WP Plugin Filter Security & Risk Analysis

wordpress.org/plugins/wp-plugin-filter

WP Plugin Filter lets you easily hide unnecessary plugins from the WordPress admin dashboard, streamlining plugin management.

30 active installs v1.3.0 PHP 7.0+ WP 6.3+ Updated Unknown
adminfilterhidemanagement
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is WP Plugin Filter Safe to Use in 2026?

Generally Safe

Score 100/100

WP Plugin Filter has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs
Risk Assessment

Based on the provided static analysis and vulnerability history, the "wp-plugin-filter" v1.3.0 plugin exhibits a very strong security posture. The absence of any discovered CVEs and the clean vulnerability history suggest a history of secure development practices. The static analysis further reinforces this, showing no attack surface through AJAX, REST API, shortcodes, or cron events, and no dangerous functions or file operations.

While the plugin demonstrates good practices like 100% prepared SQL statements and a good percentage of properly escaped outputs (61%), there are minor areas for attention. The lack of capability checks, despite the presence of nonce checks, indicates a reliance on nonces for authentication, which might be less robust in certain scenarios if nonces are not meticulously handled. The limited taint analysis and the fact that no flows with unsanitized paths were found are positive indicators, suggesting no immediate high-risk data handling vulnerabilities.

Overall, "wp-plugin-filter" v1.3.0 appears to be a highly secure plugin. Its strengths lie in its minimal attack surface, secure database interactions, and lack of known vulnerabilities. The minor concern is the sole reliance on nonce checks for protection where capability checks might offer an additional layer of security. However, given the overall clean slate, the risks are currently very low.

Key Concerns

  • No capability checks found
  • Only 61% of output properly escaped
Vulnerabilities
None known

WP Plugin Filter Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

WP Plugin Filter Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
12
19 escaped
Nonce Checks
5
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

61% escaped31 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
handle_unhide_plugins (includes\class-wppfilter-pluginactions.php:223)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

WP Plugin Filter Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 13
actionadmin_menuincludes\class-wppfilter-adminsettings.php:24
actionadmin_initincludes\class-wppfilter-adminsettings.php:25
actioninitincludes\class-wppfilter-adminsettings.php:26
filterviews_pluginsincludes\class-wppfilter-pluginactions.php:25
filterall_pluginsincludes\class-wppfilter-pluginactions.php:26
actionadmin_noticesincludes\class-wppfilter-pluginactions.php:27
filterplugin_action_linksincludes\class-wppfilter-pluginactions.php:28
filterbulk_actions-pluginsincludes\class-wppfilter-pluginactions.php:29
filterhandle_bulk_actions-pluginsincludes\class-wppfilter-pluginactions.php:30
actionadmin_initincludes\class-wppfilter-pluginactions.php:31
actionadmin_initincludes\class-wppfilter-pluginactions.php:32
filterall_pluginsincludes\class-wppfilter-pluginactions.php:239
actionadmin_enqueue_scriptswp-plugin-filter.php:38
Maintenance & Trust

WP Plugin Filter Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedUnknown
PHP min version7.0
Downloads1K

Community Trust

Rating100/100
Number of ratings1
Active installs30
Developer Profile

WP Plugin Filter Developer Profile

Mike Kipruto

2 plugins · 40 total installs

91
trust score
Avg Security Score
96/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect WP Plugin Filter

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/wp-plugin-filter/assets/css/style.css/wp-content/plugins/wp-plugin-filter/assets/js/script.js
Script Paths
/wp-content/plugins/wp-plugin-filter/assets/js/script.js
Version Parameters
wp-plugin-filter/assets/css/style.css?ver=wp-plugin-filter/assets/js/script.js?ver=

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about WP Plugin Filter