
Turn Off REST API Security & Risk Analysis
wordpress.org/plugins/turn-off-rest-apiPrevents unauthorized requests from using the WP REST API.
Is Turn Off REST API Safe to Use in 2026?
Generally Safe
Score 85/100Turn Off REST API has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "turn-off-rest-api" plugin v1.0.4 demonstrates a strong security posture based on the provided static analysis. There are no identified entry points that are unprotected, meaning common web attack vectors like SQL injection or cross-site scripting through direct access points are not immediately apparent. The code signals are generally positive, with all SQL queries using prepared statements, a robust nonce check, and a capability check in place. Furthermore, the absence of dangerous functions, file operations, and external HTTP requests significantly reduces the potential attack surface. The taint analysis shows no flows with unsanitized paths, indicating a good effort to handle data securely within the analyzed code paths.
However, it's important to note that the analysis does not cover every possible execution path or interaction with other plugins or the WordPress core. While the reported metrics are excellent, the small number of analyzed taint flows (2) and outputs (7) might suggest a limited scope of the analysis or a very simple plugin. The lack of any recorded vulnerabilities in its history is a significant strength, suggesting a well-maintained and secure plugin over time. Overall, this plugin appears to be very secure based on the provided data, with no immediate red flags or exploitable issues.
Turn Off REST API Security Vulnerabilities
Turn Off REST API Code Analysis
Output Escaping
Data Flow Analysis
Turn Off REST API Attack Surface
WordPress Hooks 8
Maintenance & Trust
Turn Off REST API Maintenance & Trust
Maintenance Signals
Community Trust
Turn Off REST API Alternatives
Disable REST API
disable-json-api
Disable the use of the REST API on your website to site users. Now with User Role support!
Server Response
server-response
Поможет вам скорректировать заголовки ответа сервера и отключить REST API.
JWT Authentication for WP REST API
jwt-authentication-for-wp-rest-api
Extends the WP REST API using JSON Web Tokens Authentication as an authentication method.
Disable WP REST API
disable-wp-rest-api
Disables the WP REST API for visitors not logged into WordPress.
WordPress REST API (Version 2)
rest-api
Access your site's data through an easy-to-use HTTP REST API. (Version 2)
Turn Off REST API Developer Profile
3 plugins · 1K total installs
How We Detect Turn Off REST API
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/turn-off-rest-api/assets/css/style.css/wp-content/plugins/turn-off-rest-api/assets/js/script.js/wp-content/plugins/turn-off-rest-api/assets/js/script.jsturn-off-rest-api/assets/css/style.css?ver=turn-off-rest-api/assets/js/script.js?ver=