Simple Membership
by wp.insider · Membership
Also makes 11 other plugins · 73.3K+ installs across the portfolio →
Simple membership plugin adds membership functionality to your site. Protect members only content using content protection easily.
95 health vs 69 average across 180 Membership plugins
Directory ranking optimization
How it's scored →How well this listing is tuned to rank in WordPress.org search, on the factors an owner controls. Not popularity, optimization.
Excellent listing optimization
Well tuned across the board
Daily downloads
Since 2022-10-05 · 1,421 days · wp.org + Plugin Pulse archive
30-day downloads
Rolling 30-day volume · peaks are release surges
52.7K
now · peak 110.4K
Directory rank vs rivals
wp.org popularity rank over time · higher is better · when a rival's line climbs above yours, they've overtaken you
Rating trend
Star average over time · dips mark rough releases
Update activity
How busy the existing users are, measured as downloads in the last 30 days for every 1,000 active sites. A spike means a new release everyone's pulling; a long, slow decline means an aging user base that updates less.
Release cadence
Actively maintainedHow often this plugin actually ships. A steady rhythm is the maintenance signal a single "last updated" date can't show.
12
releases in the last 12 months
2mo ago
latest release · v4.7.7
106
tagged releases on record
Recent releases
What its installed base runs
via wordpress.orgShare of active installs on each version of this plugin. Green is the current release; a big slice on older versions is a user base that has stopped updating.
Estimated active installs
The public count shows “40K+”. Our estimate pins where the real number sits.
Refined from the date this plugin crossed into its current band.
Install history · since 2015-03-10 · 1,496 observations
Estimated value
What this plugin might earn a year, and what it might sell for. Modeled from public signals; we don't see anyone's books.
Est. annual revenue
Est. acquisition value
No paid tier is visible, so we don't put a figure on revenue or sale value: that would be guessing. The install base is a real asset to an acquirer, just not one public data lets us price.
Details
Recent reviews
All reviews on wp.org ↗- ★★★★★ johnthomasin2mo ago
Working on this plugin was an absolute blast. It’s truly an awesome Membership plugin!
Read on wp.org ↗ - ★★★★★ heikkiheer2mo ago
Does what you want and way more!
Read on wp.org ↗ - ★★★★★ jackhb19592mo ago
I am a newbie, and it was easy enough to use.
Read on wp.org ↗ - ★★★★★ akashandnila2mo ago
This plugin has lots of features in the free version. The documentation is superb. And if you need more, there are paid add-ons. “Simple” does not mean low quality or few features. It is really a professional level plugin.
Read on wp.org ↗ - ★★★★★ ddaneskovic3mo ago
It helps a lot for different memberships.
Read on wp.org ↗ - ★★★★★ mlcmike3mo ago
so far it works very well thanks
Read on wp.org ↗ - ★★★★★ Markku Holopainen5mo ago
I have tested various plugins for creating and controlling members in various levels. This is the only plugin which I trust totally. It is very easy to create user groups/levels and users in different levels which have access to the different pages. This plugin really prevents lower level users to access the higher level pages. Thank you for an excellent product.
Read on wp.org ↗ - ★★★★★ ramsok20205mo ago
Questo plugin è la soluzione perfetta per chi vuole realizzare l’accesso a vari livelli di abbonamento (gratuito ma con registrazione delle credenziali, oppure a pagamento) per i propri utenti: chiaro e semplice da configurare, ma davvero potente e ben funzionante.
Read on wp.org ↗
Latest updates
via wp.org changelogRecent releases and news for this plugin
- — Version 4.7.8 Added validation of the ‘subscr_ref’ parameter in the PayPal standard IPN handling code. Thank you to Charles Vosburgh for reporting this. Added sanitization to the PayPal payment notification handling code. Thanks to Ya 4.7.8
- — Version 4.7.7 Removed the obsolete PayPal Smart Checkout related code to clean up the codebase. The PayPal Standard IPN data validation now also validates the merchant/receiver email. Thank you to Muni Nitish Kumar for reporting this. 4.7.7
- — Version 4.7.6 Important Note: A Stripe webhook signing secret is now required to process Stripe subscription webhook events. This provides an additional layer of security. If you are using Stripe subscription payment buttons, please m 4.7.6
- — Version 4.7.5 Fixed an issue with the bulk account activation notification email. Stripe subscription webhook: fixed a security issue. 4.7.5
- — Version 4.7.4 Fixed a bug related to the annual expiry date settings. Login event timestamps are now recorded according to the WordPress site’s timezone settings. Added an admin notice that displays when a Stripe webhook is received f 4.7.4
- — Version 4.7.3 Added a new action hook ‘swpm_ipn_account_upgrade_event’ that is triggered when an account upgrade event is processed in the IPN handler. Added a new action hook ‘swpm_ipn_account_renewal_event’ that is triggered when an 4.7.3
Known vulnerabilities
via Wordfence Intelligence32 disclosed vulnerabilities on record for this plugin, all fixed in the current version. Sites on older versions stay exposed until they update.
- Medium · 5.3 Simple Membership <= 4.7.8 - Missing Authorization ↗
- Medium · 5.3 Simple Membership <= 4.7.7 - Missing Authorization ↗
- 2026-07-24 CVE-2026-15931 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 4.7.7 Patched in 4.7.8
- 2026-07-13 CVE-2026-14936 Insufficient Verification of Data Authenticity Affects <= 4.7.6 Patched in 4.7.7
- 2026-05-03 CVE-2026-42663 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 4.7.2 Patched in 4.7.3
- Medium · 5.3 Simple Membership <= 4.7.1 - Missing Authorization ↗
- Medium · 4.3 Simple Membership <= 4.6.9 - Missing Authorization ↗
- Medium · 4.4 Simple Membership <= 4.6.3 - Authenticated (Administrator+) Stored Cross-Site Scripting ↗2025-06-05 CVE-2025-49333 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 4.6.3 Patched in 4.6.4
- Medium · 5.3 Simple Membership <= 4.5.5 - Exposure of Private Personal Information to an Unauthorized Actor ↗2024-11-20 CVE-2024-11088 Exposure of Sensitive Information to an Unauthorized Actor Affects <= 4.5.5 Patched in 4.5.6
- 2024-10-21 CVE-2024-49682 URL Redirection to Untrusted Site ('Open Redirect') Affects <= 4.5.3 Patched in 4.5.4
- Medium · 6.4 Simple Membership <= 4.4.5 - Authenticated(Contributor+) Stored Cross-Site Scripting via Shortcode ↗2024-05-03 CVE-2024-4383 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 4.4.5 Patched in 4.4.6
- Medium · 5.4 Simple Membership <= 4.4.3 - Authenticated(Contributor+) Stored Cross-Site Scripting via Shortcode ↗2024-04-24 CVE-2024-3730 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 4.4.3 Patched in 4.4.4
- 2024-03-05 CVE-2024-1985 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 4.4.2 Patched in 4.4.3
- Medium · 6.1 Simple Membership <= 4.4.1 - Open Redirect ↗2024-01-19 CVE-2024-22308 URL Redirection to Untrusted Site ('Open Redirect') Affects <= 4.4.1 Patched in 4.4.2
- 2023-12-19 CVE-2023-50376 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects < 4.3.9 Patched in 4.3.9
- Medium · 6.1 Simple Membership <= 4.3.8 - Reflected Cross-Site Scripting Vulnerability via environment_mode ↗2023-12-18 CVE-2023-6882 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 4.3.8 Patched in 4.3.9
- 2023-09-05 CVE-2023-4719 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 4.3.5 Patched in 4.3.6
- Medium · 6.4 Simple Membership <= 4.2.1 - Authenticated (Contributor+) Cross Site Scripting via shortcode ↗2022-12-21 CVE-2022-4469 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 4.2.1 Patched in 4.2.2
- 2022-05-23 CVE-2022-1724 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 4.1.0 Patched in 4.1.1
- 2021-04-05 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects <= 4.0.3 Patched in 4.0.4
- Medium · 6.1 Simple Membership <= 3.5.6 - Cross-Site Scripting ↗2017-11-08 CVE-2017-18499 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects < 3.5.7 Patched in 3.5.7
- 2016-07-14 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects < 3.2.9 Patched in 3.2.9
Vulnerability records provided by Wordfence Intelligence. Copyright 2012-2026 Defiant Inc. License and terms.
CVE records: Copyright 1999-2026 The MITRE Corporation. CVE terms of use.
Behavioral tests
via WP HiveAutomated install-time checks, tested on PHP 8.1.12 · WP 7.0
Languages
via translate.wordpress.orgTranslated into 52 languages, 3 at 90% or more
Plus 28 more locales with partial translations.
Growth timeline
Install-tier crossings we have observed, and how long each tier took to outgrow
- 2024-10-26 50K+ → 40K+ down after 1 days in tier
- 2024-10-25 40K+ → 50K+ up after 1 days in tier
- 2024-10-24 50K+ → 40K+ down after 2 days in tier
- 2024-10-22 40K+ → 50K+ up after 1 days in tier
- 2024-10-21 50K+ → 40K+ down after 1 days in tier
- 2024-10-20 40K+ → 50K+ up after 2 days in tier
- 2024-10-18 50K+ → 40K+ down after 1 days in tier
- 2024-10-17 40K+ → 50K+ up after 1 days in tier
Competes with
The plugins that solve the same job, ranked by shared tags then reach, closest match first. The letter on the right is each plugin's health grade (A best, F worst).
- S Simple Membership Menu 60+ installs · 3.9★ · 5 shared tags D
- S Simple Membership After Login Redirection 10K+ installs · 4.4★ · 3 shared tags A
- S Simple Membership Form Shortcode 2K+ installs · 4.1★ · 3 shared tags B
-
My Members Only – Membership for WordPress 100+ installs · 4.0★ · 3 shared tags D -
Content Locker for Elementor 30+ installs · 3.6★ · 3 shared tags B - M Membership Lock 10+ installs · 3.6★ · 3 shared tags D
Embed this report card
Drop a live Pulse card for Simple Membership into a readme, a review or a deck. It updates itself.
<iframe src="https://plugins.wpmayor.com/embed/simple-membership" width="480" height="300" style="border:0" loading="lazy" title="Simple Membership — Plugin Pulse"></iframe> Simple Membership: 40K+ active installs, 4.6★ (475 reviews). Plugin Pulse (WP Mayor), as of 2026-08-25. https://plugins.wpmayor.com/plugin/simple-membership