
WP-Cleanup Security & Risk Analysis
wordpress.org/plugins/wp-cleanupThis Wordpress plugin will cleanup your Wordpress database by remove all unused data from your database.
Is WP-Cleanup Safe to Use in 2026?
Generally Safe
Score 85/100WP-Cleanup has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "wp-cleanup" plugin version 1.1.0 presents a generally concerning security posture despite a clean vulnerability history. The static analysis reveals no apparent attack surface in terms of AJAX handlers, REST API routes, shortcodes, or cron events, which is a positive sign for entry points. Furthermore, all SQL queries utilize prepared statements, indicating good practice in database interaction. However, a significant red flag is the complete absence of output escaping for all identified outputs. This means that any data processed or displayed by the plugin could potentially be rendered directly to the user, opening the door for Cross-Site Scripting (XSS) vulnerabilities. The lack of nonce checks and capability checks is also a concern, as it implies that sensitive actions might not be adequately protected against unauthorized execution or exploitation.
Key Concerns
- 0% of outputs properly escaped
- 0 Nonce checks found
- 0 Capability checks found
WP-Cleanup Security Vulnerabilities
WP-Cleanup Release Timeline
WP-Cleanup Code Analysis
SQL Query Safety
Output Escaping
WP-Cleanup Attack Surface
WordPress Hooks 1
Maintenance & Trust
WP-Cleanup Maintenance & Trust
Maintenance Signals
Community Trust
WP-Cleanup Alternatives
Optimize Database after Deleting Revisions
rvg-optimize-database
One-click database optimization with precise revision cleanup and flexible scheduling. Speeding up sites since 2011!
SweepPress: Website Cleanup and Optimization
sweeppress
Remove unused, orphaned, duplicated data in your WordPress website using 55+ sweepers, manage and clean Options table, optimize database.
WP Database Cleaner
wp-database-cleaner
Cleanup and optimize the database of WordPress sites.
atec Database
atec-database
Manage, clean, and optimize your WordPress database with detailed control over tables and options.
Advanced Clean Master – Complete Site Cleanup & Database Optimizer
advanced-clean-master
Boost WordPress performance by cleaning unnecessary data and optimizing your database. Remove drafts, orphaned media, transients with scheduled cleanu …
WP-Cleanup Developer Profile
1 plugin · 500 total installs
How We Detect WP-Cleanup
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
################################################
# THIS IS THE PART WHERE WE CLEANUP EVERYTHING #
##############################################################################################
# THIS IS THE PART FOR CALCULATING THE STATS #
##############################################