Plugin Pulse
← Pulse

RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login

by Metagauss · Login & Users

Also makes 6 other plugins · 86.3K+ installs across the portfolio →

Create user registration forms, build advanced registration forms, accept payments, track submissions, manage users, assign user roles, analyze stats …

How scoring works →
89 Health · A
Maintenance 100/100
Rating quality 89/100
Support 70/100

89 health vs 59 average across 1,442 Login & Users plugins

Directory ranking optimization

How it's scored →

How well this listing is tuned to rank in WordPress.org search, on the factors an owner controls. Not popularity, optimization.

98 / 100

Excellent listing optimization

Well tuned across the board

Update recency 100/100
WP compatibility 100/100
Rating quality 89/100
Listing tuning 100/100
Support resolution 100/100

Daily downloads

Since 2022-10-05 · 1,424 days · wp.org + Plugin Pulse archive

-12% vs prior 30d
274Downloads · Aug 26

30-day downloads

Rolling 30-day volume · peaks are release surges

13.6K

now · peak 40.9K

15.7K30d downloads · Aug 26

Directory rank vs rivals

wp.org popularity rank over time · higher is better · when a rival's line climbs above yours, they've overtaken you

RegistrationMagic · #2497 you UsersWP · #1398 CM Registration · #23468 User Profile Builder · #798

Rating trend

Star average over time · dips mark rough releases

4.5Stars · Aug 26

Update activity

How busy the existing users are, measured as downloads in the last 30 days for every 1,000 active sites. A spike means a new release everyone's pulling; a long, slow decline means an aging user base that updates less.

2Kper 1k installs · Aug 26

Release cadence

Actively maintained
from wp.org release tags

How often this plugin actually ships. A steady rhythm is the maintenance signal a single "last updated" date can't show.

35

releases in the last 12 months

2mo ago

latest release · v6.0.9.5

339

tagged releases on record

Recent releases

6.0.9.5 · 2mo ago6.0.9.4 · 2mo ago6.0.9.3 · 2mo ago6.0.9.2 · 2mo ago6.0.9.1 · 2mo ago6.0.9.0 · 3mo ago6.0.8.9 · 3mo ago6.0.8.8 · 3mo ago6.0.8.7 · 4mo ago6.0.8.6 · 4mo ago6.0.8.5 · 4mo ago6.0.8.4 · 4mo ago6.0.8.3 · 5mo ago6.0.8.2 · 5mo ago

What its installed base runs

via wordpress.org

Share of active installs on each version of this plugin · 84% run the current release. Green is the current release; a big slice on older versions is a user base that has stopped updating.

v6.0 84%
v5.2 6.4%
Older / other versions 9.2%

Estimated active installs

The public count shows “8K+”. Our estimate pins where the real number sits.

tracked estimate
8K–9K ≈8.7K

Refined from the date this plugin crossed into its current band.

Install history · since 2015-06-06 · 1,458 observations

8KInstalls · Aug 26

Estimated value

What this plugin might earn a year, and what it might sell for. Modeled from public signals; we don't see anyone's books.

Est. annual revenue

N/A

Est. acquisition value

N/A

No paid tier is visible, so we don't put a figure on revenue or sale value: that would be guessing. The install base is a real asset to an acquirer, just not one public data lets us price. A small install base leaves thin data to model from.

Details

Version
6.0.9.9
Last updated
2d ago
Added
2014-12-17 · 11 yrs old
Requires WP
5.2.0
Tested up to
7.1
Requires PHP
7.2

Recent reviews

All reviews on wp.org ↗
  1. bipnet
    2mo ago

    Efficient and reliable support response.

    Read on wp.org ↗
  2. isabelf
    4mo ago

    I have tested several registration and profile builder plugins for WordPress, and RegistrationMagic has honestly been one of the most flexible options I’ve used so far. What I liked most is that it’s not just a simple form builder. You can create advanced registration workflows, custom user fields, multi-step forms, email notifications, user management, and even payment-enabled forms without needing multiple extra plugins. The interface takes a little time to fully explore because there are many features, but once you understand the layout it becomes very powerful. I especially appreciated: Easy custom field managementUser registration + login integrationGood control over form styling and behaviorAbility to manage submissions from dashboardWorks nicely with custom user rolesUseful free features compared to many competitors I also had a small compatibility issue during setup and the support team responded faster than expected. They actually looked into the issue instead of sending generic replies, which is becoming rare these days. No plugin is perfect, and there is a slight learning curve if you are completely new, but overall this plugin saved me a lot of development time and removed the need for several separate plugins. If your website needs advanced user registration or member signup forms, RegistrationMagic is definitely worth trying. 5 stars from me.

    Read on wp.org ↗
  3. michelemac
    4mo ago

    Within a few days they fixed the problem and updated the plugin.

    Read on wp.org ↗
  4. sandfly1
    5mo ago

    I had issues with my form populating into the WordPress user profile. I submitted a ticket and support got it working for me.

    Read on wp.org ↗
  5. Anonymous
    6mo ago

    Thanks to support staff very efficently have solved a strange problem about personal setup

    Read on wp.org ↗
  6. lilacgoose01
    1.2y ago

    I tried numerous other plug-ins in an attempt to complete my project, yet all failed me BUT this one.This plug-in will add a robust registration feature to your website. While many other plug-ins only look good during their advertisement, this one really provides what it said. Most importantly, the documentations actually help. I also love the fact that you can modify and customize anything on the form you make. Features matter but so as theme-matching visuals!I believe it always depends on the situation, but I was able to receive support very quickly when I needed it. The support rep follows your question/request thoroughly and the premium plan is definitely worth every buck and penny you pay. Go ahead and install it on your WordPress website and try it out! Literally, it’s magic. This topic was modified 1 year, 1 month ago by lilacgoose01.

    Read on wp.org ↗
  7. robertodimaio
    1.3y ago

    I used the Registration Magic premium plugin for several years until it started giving me problems with the e-commerce module, causing sudden blocks in loading pages and a saturation of requests to the server. I contacted support, they responded promptly but denied there was a problem. Unable to wait for further responses, I replaced Registration Magic with another plugin and was pleasantly surprised that the site is much faster than before.

    Read on wp.org ↗
  8. eelcobruinsma
    1.4y ago

    With the RegistrationMagic plugin I was able to adapt to a diverse set of scenarios and wishes from clients, one being myself. The plugin allows for a very granular configuration of forms. I only briefly needed the membership functionality, but that worked too, so if I need it again, I don’t have to look elsewhere. Managing the forms and moderating the submissions requires some insight in where things are, but after having familiarized yourself with the interface, its many facets, and the possibilities of RM, you’re good to go. RM forms can be easily integrated in the design of a site without standing out as something foreign. Support, in my experience, is splendid and personal.

    Read on wp.org ↗

Latest updates

via wp.org changelog

Recent releases and news for this plugin

  1. Version 6.0.9.6 Security patches. Minor UI improvements & bug fixes. 6.0.9.6
  2. Version 6.0.9.5 Fixed: Required fields not accepting “0” as input. Security: Fixed unauthenticated payment bypass vulnerability. Credit: Thanks to Pedro Pinho for responsibly reporting the security vulnerability. 6.0.9.5
  3. Version 6.0.9.4 New: Included option to add form field data to new submission email subject. Fixed: Required attribute not working for T&C field when scrolling is mandatory. Security: Fixed an IDOR vulnerability. Security: Fixed an auth 6.0.9.4
  4. Version 6.0.9.3 Minor design adjustments. 6.0.9.3
  5. Version 6.0.9.2 Security patches. Minor UI improvements & bug fixes. 6.0.9.2
  6. Version 6.0.9.1 Minor UI improvements. 6.0.9.1

Known vulnerabilities

via Wordfence Intelligence

55 disclosed vulnerabilities on record for this plugin, all fixed in the current version. Sites on older versions stay exposed until they update.

  1. 2026-08-18 CVE-2026-73341 Deserialization of Untrusted Data Affects <= 6.0.9.7 Patched in 6.0.9.8
  2. 2026-07-30 CVE-2026-15257 Missing Authorization Affects < 6.0.9.4 Patched in 6.0.9.4
  3. 2026-07-30 CVE-2026-15255 Authorization Bypass Through User-Controlled Key Affects < 6.0.9.4 Patched in 6.0.9.4
  4. 2026-07-20 CVE-2026-15208 Client-Side Enforcement of Server-Side Security Affects <= 6.0.9.4 Patched in 6.0.9.5
  5. 2026-06-30 CVE-2026-12158 Cross-Site Request Forgery (CSRF) Affects <= 6.0.9.1 Patched in 6.0.9.2
  6. 2026-06-26 CVE-2026-9242 Insufficient Verification of Data Authenticity Affects <= 6.0.8.6 Patched in 6.0.8.7
  7. 2026-06-04 CVE-2026-49764 Missing Authorization Affects <= 6.0.8.6 Patched in 6.0.8.7
  8. 2026-03-20 CVE-2026-32498 Missing Authorization Affects <= 6.0.7.6 Patched in 6.0.7.7
  9. 2026-03-12 CVE-2026-24373 Improper Authentication Affects <= 6.0.7.1 Patched in 6.0.7.2
  10. 2026-02-18 CVE-2026-32385 Missing Authorization Affects <= 6.0.7.6 Patched in 6.0.7.7
  11. 2026-02-17 CVE-2025-14444 Insufficient Verification of Data Authenticity Affects <= 6.0.6.9 Patched in 6.0.7.0
  12. 2026-02-16 CVE-2026-0929 Missing Authorization Affects < 6.0.7.2 Patched in 6.0.7.2
  13. 2026-01-27 CVE-2026-1054 Missing Authorization Affects <= 6.0.7.4 Patched in 6.0.7.5
  14. 2026-01-23 CVE-2025-15520 Exposure of Sensitive Information to an Unauthorized Actor Affects <= 6.0.7.1 Patched in 6.0.7.2
  15. 2026-01-16 CVE-2025-15403 Improper Privilege Management Affects <= 6.0.7.1 Patched in 6.0.7.2
  16. 2026-01-10 CVE-2026-24374 Cross-Site Request Forgery (CSRF) Affects <= 6.0.6.9 Patched in 6.0.7.0
  17. 2025-12-15 CVE-2025-13610 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 6.0.6.7 Patched in 6.0.6.8
  18. 2025-10-07 CVE-2025-11204 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects <= 6.0.6.2 Patched in 6.0.6.3
  19. 2025-04-02 CVE-2025-2836 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 6.0.4.3 Patched in 6.0.4.4
  20. 2025-03-03 CVE-2024-9390 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 6.0.2 Patched in 6.0.2.1
  21. 2025-01-28 CVE-2025-24686 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 6.0.3.3 Patched in 6.0.3.4
  22. 2024-11-08 CVE-2024-10508 Improper Handling of Missing Values Affects <= 6.0.2.6 Patched in 6.0.2.7
  23. 2024-08-16 CVE-2024-43317 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 6.0.1.0 Patched in 6.0.1.1
  24. 2024-08-01 CVE-2024-39643 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 6.0.0.1 Patched in 6.0.0.2
  25. 2024-04-30 CVE-2024-33947 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 5.3.2.0 Patched in 5.3.2.1
  26. 2024-03-26 CVE-2024-1990 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects <= 5.3.1.0 Patched in 5.3.2.0
  27. 2024-03-26 CVE-2024-2951 Cross-Site Request Forgery (CSRF) Affects <= 5.3.0.0 Patched in 5.3.1.0
  28. 2024-03-16 CVE-2024-29113 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 5.2.5.9 Patched in 5.2.6.0
  29. 2024-03-14 CVE-2024-1991 Missing Authorization Affects <= 5.3.0.0 Patched in 5.3.1.0
  30. 2024-02-20 CVE-2024-25935 Cross-Site Request Forgery (CSRF) Affects <= 5.2.5.9 Patched in 5.2.6.0
  31. 2023-12-27 CVE-2023-51543 Protection Mechanism Failure Affects <= 5.2.5.0 Patched in 5.2.5.1
  32. 2023-12-27 CVE-2023-51544 Protection Mechanism Failure Affects <= 5.2.5.0 Patched in 5.2.5.1
  33. 2023-12-21 CVE-2023-50846 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects < 5.2.4.6 Patched in 5.2.4.6
  34. 2023-12-05 CVE-2023-49831 Missing Authorization Affects <= 5.2.3.0 Patched in 5.2.3.1
  35. 2023-11-27 CVE-2023-47645 Cross-Site Request Forgery (CSRF) Affects <= 5.2.2.6 Patched in 5.2.3.0
  36. 2023-10-07 CVE-2023-51509 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects < 5.2.4.2 Patched in 5.2.4.2
  37. 2023-05-15 CVE-2023-2499 Authentication Bypass Using an Alternate Path or Channel Affects <= 5.2.1.0 Patched in 5.2.1.1
  38. 2023-05-12 CVE-2023-2548 Authorization Bypass Through User-Controlled Key Affects <= 5.2.0.5 Patched in 5.2.1.0
  39. 2023-02-17 CVE-2023-25991 Cross-Site Request Forgery (CSRF) Affects <= 5.1.9.2 Patched in 5.1.9.3
  40. 2023-01-20 CVE-2023-23989 Missing Authorization Affects <= 5.1.9.2 Patched in 5.1.9.3
  41. 2023-01-20 CVE-2023-23976 Improper Authorization Affects <= 5.1.9.2 Patched in 5.1.9.3
  42. 2022-02-07 CVE-2022-0420 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects < 5.0.2.2 Patched in 5.0.2.2
  43. 2022-01-23 CVE-2021-24862 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects <= 5.0.1.5 Patched in 5.0.1.6
  44. 2021-12-28 CVE-2021-24648 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 5.0.1.8 Patched in 5.0.1.9
  45. 2021-12-08 CVE-2021-4073 Improper Authentication Affects <= 5.0.1.7 Patched in 5.0.1.8
  46. 2020-03-05 CVE-2020-9454 Cross-Site Request Forgery (CSRF) Affects < 4.6.0.4 Patched in 4.6.0.4
  47. 2020-03-05 CVE-2020-9456 Missing Authorization Affects < 4.6.0.4 Patched in 4.6.0.4
  48. 2020-03-05 CVE-2020-9458 Missing Authorization Affects < 4.6.0.4 Patched in 4.6.0.4
  49. 2020-03-05 CVE-2020-9455 Missing Authorization Affects <= 4.6.0.3 Patched in 4.6.0.4
  50. 2020-03-05 CVE-2020-9457 Missing Authorization Affects <= 4.6.0.3 Patched in 4.6.0.4
  51. 2020-02-13 CVE-2020-8435 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects < 4.6.0.3 Patched in 4.6.0.3
  52. 2020-01-30 CVE-2020-8436 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 4.6.0.1 Patched in 4.6.0.3
  53. 2017-12-10 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 3.7.9.2 Patched in 3.8.0.9
  54. 2017-12-10 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects <= 3.8.0.4 Patched in 3.8.0.9
  55. 2017-10-02 CVE-2017-20208 Deserialization of Untrusted Data Affects < 3.7.9.3 Patched in 3.7.9.3

Vulnerability records provided by Wordfence Intelligence. Copyright 2012-2026 Defiant Inc. License and terms.

CVE records: Copyright 1999-2026 The MITRE Corporation. CVE terms of use.

Behavioral tests

via WP Hive

Automated install-time checks, tested on PHP 8.1.12 · WP 7.0.1

Low memory footprint
Low page-speed impact
Runs on latest PHP + WP
No PHP errors
No JS errors
Activates cleanly
No resource errors
No external HTTP errors
Optimized database use
Frequently updated

Languages

via translate.wordpress.org

Translated into 22 languages, 1 at 90% or more

Lao 97%
Dutch 86%
Spanish (Mexico) 79%
German 75%
Dutch (Belgium) 74%
Italian 53%
Swedish 50%
Spanish (Spain) 48%
Polish 44%
Japanese 36%
Ukrainian 34%
Czech 33%
Russian 25%
Galician 24%
Arabic 21%
Marathi 13%
Dutch (Formal) 10%
Norwegian (Bokmål) 10%
French (France) 6%
Bengali 5%
Romanian 2%
Spanish (Colombia) 1%

Growth timeline

Install-tier crossings we have observed, and how long each tier took to outgrow

  1. 2026-05-08 9K+ → 8K+ down after 144 days in tier
  2. 2025-12-15 10K+ → 9K+ down after 1 days in tier
  3. 2025-12-14 9K+ → 10K+ up after 1 days in tier
  4. 2025-12-13 10K+ → 9K+ down

Competes with

The plugins that solve the same job, ranked by shared tags then reach, closest match first. The letter on the right is each plugin's health grade (A best, F worst).

Compare head to head →

Embed this report card

Drop a live Pulse card for RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login into a readme, a review or a deck. It updates itself.

<iframe src="https://plugins.wpmayor.com/embed/custom-registration-form-builder-with-submission-manager" width="480" height="300" style="border:0" loading="lazy" title="RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login — Plugin Pulse"></iframe>
Preview card ↗

RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login: 8K+ active installs, 4.5★ (459 reviews). Plugin Pulse (WP Mayor), as of 2026-08-29. https://plugins.wpmayor.com/plugin/custom-registration-form-builder-with-submission-manager