Simplify Admin Menus Security & Risk Analysis

wordpress.org/plugins/simplify-admin-menus

Simplify your WordPress admin interface by customizing menu items and admin bar elements per user role.

20 active installs v1.3.2 PHP 7.4+ WP 5.0+ Updated Unknown
adminadminbarcleanhidesimplify
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Simplify Admin Menus Safe to Use in 2026?

Generally Safe

Score 100/100

Simplify Admin Menus has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs
Risk Assessment

The "simplify-admin-menus" v1.3.2 plugin exhibits a generally strong security posture, primarily due to its diligent use of prepared statements for SQL queries and a high rate of proper output escaping. The plugin also demonstrates good practice by implementing nonce and capability checks on its limited entry points. The absence of any known vulnerabilities in its history further reinforces this positive assessment, suggesting a mature and well-maintained codebase.

However, a notable concern arises from the taint analysis, which identified two flows with unsanitized paths. While no critical or high severity issues were flagged, the presence of unsanitized paths, even if not immediately leading to exploitable vulnerabilities in this version, represents a potential risk. These flows indicate that user-supplied input might not be adequately validated or sanitized before being processed, which could become a vector for future attacks if not addressed. The single file operation also warrants attention, though its context and potential for misuse are not detailed in the provided data.

In conclusion, the plugin's strengths lie in its robust handling of database interactions and output, along with a clean vulnerability history. The main weakness identified is the presence of unsanitized input flows, which, while not currently critical, should be investigated and remediated to maintain a high level of security.

Key Concerns

  • Flows with unsanitized paths detected
  • File operations present
Vulnerabilities
None known

Simplify Admin Menus Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Simplify Admin Menus Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
1
63 escaped
Nonce Checks
4
Capability Checks
3
File Operations
1
External Requests
0
Bundled Libraries
0

Output Escaping

98% escaped64 total outputs
Data Flows
2 unsanitized

Data Flow Analysis

2 flows2 with unsanitized paths
handleFormSubmission (app\AdminSettings.php:263)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Simplify Admin Menus Attack Surface

Entry Points1
Unprotected0

AJAX Handlers 1

authwp_ajax_load_settingsapp\AdminSettings.php:73
WordPress Hooks 12
actioninitapp\AdminBarSettings.php:31
actionwp_before_admin_bar_renderapp\AdminBarSettings.php:32
actionwp_before_admin_bar_renderapp\AdminBarSettings.php:33
actionadmin_menuapp\AdminMenuSettings.php:27
actionadmin_headapp\AdminMenuSettings.php:28
actionadmin_menuapp\AdminSettings.php:68
actionadmin_enqueue_scriptsapp\AdminSettings.php:69
actionadmin_enqueue_scriptsapp\AdminSettings.php:70
actionadmin_initapp\AdminSettings.php:71
actionadmin_post_save_simpad_settingsapp\AdminSettings.php:72
actionadmin_noticesapp\AdminSettings.php:74
actioninitsimplify-admin-menus.php:62
Maintenance & Trust

Simplify Admin Menus Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedUnknown
PHP min version7.4
Downloads1K

Community Trust

Rating100/100
Number of ratings1
Active installs20
Developer Profile

Simplify Admin Menus Developer Profile

Adam Alexandersson

2 plugins · 40 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Simplify Admin Menus

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/simplify-admin-menus/dist/resources/assets/js/admin.js
Script Paths
/wp-content/plugins/simplify-admin-menus/dist/resources/assets/js/admin.js

HTML / DOM Fingerprints

CSS Classes
simpad-settings-formsimpad-admin-bar-form
Data Attributes
data-nonce="simplify-admin-menus"
JS Globals
simplifyAdminMenus
FAQ

Frequently Asked Questions about Simplify Admin Menus