Simple Security
by ChrisHurst · Admin & Utilities
Also makes 14 other plugins · 1.6K+ installs across the portfolio →
Access Log to track Logins and Failed Login Attempts
47 health vs 54 average across 3,793 Admin & Utilities plugins
High removal-risk signals
63/100Maintenance and integrity signals that tend to precede a WordPress.org removal. Not an official status, a heads-up to act.
- Long abandoned. No update in 11+ years — the top precursor to removal once a vulnerability is found.
- Compatibility drift. Tested only up to WordPress 4.1.42, well behind 6.8.
Directory ranking optimization
How it's scored →How well this listing is tuned to rank in WordPress.org search, on the factors an owner controls. Not popularity, optimization.
Under-optimized
Biggest win: Update recency
To rank higher: Last updated 4200 days ago — ship an update; wp.org decays a listing's search weight after ~180 days.
Get the full rank-higher report →Daily downloads
Since 2022-10-05 · 1,426 days · wp.org + Plugin Pulse archive
30-day downloads
Rolling 30-day volume · peaks are release surges
69
now · peak 84
Directory rank vs rivals
wp.org popularity rank over time · higher is better · when a rival's line climbs above yours, they've overtaken you
Update activity
How busy the existing users are, measured as downloads in the last 30 days for every 1,000 active sites. A spike means a new release everyone's pulling; a long, slow decline means an aging user base that updates less.
Release cadence
No release in a yearHow often this plugin actually ships. A steady rhythm is the maintenance signal a single "last updated" date can't show.
0
releases in the last 12 months
11.5y ago
latest release · v1.1.6
11
tagged releases on record
Recent releases
What its installed base runs
via wordpress.orgShare of active installs on each version of this plugin · 100% run the current release. Green is the current release; a big slice on older versions is a user base that has stopped updating.
Estimated active installs
The public count shows “80+”. Our estimate pins where the real number sits.
Refined from the date this plugin crossed into its current band.
Install history · since 2015-10-23 · 1,384 observations
Estimated value
What this plugin might earn a year, and what it might sell for. Modeled from public signals; we don't see anyone's books.
Est. annual revenue
Est. acquisition value
No paid tier is visible, so we don't put a figure on revenue or sale value: that would be guessing. The install base is a real asset to an acquirer, just not one public data lets us price. A small install base leaves thin data to model from.
Details
Recent reviews
All reviews on wp.org ↗- ★★★★★ blest111.3y ago
First, thank you for your most comprehensive and useful plugin. As Last Login is a sensitive information, would it be possible to restrict this information to only Administrators? Thank you!
Read on wp.org ↗ - ★★★★★ itsjustathought13.5y ago
A well-thoughtout and well-coded plugin.
Read on wp.org ↗ - ★★★★★ venture3713.7y ago
Simple but effective, plugin, happy I installed it. Only feature I’d like to see is the ability to remove IP addresses from the blacklist.
Read on wp.org ↗ - ★★★★★ ChrisHurst13.8y ago
OK, its a bit of a shameless plug I know, but I can honestly say that this software has already proven itself useful. Within the first five minutes of installing the plugin it automatically blocked two foreign IP addresses that were repeatedly attempting to login using admin credentials. I can finally sleep at night!
Read on wp.org ↗ - ★★★★★ YahMan6413.8y ago
Great plugin, works like a charm! Thumbs up!
Read on wp.org ↗
Known vulnerabilities
via Wordfence Intelligence1 disclosed vulnerability on record for this plugin, fixed in the current version. Sites on older versions stay exposed until they update.
- 2015-01-14 CVE-2014-9570 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 1.1.5 Patched in 1.1.6
Vulnerability records provided by Wordfence Intelligence. Copyright 2012-2026 Defiant Inc. License and terms.
CVE records: Copyright 1999-2026 The MITRE Corporation. CVE terms of use.
Behavioral tests
via WP HiveAutomated install-time checks, tested on PHP 7.2.16 · WP 5.3
Growth timeline
Install-tier crossings we have observed, and how long each tier took to outgrow
- 2026-06-27 90+ → 80+ down after 6 days in tier
- 2026-06-21 100+ → 90+ down after 6 days in tier
- 2026-06-15 80+ → 100+ up after 53 days in tier
- 2026-04-23 90+ → 80+ down after 324 days in tier
- 2025-06-03 100+ → 90+ down after 1 days in tier
- 2025-06-02 90+ → 100+ up after 29 days in tier
- 2025-05-04 100+ → 90+ down
Competes with
The plugins that solve the same job, ranked by shared tags then reach, closest match first. The letter on the right is each plugin's health grade (A best, F worst).
-
Loginizer 1M+ installs · 4.8★ · 2 shared tags A -
Admin Menu Editor 300K+ installs · 4.6★ · 2 shared tags A -
LWS Tools 10K+ installs · 4.3★ · 2 shared tags A
-
WPMasterToolKit (WPMTK) – All in one plugin 5K+ installs · 4.7★ · 2 shared tags A -
Wordfence Security – Firewall, Malware Scan, and Login Security 5M+ installs · 4.7★ · 1 shared tag A
-
Hostinger Tools 3M+ installs · 3.6★ · 1 shared tag B
Embed this report card
Drop a live Pulse card for Simple Security into a readme, a review or a deck. It updates itself.
<iframe src="https://plugins.wpmayor.com/embed/simple-security" width="480" height="300" style="border:0" loading="lazy" title="Simple Security — Plugin Pulse"></iframe> Simple Security: 80+ active installs, 5.0★ (5 reviews). Plugin Pulse (WP Mayor), as of 2026-08-31. https://plugins.wpmayor.com/plugin/simple-security