
WasiTools Security & Risk Analysis
wordpress.org/plugins/wasitoolsA lightweight admin toolbox: duplicate posts, disable comments, maintenance mode, body class, cron jobs, and more — all in one place.
Is WasiTools Safe to Use in 2026?
Generally Safe
Score 100/100WasiTools has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "wasitools" v1.3.0 plugin exhibits a generally strong security posture based on the provided static analysis and vulnerability history. The absence of any recorded CVEs, critical taint flows, dangerous functions, raw SQL queries, or unsanitized paths is highly positive. The code demonstrates robust use of prepared statements for SQL queries, comprehensive output escaping, and a significant number of nonce and capability checks, indicating developers have implemented good security practices.
However, a few minor points warrant attention. The presence of two AJAX handlers without explicit authentication checks, while not directly flagged as a vulnerability in the taint analysis, represents an potential attack vector if these handlers perform sensitive operations. While the total attack surface is small and appears to be protected by other WordPress mechanisms, it's always best practice to explicitly check capabilities for all AJAX endpoints. The file operation, while not specified as problematic, could be a point of concern depending on its nature and if it involves user-controlled input.
Overall, "wasitools" v1.3.0 appears to be a secure plugin with a minimal risk profile. The lack of past vulnerabilities and the strong adherence to secure coding practices in the current version are commendable. The primary area for improvement would be to ensure explicit authentication and authorization checks are in place for all AJAX handlers, even if they are currently deemed protected by broader WordPress security measures.
Key Concerns
- AJAX handlers without explicit auth checks
WasiTools Security Vulnerabilities
WasiTools Release Timeline
WasiTools Code Analysis
Output Escaping
Data Flow Analysis
WasiTools Attack Surface
AJAX Handlers 2
WordPress Hooks 63
Scheduled Events 2
Maintenance & Trust
WasiTools Maintenance & Trust
Maintenance Signals
Community Trust
WasiTools Alternatives
Foxdell Folio Taxonomy Toolkit
foxdell-folio-taxonomy-toolkit
Have finer control over your taxonomies so that you can have better organisation of your posts by using taxonomies other than just Categories and Tags …
Yuva Testing Utilities
yuva-testing-utilities
A small collection of developer utilities for faster WordPress testing on local or staging environments.
WPS Bidouille
wps-bidouille
WPS Bidouille provides information about your WordPress and contains optimization tools.
Store Toolkit – WooCommerce Extensions, Quick Enhancements & Handy Tools
woocommerce-store-toolkit
A huge set of Quick Enhancements and Handy Tools for WooCommerce – the ultimate WooCommerce booster!
Admin Tools
admin-tools
Admin Tools Helps you to get better admin for your customers. Manage your menus, plugins, Top Bar, updates and more
WasiTools Developer Profile
3 plugins · 120 total installs
How We Detect WasiTools
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wasitools/assets/css/admin.css/wp-content/plugins/wasitools/assets/css/admin_widget.css/wp-content/plugins/wasitools/assets/css/frontend.css/wp-content/plugins/wasitools/assets/js/admin.js/wp-content/plugins/wasitools/assets/js/admin_widget.js/wp-content/plugins/wasitools/assets/js/frontend.js/wp-content/plugins/wasitools/assets/js/uninstall.js/wp-content/plugins/wasitools/assets/js/admin.js/wp-content/plugins/wasitools/assets/js/admin_widget.js/wp-content/plugins/wasitools/assets/js/frontend.js/wp-content/plugins/wasitools/assets/js/uninstall.jswasitools/assets/css/admin.css?ver=wasitools/assets/css/admin_widget.css?ver=wasitools/assets/css/frontend.css?ver=wasitools/assets/js/admin.js?ver=wasitools/assets/js/admin_widget.js?ver=wasitools/assets/js/frontend.js?ver=wasitools/assets/js/uninstall.js?ver=HTML / DOM Fingerprints
wasitools-admin-noticewasitools-admin-widget<!-- WasiTools Main Settings Page --><!-- WasiTools Admin Widget --><!-- WasiTools Widget Wrapper -->data-wasitools-iddata-wasitools-noncedata-wasitools-actionwasitools_admin_widget_vars