[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f0uuYofkEJ0eyKOBPEWeiv1uhGWa2L14KprqTeDeL-0o":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":18,"tags":19,"homepage":25,"download_link":26,"security_score":27,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30,"vulnerabilities":31,"developer":32,"crawl_stats":29,"alternatives":39,"analysis":135,"fingerprints":180},"remove-version-info","Remove Version Info","1.2","Ashkar","https:\u002F\u002Fprofiles.wordpress.org\u002Fshinorex\u002F","\u003Cp>Remove the version from your WordPress website completely, increasing security and thwarting potential hacks by hiding WordPress version information from the source code.\u003C\u002Fp>\n\u003Cp>This plugin:\u003Cbr \u002F>\n– Removes the WordPress version number from the HTML meta generator tag.\u003Cbr \u002F>\n– Removes version query strings (\u003Ccode>?ver=x.x.x\u003C\u002Fcode>) from CSS and JavaScript files.\u003Cbr \u002F>\n– Hides the WordPress version from RSS feed generator tags.\u003Cbr \u002F>\n– Adds security headers to prevent attacks and improve site security.\u003C\u002Fp>\n","Remove the version from your WordPress website completely, increasing security and thwarting potential hacks by hiding WordPress version information f &hellip;",300,5986,100,1,"2025-03-27T09:27:00.000Z","6.7.5","3.0","",[20,21,22,23,24],"delete","hide","hide-version","remove-version","wordpress-version","http:\u002F\u002Fashkarsidheeque.com\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fremove-version-info.1.2.zip",92,0,null,"2026-03-15T15:16:48.613Z",[],{"slug":33,"display_name":7,"profile_url":8,"plugin_count":34,"total_installs":35,"avg_security_score":27,"avg_patch_time_days":36,"trust_score":37,"computed_at":38},"shinorex",2,800,30,88,"2026-04-04T11:16:45.709Z",[40,65,84,100,116],{"slug":41,"name":42,"version":43,"author":44,"author_profile":45,"description":46,"short_description":47,"active_installs":48,"downloaded":49,"rating":50,"num_ratings":51,"last_updated":52,"tested_up_to":53,"requires_at_least":54,"requires_php":55,"tags":56,"homepage":61,"download_link":62,"security_score":63,"vuln_count":34,"unpatched_count":28,"last_vuln_date":64,"fetched_at":30},"my-wp-brand","My Wp Brand – Hide menu & Hide Plugin","1.1.4","imw3","https:\u002F\u002Fprofiles.wordpress.org\u002Fimw3\u002F","\u003Cp>This plugin gives the facility for hiding and showing the admin menu of the side \u002F top bar, it also gives you the options to hide the plugin lists, WordPress version, rename, and style the brand of WordPress into your brand.\u003C\u002Fp>\n\u003Cp>Ever want to style the appearance of the WordPress admin pages by hiding the menu, renaming the brand, changing the logo, etc.\u003C\u002Fp>\n\u003Ch3>Which Reason Makes the WordPress WP Brand Plugin Outstanding?\u003C\u002Fh3>\n\u003Cp>There are the following reasons that make the WordPress WP Brand Plugin Outstanding.\u003C\u002Fp>\n\u003Col>\n\u003Cli>\n\u003Cp>HIDE ADMIN MENU AND ADMIN BAR\u003Cbr \u002F>\nYou can hide the items in the admin menu and admin bar.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>HIDE ADMIN MENU ITEMS FOR SPECIFIC USERS\u003Cbr \u002F>\nIf you have multiple users on your website, you will sometimes need certain people to have specific permissions. It is the best way to do it for your particular user role.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>Hide Plugin\u003Cbr \u002F>\nYou can hide all the plugins or particular plugins from the plugin page.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>HIDE WORDPRESS VERSION\u003Cbr \u002F>\nYou can easily hide WordPress version by one click.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>REBRAND (NAME, LOGO, WELCOME MESSAGE)\u003Cbr \u002F>\nYou can easily rename the WordPress into your brand name.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fimw3.com\u002Fproduct\u002Fmy-wp-brand\" rel=\"nofollow ugc\">Explore More\u003C\u002Fa>\u003C\u002Fp>\n","This plugin gives the facility for hiding and showing plugins and the admin menu, it also gives the options to customize WordPress branding.",2000,14991,80,4,"2025-10-07T14:11:00.000Z","6.8.5","6.7","7.4",[57,58,59,60,22],"admin-menu","change-logo","hide-menu","hide-plugin","https:\u002F\u002Fimw3.com\u002Fproduct\u002Fmy-wp-brand","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fmy-wp-brand.1.1.4.zip",98,"2025-06-27 00:00:00",{"slug":66,"name":67,"version":68,"author":69,"author_profile":70,"description":71,"short_description":72,"active_installs":11,"downloaded":73,"rating":13,"num_ratings":34,"last_updated":74,"tested_up_to":75,"requires_at_least":76,"requires_php":18,"tags":77,"homepage":18,"download_link":82,"security_score":83,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30},"remove-wp-version-and-shortlink","Remove WP version and shortlink","1.0","naganandhini","https:\u002F\u002Fprofiles.wordpress.org\u002Fnaganandhini\u002F","\u003Cp>Removes WordPress version number , shortlink, wlwmanifest and RSD\u003C\u002Fp>\n\u003Cp>A simple plugin to prevent people from knowing what version of WordPress you’re using via your HTML source and to cleanup the unwanted header tags generated by wordpress.\u003Cbr \u002F>\nFind more about the plugin here: http:\u002F\u002Fwww.naganandhini.com\u002Fremove-wp-version-and-shortlink-wordpress-plugin\u002F\u003C\u002Fp>\n","Removes WordPress version number , shortlink, wlwmanifest and RSD",5587,"2013-05-01T16:15:00.000Z","3.5.2","2.5",[78,23,79,80,81],"remove-shortlink","remove-wordpress-version","removes","version","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fremove-wp-version-and-shortlink.zip",85,{"slug":85,"name":86,"version":87,"author":88,"author_profile":89,"description":90,"short_description":91,"active_installs":11,"downloaded":92,"rating":28,"num_ratings":28,"last_updated":93,"tested_up_to":94,"requires_at_least":76,"requires_php":18,"tags":95,"homepage":98,"download_link":99,"security_score":83,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30},"remove-wp-version-everywhere","Remove WP version everywhere","1.0.1","frisno","https:\u002F\u002Fprofiles.wordpress.org\u002Ffrisno\u002F","\u003Cp>Removes WordPress version from RSS, posts and pages supports network activation.\u003C\u002Fp>\n\u003Cp>A simple plugin to prevent people from knowing what version of WordPress you’re using via your HTML source or RSS feed.\u003C\u002Fp>\n\u003Cp>These days WordPress automaticaly print out version on every page and feed. Unlike other plugins that just remove the version from WordPress generator tag on pages, this plugin simply tells the automatic function to not print out anything, not even on RSS Feeds. With Multisite Support.\u003C\u002Fp>\n","Removes WordPress version from RSS, posts and pages supports network activation.",7033,"2021-05-05T08:20:00.000Z","5.7.15",[96,23,97,79,81],"remove-generated","remove-version-rss","http:\u002F\u002Fwordpress.org\u002Fextend\u002Fplugins\u002Fremove-wp-version-everywhere\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fremove-wp-version-everywhere.1.0.1.zip",{"slug":101,"name":102,"version":68,"author":103,"author_profile":104,"description":105,"short_description":106,"active_installs":107,"downloaded":108,"rating":109,"num_ratings":34,"last_updated":110,"tested_up_to":53,"requires_at_least":111,"requires_php":18,"tags":112,"homepage":114,"download_link":115,"security_score":13,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30},"remove-code-version-tags","No Version Tags","George Gkouvousis","https:\u002F\u002Fprofiles.wordpress.org\u002Fgkouvousisg\u002F","\u003Cp>Simple, \u003Cstrong>yet effective\u003C\u002Fstrong> plugin that once activated, it will \u003Cstrong>eliminate every CSS version tag\u003C\u002Fstrong> of WordPress plugins, core & themes.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Bonus\u003C\u002Fstrong>: your website will receive a small boost of SEO, you will experience no CSS caching issues anymore and hackers wont be able to recognize your version numbers.\u003C\u002Fp>\n\u003Cp>Try its demo \u003Cstrong>\u003Ca href=\"http:\u002F\u002Fapps.8web.gr\u002Fdemos\u002Fwordpress-remove-versions-from-code-plugin\u002F\" rel=\"nofollow ugc\">here\u003C\u002Fa>\u003C\u002Fstrong>\u003C\u002Fp>\n","Description: Upon activation, this plugin will automatically eliminate the annoying '?ver=x.x' signs from your perfect code :)",200,2957,90,"2025-04-08T04:57:00.000Z","3.0.1",[113,23,24],"css-versions","http:\u002F\u002Fplugins.wordpress.org\u002Fno-version-tags","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fremove-code-version-tags.zip",{"slug":117,"name":118,"version":119,"author":120,"author_profile":121,"description":122,"short_description":123,"active_installs":28,"downloaded":124,"rating":28,"num_ratings":28,"last_updated":125,"tested_up_to":126,"requires_at_least":127,"requires_php":55,"tags":128,"homepage":18,"download_link":134,"security_score":13,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30},"yakura-commenti","Yakura Commenti – Disable & Remove Comments","1.0.0","Yakura","https:\u002F\u002Fprofiles.wordpress.org\u002Fyakuradev\u002F","\u003Cp>\u003Cstrong>Yakura Commenti\u003C\u002Fstrong> lets you disable comments across your entire WordPress site with one click, or selectively remove comments on specific post types. Hide comment forms, delete existing comments in bulk, stop spam, and clean up your admin — with full multisite network support and WP-CLI commands.\u003C\u002Fp>\n\u003Ch4>Why Yakura Commenti?\u003C\u002Fh4>\n\u003Cp>WordPress’s built-in Discussion settings only scratch the surface. They let you close comments on future posts, but existing posts stay open, comment menus clutter the admin, REST API endpoints remain exposed, and pingback headers keep broadcasting. Yakura Commenti closes every door — front end, back end, feeds, APIs — while giving you fine-grained control over what stays open.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>One click vs. granular\u003C\u002Fstrong> — Disable everything at once, or choose exactly which post types to affect\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Per-post overrides\u003C\u002Fstrong> — Keep comments open on specific posts even when disabled globally\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Safe by default\u003C\u002Fstrong> — Disabling comments never deletes anything. Deletion is a separate, intentional action\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Developer-friendly\u003C\u002Fstrong> — 16+ filters, 7+ actions, 8 WP-CLI commands, and a REST API for full programmatic control\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>Disable All or Per Post Type\u003C\u002Fstrong> — One toggle to disable comments everywhere, or select specific post types\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Per-Post Override\u003C\u002Fstrong> — Enable or disable comments on individual posts via a meta box\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Show Existing Comments\u003C\u002Fstrong> — Optionally keep displaying previously posted comments while blocking new ones\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Admin Cleanup\u003C\u002Fstrong> — Remove the Comments menu, admin bar item, dashboard widgets, and block editor comment blocks\u003C\u002Fli>\n\u003Cli>\u003Cstrong>REST API Blocking\u003C\u002Fstrong> — Remove \u003Ccode>\u002Fwp\u002Fv2\u002Fcomments\u003C\u002Fcode> endpoints and block comment requests\u003C\u002Fli>\n\u003Cli>\u003Cstrong>XML-RPC Blocking\u003C\u002Fstrong> — Remove all comment-related XML-RPC methods\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Feed & Pingback Removal\u003C\u002Fstrong> — Remove comment RSS feeds, X-Pingback headers, and pingback XML-RPC methods\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Avatar & Gravatar Control\u003C\u002Fstrong> — Disable avatar display and block external Gravatar requests for privacy\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Comment Type Whitelisting\u003C\u002Fstrong> — Allow specific comment types like WooCommerce order notes or WP 6.9 Notes to bypass disabling\u003C\u002Fli>\n\u003Cli>\u003Cstrong>User Role Exclusions\u003C\u002Fstrong> — Exempt specific user roles from comment restrictions\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Scheduled Disable\u003C\u002Fstrong> — Automatically close comments on posts older than a set number of days via WP-Cron\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Bulk Comment Deletion\u003C\u002Fstrong> — Delete comments by post type, comment type, or status with a statistics preview before you commit\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Import\u002FExport Settings\u003C\u002Fstrong> — Transfer your configuration between sites via JSON files\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Activity Log\u003C\u002Fstrong> — Full audit trail of every settings change, import, and bulk deletion\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Setup Wizard\u003C\u002Fstrong> — Three-step first-run wizard to configure your site in under a minute\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Multisite Support\u003C\u002Fstrong> — Network activation with network-wide settings and per-subsite management\u003C\u002Fli>\n\u003Cli>\u003Cstrong>WP-CLI Commands\u003C\u002Fstrong> — 8 commands for status, settings, deletion, stats, export, import, log, and reset\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Custom REST API\u003C\u002Fstrong> — \u003Ccode>yakura-commenti\u002Fv1\u002F\u003C\u002Fcode> endpoints for reading and updating settings programmatically\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>For Developers\u003C\u002Fh4>\n\u003Cp>Yakura Commenti exposes 16+ filters and 7+ actions at every decision point — override whether a post type is disabled, modify settings before save, react after bulk deletions, filter REST endpoints, and more. All hooks are prefixed with \u003Ccode>yakura_commenti_\u003C\u002Fcode>.\u003C\u002Fp>\n\u003Cp>WP-CLI: \u003Ccode>wp yakura-commenti status|settings|delete|stats|export|import|log|reset\u003C\u002Fcode>.\u003C\u002Fp>\n\u003Cp>REST API: \u003Ccode>GET\u002FPOST \u002Fyakura-commenti\u002Fv1\u002Fsettings\u003C\u002Fcode>, \u003Ccode>GET \u002Fyakura-commenti\u002Fv1\u002Fstatus\u003C\u002Fcode> (requires \u003Ccode>manage_options\u003C\u002Fcode>).\u003C\u002Fp>\n\u003Ch4>Requirements\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>WordPress 5.9 or later\u003C\u002Fli>\n\u003Cli>PHP 7.4 or later\u003C\u002Fli>\n\u003C\u002Ful>\n","Disable and remove comments site-wide or per post type. Control REST API, feeds, XML-RPC, admin UI, and avatars. Multisite ready",95,"2026-03-12T20:27:00.000Z","6.9.4","5.9",[129,130,131,132,133],"delete-comments","disable-comments","hide-comments","remove-comments","stop-spam","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fyakura-commenti.1.0.0.zip",{"attackSurface":136,"codeSignals":163,"taintFlows":170,"riskAssessment":171,"analyzedAt":179},{"hooks":137,"ajaxHandlers":159,"restRoutes":160,"shortcodes":161,"cronEvents":162,"entryPointCount":28,"unprotectedCount":28},[138,144,149,152,155],{"type":139,"name":140,"callback":141,"file":142,"line":143},"action","plugins_loaded","rvi_load_textdomain","remover.php",17,{"type":145,"name":146,"callback":147,"file":142,"line":148},"filter","the_generator","remove_version_info",23,{"type":145,"name":150,"callback":151,"file":142,"line":36},"style_loader_src","remove_version_from_assets",{"type":145,"name":153,"callback":151,"file":142,"line":154},"script_loader_src",31,{"type":139,"name":156,"callback":157,"file":142,"line":158},"send_headers","add_security_headers",42,[],[],[],[],{"dangerousFunctions":164,"sqlUsage":165,"outputEscaping":167,"fileOperations":28,"externalRequests":28,"nonceChecks":28,"capabilityChecks":28,"bundledLibraries":169},[],{"prepared":28,"raw":28,"locations":166},[],{"escaped":28,"rawEcho":28,"locations":168},[],[],[],{"summary":172,"deductions":173},"The \"remove-version-info\" v1.2 plugin exhibits a remarkably clean static analysis profile, with no identified attack surface entry points, dangerous functions, or potential vulnerabilities like unsanitized taint flows. The complete absence of direct SQL queries and the assurance that any database interactions would use prepared statements, along with the perfect record of output escaping, strongly suggest good coding practices in these areas. The plugin's vulnerability history is also empty, with no recorded CVEs of any severity, which is a positive indicator. However, the complete lack of any capability checks or nonce checks across its (admittedly zero) entry points, while not an immediate problem given the current attack surface, represents a missed opportunity for defensive programming. If the plugin were to evolve and introduce any form of interaction, these checks would be crucial. Overall, based on the provided data, the plugin appears secure, but its current simplicity and lack of any security mechanisms beyond code quality could be a blind spot for future development.",[174,177],{"reason":175,"points":176},"No capability checks implemented",5,{"reason":178,"points":176},"No nonce checks implemented","2026-03-16T20:08:23.062Z",{"wat":181,"direct":187},{"assetPaths":182,"generatorPatterns":183,"scriptPaths":184,"versionParams":185},[],[],[],[186],"ver",{"cssClasses":188,"htmlComments":189,"htmlAttributes":190,"restEndpoints":191,"jsGlobals":192,"shortcodeOutput":193},[],[],[],[],[],[]]