
Post By Email Notify Security & Risk Analysis
wordpress.org/plugins/post-by-email-notifySends a notification to the author when a post is created by email.
Is Post By Email Notify Safe to Use in 2026?
Generally Safe
Score 85/100Post By Email Notify has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "post-by-email-notify" v1.0.0 exhibits a strong security posture based on the provided static analysis. The absence of identified dangerous functions, SQL queries, file operations, and external HTTP requests, coupled with 100% proper output escaping, indicates that the developers have followed good security practices. The zero-count for vulnerabilities in the history further reinforces this positive outlook, suggesting a history of stable and secure code.
However, the analysis also reveals a complete lack of any security checks, including nonce checks and capability checks. While the current attack surface appears to be zero, any future additions of entry points (AJAX, REST API, shortcodes, cron jobs) without corresponding authentication or authorization mechanisms would immediately introduce significant risks. The total absence of taint analysis flows is also noteworthy; while this is good, it might suggest a very limited code scope or that the analysis tools did not find any Taintable sources to trace.
In conclusion, the plugin currently presents a very low risk due to its apparent lack of complex functionality and adherence to basic secure coding principles. The primary concern lies in the complete absence of any authorization or authentication enforcement, which creates a latent risk if the plugin's functionality were to expand or change without implementing these crucial security layers.
Key Concerns
- No Nonce Checks detected
- No Capability Checks detected
Post By Email Notify Security Vulnerabilities
Post By Email Notify Code Analysis
Output Escaping
Post By Email Notify Attack Surface
WordPress Hooks 3
Maintenance & Trust
Post By Email Notify Maintenance & Trust
Maintenance Signals
Community Trust
Post By Email Notify Alternatives
Postie
postie
Postie allows you to create posts via email, including many advanced features not found in WordPress's default Post by Email feature.
Share by Email
share-by-email
Lightweight plugin that gives your readers an easy way to share your content via their email client. A classic Share via Email link.
WP Mail SMTP by WPForms – The Most Popular SMTP and Email Log Plugin
wp-mail-smtp
Make email delivery easy for WordPress. Connect with SMTP, Gmail, Outlook, SendGrid, Mailgun, SES, Zoho, + more. Rated #1 WordPress SMTP Email plugin.
Hostinger Reach – AI-Powered Email Marketing for WordPress
hostinger-reach
Launch and grow your email marketing effortlessly with Hostinger Reach. Collect contacts, sync subscribers, and send emails – all in one, AI powered.
MC4WP: Mailchimp for WordPress
mailchimp-for-wp
The #1 Mailchimp plugin for WordPress. Allows you to add a multitude of newsletter sign-up methods to your site.
Post By Email Notify Developer Profile
2 plugins · 510 total installs
How We Detect Post By Email Notify
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.