Plugin Organiser Security & Risk Analysis

wordpress.org/plugins/plugin-organiser

Plugin Organiser is a simple plugin filter that uses javascript to filter your plugins into groups. Any underlying plugin data is untouched and safe.

10 active installs v1.0.0 PHP 5.4+ WP 5.2+ Updated Mar 12, 2021
groupinggroupsorganiseorganisingplugins
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Plugin Organiser Safe to Use in 2026?

Generally Safe

Score 85/100

Plugin Organiser has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5yr ago
Risk Assessment

The plugin "plugin-organiser" v1.0.0 demonstrates a generally strong security posture based on the provided static analysis. The absence of AJAX handlers, REST API routes, shortcodes, and cron events significantly limits its attack surface. Furthermore, the analysis indicates a commitment to secure coding practices with 100% of SQL queries utilizing prepared statements and the presence of at least one capability check. There are no identified dangerous functions, file operations, or external HTTP requests, which are all positive signs. However, a notable concern is the low percentage (36%) of properly escaped output. This could potentially lead to cross-site scripting (XSS) vulnerabilities if user-supplied data is not adequately sanitized before being displayed in the frontend or backend. The lack of any recorded vulnerabilities in its history, while positive, could also be attributed to its low version number or limited exposure. Overall, while the core structure is secure, the output escaping issue warrants attention.

Key Concerns

  • Insufficient output escaping
Vulnerabilities
None known

Plugin Organiser Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Plugin Organiser Release Timeline

v1.0.0Current
Code Analysis
Analyzed Apr 16, 2026

Plugin Organiser Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
7
4 escaped
Nonce Checks
0
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

36% escaped11 total outputs
Attack Surface

Plugin Organiser Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 7
actionadmin_noticesbootstrap.php:85
actionplugins_loadedplugin-organiser.php:44
actioninitsrc/plugin_organiser.php:249
actionadmin_enqueue_scriptssrc/plugin_organiser.php:255
actionadmin_menusrc/plugin_organiser.php:261
actionpre_current_active_pluginssrc/plugin_organiser.php:267
actionrest_api_initsrc/plugin_organiser.php:281
Maintenance & Trust

Plugin Organiser Maintenance & Trust

Maintenance Signals

WordPress version tested5.7.15
Last updatedMar 12, 2021
PHP min version5.4
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Plugin Organiser Developer Profile

Andrew Stewart

3 plugins · 60 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Plugin Organiser

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/plugin-organiser/src/views/admin/js/http-rest.js/wp-content/plugins/plugin-organiser/src/views/admin/js/html.js/wp-content/plugins/plugin-organiser/src/views/admin/js/pluginorganiser/http-rest-groups.js/wp-content/plugins/plugin-organiser/src/views/admin/js/pluginorganiser/filter.js/wp-content/plugins/plugin-organiser/src/views/admin/js/pluginorganiser/groups-form.js/wp-content/plugins/plugin-organiser/src/views/admin/css/admin.css/wp-content/plugins/plugin-organiser/src/views/admin/css/form.css
Script Paths
/wp-content/plugins/plugin-organiser/src/views/admin/js/http-rest.js/wp-content/plugins/plugin-organiser/src/views/admin/js/html.js/wp-content/plugins/plugin-organiser/src/views/admin/js/pluginorganiser/http-rest-groups.js/wp-content/plugins/plugin-organiser/src/views/admin/js/pluginorganiser/filter.js/wp-content/plugins/plugin-organiser/src/views/admin/js/pluginorganiser/groups-form.js

HTML / DOM Fingerprints

Data Attributes
id="plugin-organiser-filter"
JS Globals
window.Innocow.WP.PluginOrganiser.Filtervar filter = new Innocow.WP.PluginOrganiser.Filter()
REST Endpoints
/wp-json/plugin-organiser/v1/groups
FAQ

Frequently Asked Questions about Plugin Organiser