
WP Login Alerts by DigiP Security & Risk Analysis
wordpress.org/plugins/wp-login-alertsE-mails the site owner if anyone reaches or attempts to login to the site. Also shows the user names they attempt to login with.
Is WP Login Alerts by DigiP Safe to Use in 2026?
Generally Safe
Score 85/100WP Login Alerts by DigiP has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
Based on the static analysis, the "wp-login-alerts" plugin v2013-05-30.10 exhibits an excellent security posture. The code analysis reveals no identifiable attack surface, meaning there are no AJAX handlers, REST API routes, shortcodes, or cron events that could be exploited. Furthermore, the plugin demonstrates strong coding practices by avoiding dangerous functions, utilizing prepared statements for all SQL queries, and properly escaping all output. File operations and external HTTP requests are also absent, further reducing the potential for vulnerabilities. The lack of taint analysis findings reinforces this, indicating no identified flows with unsanitized paths.
The plugin's vulnerability history is equally impressive, with zero recorded CVEs. This suggests a history of robust security and a lack of common or persistent vulnerabilities. The absence of any past vulnerabilities, regardless of severity, is a strong indicator of a well-developed and secure plugin.
In conclusion, the "wp-login-alerts" plugin v2013-05-30.10 appears to be highly secure based on the provided data. Its lack of attack surface, adherence to secure coding principles, and spotless vulnerability history make it a trustworthy option. There are no apparent security concerns or areas for deduction based on the evidence presented.
WP Login Alerts by DigiP Security Vulnerabilities
WP Login Alerts by DigiP Code Analysis
WP Login Alerts by DigiP Attack Surface
WordPress Hooks 3
Maintenance & Trust
WP Login Alerts by DigiP Maintenance & Trust
Maintenance Signals
Community Trust
WP Login Alerts by DigiP Alternatives
Email Login Attempts
email-login-attempts
This plugin will send an email whenever a someone tries to login via the WordPress login page.
Email OTP Login with default login form
email-otp-login-with-default-login-form
Adds email OTP (One-Time Password) verification after valid login credentials on the default wp-login.php form for added security.
Email OTP Login
email-otp-login
Adds OTP (One-Time Password) verification after login for enhanced security in WordPress. OTP is sent to the user's email.
Second Factor
second-factor
Require secondary authentication for registered user access
Email TFA
email-tfa
Add an extra layer of security via two-factor authentication with email for WordPress logins.
WP Login Alerts by DigiP Developer Profile
1 plugin · 10 total installs
How We Detect WP Login Alerts by DigiP
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.