
Restricted content based on purchase Security & Risk Analysis
wordpress.org/plugins/restricted-content-based-on-purchaseRestricted content for users who have not purchased the indicated product or product variant.
Is Restricted content based on purchase Safe to Use in 2026?
Generally Safe
Score 100/100Restricted content based on purchase has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
Based on the provided static analysis and vulnerability history, the 'restricted-content-based-on-purchase' plugin version 1.0.3 exhibits a strong security posture. The plugin demonstrates good practices by employing prepared statements for all SQL queries and having a low number of total entry points with none identified as unprotected. Nonce and capability checks are present, indicating an effort to secure the plugin's functionalities. The absence of dangerous functions, file operations, and external HTTP requests further contributes to its favorable security profile. The taint analysis also shows no unsanitized paths, which is a significant positive indicator. The vulnerability history is completely clean, with zero recorded CVEs, suggesting a history of secure development or diligent patching.
While the overall security is commendable, there is a minor area for improvement: the output escaping is not fully robust, with 27% of outputs not properly escaped. This, though not flagged as critical in the taint analysis, could potentially lead to cross-site scripting (XSS) vulnerabilities in specific, though perhaps unlikely, scenarios. The presence of a shortcode as an entry point, while currently unprotected by any noted checks in the provided data, also warrants attention, although the overall entry point count is very low. Overall, the plugin is well-secured, with only a minor concern regarding output sanitization.
Key Concerns
- Outputs not properly escaped
Restricted content based on purchase Security Vulnerabilities
Restricted content based on purchase Code Analysis
Output Escaping
Data Flow Analysis
Restricted content based on purchase Attack Surface
Shortcodes 1
WordPress Hooks 12
Maintenance & Trust
Restricted content based on purchase Maintenance & Trust
Maintenance Signals
Community Trust
Restricted content based on purchase Alternatives
Advanced Access Manager – Access Governance for WordPress
advanced-access-manager
Access Governance for WordPress. Control roles, users, content, admin areas, and APIs to prevent broken access controls and excessive privileges.
Restrict – membership, site, content and user access restrictions for WordPress
restricted-content
Restrict content easily to logged in users, members with a specific role or user capability, to it's author, Tickera, Easy Digital Downloads or W …
Restrict for Elementor
restrict-for-elementor
Show or hide Elementor sections, columns and widgets with ease using many different criteria
Download PDF After Submit Form
download-pdf-after-submit-form
Easily allow users to download PDFs after submitting a form with customizable shortcodes. No coding required – just install and configure!
Secret Content
secret-content
Easily mark any post or a page as "for logged in members only", hiding it from public view! (not for custom post types).
Restricted content based on purchase Developer Profile
1 plugin · 10 total installs
How We Detect Restricted content based on purchase
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/restricted-content-based-on-purchase/assets/style.css/wp-content/plugins/restricted-content-based-on-purchase/assets/post_options.jsHTML / DOM Fingerprints
resconbop_hidden_excerptresconbop_custom_textresconbop-box[rescon