supplied data is involved in these unescaped outputs. The taint analysis reporting zero flows with unsanitized paths or critical/high severity issues is a very positive sign, indicating that even where data might be handled, it appears to be done so safely.
The plugin's vulnerability history is completely clean, with no recorded CVEs. This lack of past issues suggests a commitment to security by the developers or a long period of stable, secure development. Overall, the plugin is well-secured, with the primary area for improvement being the complete sanitization of all output data to eliminate any lingering XSS risks.
Key Concerns
- Unescaped output detected
Auto Post Expire Security Vulnerabilities
Auto Post Expire Code Analysis
Output Escaping
Auto Post Expire Attack Surface
WordPress Hooks 13
Scheduled Events 1
Maintenance & Trust
Auto Post Expire Maintenance & Trust
Maintenance Signals
Community Trust
Auto Post Expire Alternatives
Auto Popup Expiry
ape-auto-popup-expiry
Auto Popup Expiry is a simple Auto Deactive Popup for Wordpress
ExpirePress – Automatic Post Scheduler for WordPress
expirepress
ExpirePress automatically schedule post expiration and content actions in WordPress using powerful rules.
AIT Easy Post Customization
ait-easy-post-customization
Easily set expiry dates for posts and custom post types, automatically unpublishing content when it becomes outdated.
Show/Hide Content at Set Time
shortcodes-to-show-or-hide-content
Shortcodes to wrap around text, which specify at what date or time that content should appear or disappear, either once, or on a recurring basis.
Far Future Expiry Header
far-future-expiry-header
This plugin will add a far future expiry header for various file types to improve page load speed of your site
Auto Post Expire Developer Profile
1 plugin · 800 total installs
How We Detect Auto Post Expire
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/ninja-auto-post-expire/css/njtape_style.cssHTML / DOM Fingerprints
njt-option-pageid="njtape_post_expire_option"name="njtape_post_expire_option"id="njtape_post_expire"name="njtape_post_expire"id="njtape_page_expire"name="njtape_page_expire"+28 more