Primary Redirect Security & Risk Analysis

wordpress.org/plugins/primary-redirect

Redirects users to a custom URL or their primary blog's dashboard after login, replacing the default WordPress behavior.

10 active installs v2.0.2 PHP 7.4+ WP 5.0+ Updated Jul 25, 2025
loginmultisiteprimaryredirectredirection
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Primary Redirect Safe to Use in 2026?

Generally Safe

Score 100/100

Primary Redirect has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 8mo ago
Risk Assessment

The primary-redirect plugin v2.0.2 exhibits a generally strong security posture based on the static analysis and vulnerability history provided. The absence of any dangerous functions, raw SQL queries, file operations, external HTTP requests, or identified taint flows suggests a well-written and secure codebase. The use of prepared statements for all SQL queries and a high percentage of properly escaped outputs are positive indicators of good development practices. Furthermore, the lack of any known vulnerabilities (CVEs) is highly encouraging.

Key Concerns

  • Missing nonce checks on AJAX
  • Unescaped output
  • Lack of capability checks
  • No critical or high severity taint flows
  • No raw SQL queries
  • No dangerous functions used
  • No known CVEs
Vulnerabilities
None known

Primary Redirect Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Primary Redirect Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
1
5 escaped
Nonce Checks
0
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

83% escaped6 total outputs
Data Flows
All sanitized

Data Flow Analysis

1 flows
<primary-redirect> (primary-redirect.php:0)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Primary Redirect Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 6
actionplugins_loadedprimary-redirect.php:74
filterlogin_redirectprimary-redirect.php:75
actionwpmu_optionsprimary-redirect.php:78
actionupdate_wpmu_optionsprimary-redirect.php:79
actionadmin_initprimary-redirect.php:81
actioninitprimary-redirect.php:333
Maintenance & Trust

Primary Redirect Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedJul 25, 2025
PHP min version7.4
Downloads3K

Community Trust

Rating100/100
Number of ratings2
Active installs10
Developer Profile

Primary Redirect Developer Profile

Mustafa Uysal

9 plugins · 20K total installs

94
trust score
Avg Security Score
92/100
Avg Patch Time
1 days
View full developer profile
Detection Fingerprints

How We Detect Primary Redirect

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/primary-redirect/js/admin.js
Script Paths
/wp-content/plugins/primary-redirect/js/admin.js

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Primary Redirect