Classic Editor

Info
Developer: WordPress.org Version: 1.7.0 Last scanned: 4 september 2026 View on WordPress.org ↗

No critical findings detected by this scanner does not mean "this plugin is safe." This report is based on static analysis and cannot guarantee that the plugin is free from vulnerabilities or malicious behaviour.

Overview

Security
Info
Permissions
Low
External Access
Info
Data Handling
Info
Code Quality
Info
Activation Behaviour
Info

1 thing worth reviewing

  • Uses capability checks in 3 locations

Scanner 0.1.0 · Ruleset 0.1.0 · Package SHA-256: 7cc7799b0b7d820f…

Permissions

  • edit_user — used in 1 location
  • manage_network_options — used in 1 location
  • manage_options — used in 1 location
🔒 Full details are available with a Developer or Agency plan.

File paths, line numbers, and raw evidence are part of the paid technical detail layer.

View plans

External Access

No outgoing connections to external hosts were detected.

REST API

No REST API routes were detected.

Activation Behaviour

  • Writes to the database (no)
  • Creates database tables (no)
  • Creates user accounts (no)
  • Creates roles (no)
  • Changes capabilities (no)
  • Creates credentials (e.g. Application Passwords) (no)
  • Contacts an external host (no)
  • Schedules a background job (cron) (no)
  • Writes files (no)

Version Changes

Current version
1.7.0
Versions tracked
1
Latest Technical Risk
Info
🔒 Full details are available with a Developer or Agency plan.

File paths, line numbers, and raw evidence are part of the paid technical detail layer.

View plans