Postname Permalink Auto Redirect Security & Risk Analysis

wordpress.org/plugins/postname-permalink-auto-redirect

This plugin will automatically 301 redirect your old 'postname' format permalinks so you don't lose your precious SEO.

700 active installs v1.1 PHP + WP 2.9.0+ Updated May 10, 2017
linklinksold-post-slugspost-slugpost-slugs
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Postname Permalink Auto Redirect Safe to Use in 2026?

Generally Safe

Score 85/100

Postname Permalink Auto Redirect has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 8yr ago
Risk Assessment

The static analysis of the "postname-permalink-auto-redirect" v1.1 plugin reveals a very strong security posture based on the provided metrics. The plugin demonstrates excellent adherence to secure coding practices, with no identified dangerous functions, all SQL queries utilizing prepared statements, and all output being properly escaped. Furthermore, the absence of file operations, external HTTP requests, and a seemingly minimal attack surface (zero AJAX handlers, REST API routes, shortcodes, or cron events) significantly reduces the potential for exploitation. The taint analysis also yielded no critical or high severity issues, indicating no obvious paths for malicious data injection. The plugin's vulnerability history is entirely clean, with no known CVEs, which is a positive indicator of its past security. However, it's important to note the absence of nonce and capability checks, which, while not directly exploited in the current analysis, could represent a potential weakness if new entry points were introduced or if the plugin interacted with other components in a less secure manner. In conclusion, the plugin is currently very secure, but vigilance regarding authentication and authorization mechanisms in future updates would further strengthen its security.

Key Concerns

  • Missing nonce checks
  • Missing capability checks
Vulnerabilities
None known

Postname Permalink Auto Redirect Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Postname Permalink Auto Redirect Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
1 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped1 total outputs
Attack Surface

Postname Permalink Auto Redirect Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 1
actiontemplate_redirectpostname-permalink-auto-redirect.php:14
Maintenance & Trust

Postname Permalink Auto Redirect Maintenance & Trust

Maintenance Signals

WordPress version tested4.7.32
Last updatedMay 10, 2017
PHP min version
Downloads16K

Community Trust

Rating92/100
Number of ratings16
Active installs700
Developer Profile

Postname Permalink Auto Redirect Developer Profile

fabioneves

1 plugin · 700 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Postname Permalink Auto Redirect

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Postname Permalink Auto Redirect