
SX User Name Security Security & Risk Analysis
wordpress.org/plugins/user-name-securitySX User Name Security prevents WordPress from showing your real Login everywhere. It ovverides the body_class function, User Nicename, Nickname and Di …
Is SX User Name Security Safe to Use in 2026?
Generally Safe
Score 100/100SX User Name Security has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "user-name-security" v2.4 plugin exhibits a generally strong security posture based on the provided static analysis and vulnerability history. The plugin demonstrates good practices by implementing nonce checks and capability checks for its identified entry point, an AJAX handler. Furthermore, all SQL queries are executed using prepared statements, mitigating the risk of SQL injection. The absence of file operations and external HTTP requests reduces common attack vectors.
However, a significant concern arises from the low percentage of properly escaped outputs (11%). This indicates a substantial risk of Cross-Site Scripting (XSS) vulnerabilities, as user-supplied data, if not properly sanitized before being displayed, could be injected and executed in the browser. While no critical or high severity taint flows were identified, and the plugin has no recorded vulnerability history, the unescaped output is a serious weakness that requires immediate attention.
In conclusion, while the plugin has commendable security foundations like prepared statements and robust entry point protection, the prevalent issue of unescaped output significantly lowers its overall security score. Addressing the output escaping is paramount to closing a substantial attack surface. The clean vulnerability history is a positive sign of diligent development, but it should not overshadow the identified XSS risk.
Key Concerns
- Low percentage of properly escaped output
SX User Name Security Security Vulnerabilities
SX User Name Security Code Analysis
SQL Query Safety
Output Escaping
SX User Name Security Attack Surface
AJAX Handlers 1
WordPress Hooks 19
Maintenance & Trust
SX User Name Security Maintenance & Trust
Maintenance Signals
Community Trust
SX User Name Security Alternatives
Virus Finder
virus-finder
Find viruses in your WordPress easily. Virus scan, malware finder.
WP Security By Made I.T.
wp-security-by-made-it
Secure your WordPress Website.
SecuPress with Simple SSL – Simple and Performant Security
secupress
Protect your WordPress with SecuPress, analyze and ensure the safety of your website daily.
SP Move Login
sf-move-login
Move your WordPress login page to protect it from bots. This plugin contains the Move Login module from SecuPress. Other security modules are availabl …
WebDefender Security – Protection & AntiSpam
cwis-antivirus-malware-detected
PRO Security – Antivirus Scanner, 2-Layer Protection Hide Security, Brute Force Security & Antispam, Security Website and Security Hardening.
SX User Name Security Developer Profile
4 plugins · 3K total installs
How We Detect SX User Name Security
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/user-name-security/css/sx-user-name-security.css/wp-content/plugins/user-name-security/js/sx-user-name-security.js/wp-content/plugins/user-name-security/js/sx-user-name-security.jsHTML / DOM Fingerprints
author-author-id-author-nicename-data-noncedata-useridseomix_var_new_login