[wp-trac] [WordPress Trac] #30465: Dashboard alert if a plugin/theme was removed from WordPress repo

WordPress Trac noreply at wordpress.org
Tue Feb 24 07:15:05 UTC 2026


#30465: Dashboard alert if a plugin/theme was removed from WordPress repo
-------------------------------------------------+-------------------------
 Reporter:  sergej.mueller                       |       Owner:  (none)
     Type:  feature request                      |      Status:  reopened
 Priority:  normal                               |   Milestone:  Future
                                                 |  Release
Component:  Security                             |     Version:
 Severity:  normal                               |  Resolution:
 Keywords:  dev-feedback security has-patch      |     Focuses:
  changes-requested                              |
-------------------------------------------------+-------------------------

Comment (by zodiac1978):

 Replying to [comment:68 davidperez]:
 > We [...] agreed that providing information about the closed plugin would
 be a good enhancement.
 >
 > The problem we see is showing the cause of that closure. After 60 days,
 an author could discover the reason, and disclosing security issues could
 be problematic. We already do this on the website, so we don't think it
 will be an issue, but it will get much more visibility if we consider it.

 I'm not a native English speaker, so I am sorry to ask again for clarity:
 What does this mean for the path forward in this ticket?

 More visibility is IMHO exptected and necessary. Plugin developers should
 see this is as one more reason to update (or close) their plugins. This is
 a positive outcome.

 User could replace the plugin now and are better informed about risks
 coming from this plugin. This is what we want.

 So the main question is now: Is the plugin team weighing this as net
 positive or is the risk of disclosing a security issue in the backend too
 much for the team. Both sides are well know and already mentioned - so the
 remaining is, what is your stance on it?

-- 
Ticket URL: <https://core.trac.wordpress.org/ticket/30465#comment:69>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list