
YEGHRO Nostr Login Security & Risk Analysis
wordpress.org/plugins/nostr-loginEnable secure WordPress authentication using Nostr keys - login with your Nostr identity.
Is YEGHRO Nostr Login Safe to Use in 2026?
Generally Safe
Score 92/100YEGHRO Nostr Login has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "nostr-login" v1.8 plugin exhibits a generally positive security posture with several strengths. The complete absence of known CVEs and a consistent track record of no recorded vulnerabilities suggest a development team that prioritizes security or has had limited exposure. The code's adherence to prepared statements for all SQL queries, robust output escaping (79%), and a good number of nonce and capability checks are commendable practices. However, a significant concern arises from the attack surface analysis, which reveals one out of five AJAX handlers lacks authentication checks. This single unprotected entry point presents a potential avenue for unauthorized actions if it handles sensitive operations.
Key Concerns
- Unprotected AJAX handler found
- Non-critical output escaping (21% unescaped)
YEGHRO Nostr Login Security Vulnerabilities
YEGHRO Nostr Login Code Analysis
Output Escaping
YEGHRO Nostr Login Attack Surface
AJAX Handlers 5
WordPress Hooks 19
Maintenance & Trust
YEGHRO Nostr Login Maintenance & Trust
Maintenance Signals
Community Trust
YEGHRO Nostr Login Alternatives
All-In-One Security (AIOS) – Security and Firewall
all-in-one-wp-security-and-firewall
Protect your website investment with All-In-One Security (AIOS) – a comprehensive and easy to use security plugin designed especially for WordPress.
Limit Login Attempts
limit-login-attempts
Limit rate of login attempts, including by way of cookies, for each IP. Fully customizable.
WPS Limit Login
wps-limit-login
WPS Limit login limit connection attempts by IP address
Wordfence Login Security
wordfence-login-security
Secure your website with Wordfence Login Security, providing two-factor authentication, login and registration CAPTCHA, and XML-RPC protection.
Titan Anti-spam & Security
anti-spam
Block spam comments, defend against login attempts, and strengthen site security with anti-spam, brute-force protection, and two-factor authentication …
YEGHRO Nostr Login Developer Profile
1 plugin · 10 total installs
How We Detect YEGHRO Nostr Login
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/nostr-login/assets/js/nostr-imports.min.js/wp-content/plugins/nostr-login/assets/js/nostr-imports.min.jsnostr-login/style.css?ver=nostr-login/script.js?ver=HTML / DOM Fingerprints
nostr-login-buttonnostr-login-formnostr-login-wrappernostr-login-settingsdata-nostr-login-actiondata-nostr-login-user-idnostrLoginnostrImport[nostr_login_button][nostr_login_form]