
Private Notes Security & Risk Analysis
wordpress.org/plugins/private-notesLets an author keep private notes with a post.
Is Private Notes Safe to Use in 2026?
Generally Safe
Score 85/100Private Notes has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "private-notes" plugin v1.1 exhibits a strong security posture based on the provided static analysis. The absence of dangerous functions, the exclusive use of prepared statements for SQL queries, and 100% proper output escaping are significant strengths. Furthermore, the plugin demonstrates good practice by implementing capability checks for its entry points. The lack of any recorded vulnerabilities, including CVEs, across its history further contributes to its positive security assessment.
Private Notes Security Vulnerabilities
Private Notes Code Analysis
Private Notes Attack Surface
Shortcodes 1
WordPress Hooks 1
Maintenance & Trust
Private Notes Maintenance & Trust
Maintenance Signals
Community Trust
Private Notes Alternatives
cbnet Multi Author Comment Notification
cbnet-multi-author-comment-notification
Send comment notification and comment moderation emails to multiple users. Select users individually or by user role, or send emails to arbitrary emai …
User Notes
user-notes
Keep private notes about each of your users that only Administrators can see.
Comment Email Reply
comment-email-reply
Simply notifies comment-author via email if someone replies to his comment. Zero Configuration.
Admin Commenters Comments Count
admin-commenters-comments-count
Displays a count of each commenter's total number of comments (linked to those comments) next to their name on any admin page.
Polygon Recent Comments With Avatar
polygon-recent-comments-with-avatar
Polygon Recent Comments With Avatar: Recent comments with avatar support, including Gravatar, date, username, user link, and scrollbar.
Private Notes Developer Profile
1 plugin · 10 total installs
How We Detect Private Notes
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/private-notes/style.cssprivate-notes/style.css?ver=HTML / DOM Fingerprints
private-note<div class="private-note"><h4>Private Note:</h4>