
Site Secrets Security & Risk Analysis
wordpress.org/plugins/site-secretsKeep your WordPress site private.
Is Site Secrets Safe to Use in 2026?
Generally Safe
Score 85/100Site Secrets has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
Based on the provided static analysis and vulnerability history, the 'site-secrets' plugin v0.2.0 exhibits a strong security posture. The absence of any detected AJAX handlers, REST API routes, shortcodes, or cron events significantly limits the plugin's attack surface. Furthermore, the code signals indicate excellent development practices, with no dangerous functions, all SQL queries utilizing prepared statements, and all output being properly escaped. The lack of file operations, external HTTP requests, and the reported absence of taint analysis findings further bolster this positive assessment.
Site Secrets Security Vulnerabilities
Site Secrets Release Timeline
Site Secrets Code Analysis
Site Secrets Attack Surface
WordPress Hooks 3
Maintenance & Trust
Site Secrets Maintenance & Trust
Maintenance Signals
Community Trust
Site Secrets Alternatives
BuddyPress Docs
buddypress-docs
Adds collaborative Docs to BuddyPress.
Peter’s Post Notes
peters-post-notes
Add notes to the "edit post" and "edit page" sidebars. Collaborators can also share notes on the WordPress dashboard.
WP Document Revisions
wp-document-revisions
A document management and version control plugin for WordPress that allows teams of any size to collaboratively edit files and manage their workflow.
Zephyr Project Manager
zephyr-project-manager
Zephyr Project Manager is a modern, easy to use sophisticated project manager for WordPress.
Admin Page Notes
admin-page-notes
Gives administrators the ability to add notes to posts of any post type (including pages) that are prominently displayed for users editing the site.
Site Secrets Developer Profile
10 plugins · 51K total installs
How We Detect Site Secrets
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
/wp-json/