
Show User Level Content Security & Risk Analysis
wordpress.org/plugins/show-user-level-contentThis simple plug-in hides content from all users except those that exceed a specific user level.
Is Show User Level Content Safe to Use in 2026?
Generally Safe
Score 85/100Show User Level Content has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "show-user-level-content" plugin version 0.2 exhibits a generally strong security posture based on the provided static analysis. It has a minimal attack surface with no apparent AJAX handlers, REST API routes, shortcodes, or cron events exposed. The code signals also indicate good practices, with no dangerous functions, all SQL queries using prepared statements, and the presence of nonce and capability checks. Taint analysis shows no critical or high severity vulnerabilities with unsanitized paths. The plugin's vulnerability history is also clean, with no recorded CVEs, which suggests a history of secure development or minimal public exposure to exploit attempts.
Despite these strengths, a potential concern arises from the output escaping. With 50% of outputs not properly escaped, there is a risk of Cross-Site Scripting (XSS) vulnerabilities if user-controlled input is displayed without adequate sanitization. While the taint analysis did not reveal explicit XSS, the lack of consistent output escaping is a significant weakness that could be exploited. The plugin's overall security is good, but this specific area requires attention to ensure a more robust defense against potential attacks.
Key Concerns
- Half of outputs are not properly escaped
Show User Level Content Security Vulnerabilities
Show User Level Content Code Analysis
Output Escaping
Data Flow Analysis
Show User Level Content Attack Surface
WordPress Hooks 3
Maintenance & Trust
Show User Level Content Maintenance & Trust
Maintenance Signals
Community Trust
Show User Level Content Alternatives
Show Content by User Level
show-content-by-user-level
This simple plug-in hides content from all users except those that exceed a specific user level.
Manage User Roles
manage-user-roles
A flexible plugin to control content visibility for non-administrator users with advanced, role-based rules.
WPSAL (Simple Access List)
wpsal-simple-access-list
We have ONE goal in mind: making it easy to control access to pages and posts.
Members – Membership & User Role Editor Plugin
members
The best WordPress membership and user role editor plugin. User Roles & Capabilities editor helps you restrict content in just a few clicks.
Advanced Access Manager – Access Governance for WordPress
advanced-access-manager
Access Governance for WordPress. Control roles, users, content, admin areas, and APIs to prevent broken access controls and excessive privileges.
Show User Level Content Developer Profile
1 plugin · 10 total installs
How We Detect Show User Level Content
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
[hide][/hide][hide ...]