Here are WordPress Not Recommended Plugins. Keeping your WordPress website secure, fast, and reliable depends heavily on the plugins you install. While plugins can extend functionality, some are outdated, unsupported, vulnerable, or cause performance issues. Using such plugins can put your website at risk or negatively impact speed and stability.
At Hosted.com®, we encourage all customers to carefully review plugins before installing, updating, or activating them. We cannot be held liable for vulnerabilities or performance issues caused by third-party plugins.
TABLE OF CONTENTS
Top WordPress Not Recommended Plugins
Below is a list of plugins that are not recommended due to known vulnerabilities, poor performance, or duplication of existing WordPress or hosting functions.
Use Find (Ctrl+F) to quickly search for a plugin name.
| Plugin | Description | Comment |
| 6Scan Security | Abandoned or unsupported. | Duplicates WordPress core function. Last updated five years ago. |
| Broken Link Checker | Creates heavy database load. | Use an off-site tool instead. |
| Contextual Related Posts | Increases database queries. | Recommend off-site solution. |
| CopySafe PDF Protection | Vulnerable up to version 0.6. | Update to 0.7+. |
| CopySafe Web Protection | Vulnerable up to version 2.5. | Update to 2.6+. |
| Google XML Sitemaps | Performance issues up to v4.0. | Last updated two years ago. |
| InfiniteWP Client | Vulnerable up to v1.6.3.1. | Requires patching. |
| MailPoet | Vulnerable up to v2.6.6. | Update to latest. |
| Referrer WP | Reduces site performance. | Not tested in seven years. Use off-site solution. |
| SEO Auto Links & Related Posts | Outdated, reduces performance. | Last updated seven years ago. |
| SG Optimizer | Versions ≤5.0.12 vulnerable. | Adds no value on Hosted.com® servers. |
| Similar Posts | Heavy database queries. | Impacts caching. |
| Slimstat Analytics | Can reduce site speed. | Use external analytics. |
| Synthesis | No added value. | Not recommended. |
| Updraft | Deprecated. | Use UpdraftPlus. |
| W3 Total Cache | Duplicates hosting-level caching. | Unnecessary on Hosted.com®. |
| WordPress Beta Tester | Disabled by Hosted.com®. | Security reasons. |
| WordPress Gzip Compression | Duplicate system function. | Last updated five years ago. |
| WordPress Popular Posts | High database load. | Use off-site solution. |
| WP Database Backup | Vulnerable up to v5.1. | Update to v5.2+. |
| WP File Cache | Duplicate function. | Last updated nine years ago. |
| WP Live Chat Support | Vulnerable up to v8.0.33. | Update to v8.0.34+. |
| WP Super Cache | Duplicate function. | Adds no value. |
| WP-PostViews | High database queries. | Use off-site solution. |
| Yet Another Related Posts Plugin (YARPP) | Heavy DB load. | Recommend off-site service. |

Obsolete Plugins
These plugins are no longer available, abandoned, or unsupported, and must not be used:
- Clef: Abandoned in 2017.
- Adminer: Duplicates WordPress functionality.
- Google AdSense Click-Fraud Monitoring Plugin: Performance issues.
- StatPress: Vulnerable up to v1.2.9.1. Use NewStatPress.
- ToolsPack: Flagged as malware.
- Portable phpMyAdmin: Multiple vulnerabilities.
- EZPZ One Click Backup: Abandoned.
- Fuzzy SEO Booster: Closed due to poor queries and caching.
- Pipdig Power Pack: Security issues up to v4.7.3.
- WP-phpMyAdmin: Unsupported for 12 years.
(For a full list of incompatible or closed plugins, refer to the WordPress.org Plugin Repository.)
IMPORTANT
- Always research plugin reputation, version history, and compatibility.
- Regularly audit your installed plugins and remove any you don’t use.
- Rely on trusted plugin developers with active support.
Why Certain Plugins Are a Risk
- Security Vulnerabilities: Some plugins have unpatched exploits that hackers can target.
- Performance Issues: Poorly coded plugins may overload your MySQL database or slow caching.
- Duplication of Hosting Functions: Hosted.com® already provides server-level caching, gzip compression, and other optimisations. Adding duplicate plugins can cause conflicts.
- Abandonment: Plugins that are no longer supported will not receive security or compatibility updates.
Additional Information
- Use external services for Analytics, Broken Link Checking, and Related Posts.
- Update all plugins to the latest stable version.
- Remove unused plugins completely (don’t just deactivate).
- Limit plugin count to only what’s necessary.
- Use trusted alternatives such as:
- Yoast SEO (instead of Google XML Sitemaps).
- MonsterInsights / Google Analytics (instead of Slimstat Analytics).
- UpdraftPlus (instead of Updraft).



