
RationalCleanup Security & Risk Analysis
wordpress.org/plugins/rationalcleanupClean up legacy WordPress bloat, improve security, and optimize performance with toggleable, opinionated defaults.
Is RationalCleanup Safe to Use in 2026?
Generally Safe
Score 100/100RationalCleanup has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "rationalcleanup" plugin v1.1.0 demonstrates a strong security posture based on the provided static analysis. The absence of any identified AJAX handlers, REST API routes, shortcodes, or cron events significantly limits the potential attack surface, and all identified entry points are reported as protected. The code signals also indicate good practices, with no dangerous functions or file operations detected. All SQL queries utilize prepared statements, which is a critical security measure. However, there are areas for improvement. The 62% proper output escaping suggests that a notable portion of output is not being sanitized, potentially opening the door to cross-site scripting (XSS) vulnerabilities. Additionally, the single external HTTP request warrants closer inspection to ensure it's not susceptible to man-in-the-middle attacks or other network-level threats, although without taint analysis, its exact impact is unclear. The vulnerability history shows no previously known CVEs, which is a positive indicator, suggesting the plugin has historically been secure or issues have been promptly addressed. Overall, the plugin is built with good security fundamentals, but the unescaped output and the single external HTTP request represent the primary areas of concern.
Key Concerns
- Output escaping is not consistently applied
- Single external HTTP request detected
RationalCleanup Security Vulnerabilities
RationalCleanup Code Analysis
Output Escaping
RationalCleanup Attack Surface
WordPress Hooks 30
Maintenance & Trust
RationalCleanup Maintenance & Trust
Maintenance Signals
Community Trust
RationalCleanup Alternatives
Wonderful Secure Cleanup
wonderful-secure-cleanup
A simple way to clean and secure WordPress by disabling unnecessary features like comments, XML-RPC, and RSS feeds.
Mi13 Clean Up
mi13-clean-up
Описание
Delete Duplicate Posts
delete-duplicate-posts
Get rid of duplicate posts and pages (any post type) on your blog with manual or automatic modes.
Freesoul Deactivate Plugins – Disable plugins on individual WordPress pages
freesoul-deactivate-plugins
Load plugins only where you need them. No bloat, no conflicts, more speed. Deactivate plugins where they don't add anything useful.
JetHost Total Care – Security & Enhancements
jethost-total-care
JetHost Total Care simplifies WordPress management by consolidating features like security, site enhancements and performance into a single plugin.
RationalCleanup Developer Profile
1 plugin · 100 total installs
How We Detect RationalCleanup
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/rationalcleanup/assets/css/rationalcleanup-admin.css/wp-content/plugins/rationalcleanup/assets/js/rationalcleanup-admin.js/wp-content/plugins/rationalcleanup/assets/js/rationalcleanup-admin.jsrationalcleanup/assets/css/rationalcleanup-admin.css?ver=rationalcleanup/assets/js/rationalcleanup-admin.js?ver=HTML / DOM Fingerprints
rationalcleanup-options-wrapperrationalcleanup-admin-pagerationalcleanup-section-titlerationalcleanup-setting-rowrationalcleanup-toggle-switchdata-rationalcleanup-optionrationalcleanup_admin_params/wp-json/rationalcleanup/v1/settings