BLACK FRIDAY
Save 59% on PageForge Annual $191/year $485/year
Claim 59% Off →
Dango System Utilities icon
Actively maintained Tested with WP 7.1

Dango System Utilities

Admin utility toolkit: diagnostics, cron manager, WooCommerce tools, search analytics, CAPTCHA, and plugin-only data purging.

Active installs<10New
Downloads · 30d182• 0% vs prev. 30d
Rating—0 reviews
Health score64/100Good
All-time downloads179Since Sep 2026
Support resolved—No recent threads
RequiresWP 6.0PHP 7.4+
Downloads · 7d33▼ -45% week over week
Our verdict

Solid choice

Dango System Utilities is a solid plugin choice in 2026, with a few things worth checking first. Was last updated 2 weeks ago, and scores 64/100 on our health check.

  • Actively developed — last update 2 weeks ago
  • Tested with the latest WordPress (7.1)
  • Small user base (<10 active installs)
  • Very few reviews so far

How does it stack up?

Side-by-side on installs, updates, ratings & support

Daily downloads

91827Sep 8Sep 21Oct 5
Yesterday2
Daily average (1y)7
Peak day36Sep 25, 2026
Last 12 months182

Download spikes usually follow a new release — each site that auto-updates counts as a download.

Rankings

Where Dango System Utilities stands today

WordPress.org search rankings

Live position in the plugin search, top 100
KeywordPositionCompeting pluginsCategory
admin >100 10,000 Best admin plugins →
cron >100 4,385 Best cron plugins →
diagnostics >100 2,144 Best diagnostics plugins →
search analytics >100 3,969 Best search analytics plugins →
woocommerce >100 10,000 Best woocommerce plugins →

About Dango System Utilities

From the official readme · v2.6.0

Description

Dango System Utilities is an admin-focused utility toolkit by DANGO. All modules are off by default on first install — enable only the features you need from the central settings page.

Every module listed below is complete and fully functional. Nothing here is time-limited, usage-limited, or unlocked by a key, and this plugin contains no licensing code of any kind.

Included modules:

  • Diagnostics — environment benchmarking against WordPress and WooCommerce recommendations, a top-10 autoloaded options analyzer, a database table and storage inspector, a one-click cache flush and an email delivery test.
  • Cron Manager — inspect, run, pause and delete scheduled events, and register custom schedules.
  • WooCommerce Utilities — password policy rules and presets, international phone sanitization and E.164 validation, auto-updating cart quantities, a one-click empty cart button, auto-completion of virtual and downloadable orders, and weight-based shipping bands.
  • Order Analytics — revenue, pipeline, rejection rate, average order value, order status distribution, top products, and channel and city performance showing orders received versus delivered per traffic source and per destination city. Computed with single-query SQL aggregation on both High-Performance Order Storage and legacy order tables.
  • Search Analytics — admin-only recording of visitor search terms, top searches, zero-result keywords, CSV export, and a one-click import from Search Meter. The report says plainly what is and is not counted, and a “Check again now” button re-runs every zero-result term against your site as it is today.
  • CAPTCHA — Cloudflare Turnstile on the login, registration, lost-password and comment forms, with a light/dark/auto widget theme.
  • Performance — Heartbeat API throttling, post revision capping, removal of asset query strings, switches to disable core emoji and oEmbed scripts, and switches to drop jQuery Migrate on the front end and the Dashicons font for logged-out visitors.
  • Security — switches to disable XML-RPC, the theme and plugin file editor, WordPress version fingerprints, pingbacks and trackbacks (which also stops the outbound request WordPress makes to every URL you link to), and application passwords — the API login route that bypasses the login form and anything protecting it.
  • Plugin-only Data Purging — manual purge buttons and an optional weekly maintenance task.
  • Background Jobs — one panel listing every scheduled job, what it did last time, when it runs next, and a button to run it now instead of waiting.
  • Extra Lightweight Tools — admin notice manager, failed login alerts, maintenance mode, security headers, an email attempt log, and a plugin/theme inventory CSV export.

Every setting carries a help bubble giving what it does, the WordPress default, what is recommended, and what you give up by enabling it. The Overview tab lists the recommended settings not currently in place and can apply them in one click; nothing is changed until you press the button, and every change is named first.

Search Analytics is admin-only. This plugin does not include public recent-search widgets, public popular-search widgets, Gutenberg public search blocks, or frontend template tags.

Data purging is plugin-only. Manual purge buttons run on demand, and an optional weekly automatic maintenance task prunes only this plugin’s own aged data past its retention window. Weekly maintenance is enabled by default and can be turned off. The plugin never deletes unrelated WordPress, WooCommerce, or third-party plugin data.

External services

This plugin does not contact any external service on its own. On a default install, nothing leaves your site.

The only outbound connection it can make is to Cloudflare Turnstile, and only after you enable the CAPTCHA module and save your own API keys. If you never enable CAPTCHA, this plugin makes no external request at all.

Cloudflare Turnstile

What it is and what it is used for: Cloudflare Turnstile is a bot-detection service operated by Cloudflare, Inc. It is used solely to provide the CAPTCHA challenge on the forms you choose to protect. The challenge cannot be performed locally — issuing and verifying it is the service’s entire purpose, and the widget script must be served from Cloudflare’s own domain for the token to be valid.

What is sent and when:

  1. When a page containing a protected form is rendered (login, registration, lost password, or comments — whichever you have enabled), the plugin enqueues the Turnstile widget script from https://challenges.cloudflare.com/turnstile/v0/api.js. Loading that script means the visitor’s browser contacts Cloudflare directly, and Cloudflare receives the visitor’s IP address, browser user agent, and the address of the page containing the form.
  2. When that form is submitted, your server sends a single request to https://challenges.cloudflare.com/turnstile/v0/siteverify containing the Turnstile secret key you entered, the single-use challenge token generated by the visitor’s browser, and the visitor’s IP address. Nothing else is transmitted, and nothing is sent at any other time.

Terms and privacy:

  • Cloudflare Website Terms of Use: https://www.cloudflare.com/website-terms/
  • Cloudflare Privacy Policy: https://www.cloudflare.com/privacypolicy/

A separate paid add-on exists

DANGO also sells Dango System Utilities Pro, a separate plugin distributed from solutions.dango.pk. It is not required, is not bundled here, and no part of this plugin is disabled, limited, or reserved for it. Installing it adds further modules of its own; removing it leaves everything in this plugin working exactly as before.

It also extends some of the modules above. Order Analytics, for example, gains cross-dimensional reports the free plugin does not attempt: which traffic sources convert in which cities, and which convert on phones as against computers. It also adds scheduled jobs of its own — a broken link scanner that checks links to other sites and to your own pages, file integrity checks, cache warm-up, database cleanup, uptime checks and emailed reports — which appear in the Background Jobs panel and can be run on demand from there, and an admin activity log recording who changed plugins, themes, users, content and settings. The CAPTCHA module gains Google reCAPTCHA v3 as an alternative provider, WooCommerce account and checkout placements, and an IP allowlist. None of that code ships in this plugin, and the Cloudflare Turnstile protection included here is complete without it. If you install the add-on and later remove it, the CAPTCHA module falls back to Turnstile and keeps working.

Installation

  1. Upload the plugin files to the /wp-content/plugins/dango-system-utilities directory, or install the plugin through the WordPress plugins screen directly.
  2. Activate the plugin through the ‘Plugins’ screen in WordPress.
  3. Go to the Dango System Utilities settings page and enable the modules you want to use.

Frequently asked questions

Do I need to configure anything after activation?

No. All modules are disabled by default. Visit the Dango System Utilities settings page to turn on the modules you want.

Does this plugin phone home?

No. This plugin has no licensing code and never contacts DANGO. The only external connection it can make is to Cloudflare Turnstile, and only if you enable the CAPTCHA module and enter your own keys. See the External services section above.

Is any feature locked or limited?

No. Every module in this plugin is complete and fully functional. There is no key to enter, no trial period, and no usage cap.

Is a paid add-on available?

Yes. Dango System Utilities Pro is a separate plugin available from DANGO. You install it alongside this one — it never replaces or overwrites this plugin, and this plugin does not depend on it in any way.

Changelog

Traffic sources in Channel Performance now carry plain-English names, with the raw value WooCommerce recorded shown alongside.

2.6.0

  • New: Background Jobs, on the Tools tab and summarised on the Overview. Every scheduled job is listed with what it did last time, when it runs next, and a “Run now” button — so nothing has to wait for WP-Cron, and it is clear whether a job actually ran. A long job runs in short passes with a progress bar instead of hitting PHP’s time limit.
  • Fixed: help bubbles were drawn underneath the admin menu. The “?” sits beside the sidebar, the bubble was centred on it, and a duplicate style rule stacked it below the menu. Bubbles are now positioned against the screen, kept clear of the menu and admin bar, flip below the “?” when there is no room above, and open with a tap on touch screens.
  • Search Analytics: a “What is counted here” panel on the report. Searches made while logged in as an administrator are deliberately not counted — including the report’s own Test buttons — which is the usual reason a count seems not to move. The panel says so, along with the bot, term-length and page-cache rules.
  • Search Analytics: “Check again now” runs every term under Unsuccessful Searches against your site as a logged-out visitor would, and marks the ones that return results today. The recorded history is left untouched. The Results column is now labelled “Results (last search)”, which is what it always showed.
  • Search Analytics: weekly maintenance compared search dates against UTC rather than the site’s own date, so on sites far from UTC the retention window ran a day early or late.
  • New: remove jQuery Migrate on the front end. Admin screens keep it.
  • New: stop loading the Dashicons font for logged-out visitors. Stylesheets that declare it as a dependency still get it.
  • New: disable application passwords — long-lived API credentials that are checked without the login form, so CAPTCHA, lockouts and two-factor never see them.
  • The Add-ons tab now totals what this plugin includes and what the add-on adds, with counts per group.
  • The remaining confirmation prompts in the Cron Manager and data purging tools no longer use inline onclick handlers; they go through the plugin’s enqueued admin script like every other prompt.

2.5.8

  • Settings screens are grouped and boxed. Every module, including the ones the paid add-on contributes, now sits in its own card under a section heading, instead of running together as one unbroken column of fields — the Security tab in particular was a wall of inputs with nothing marking where one feature ended and the next began.
  • Every setting has help. The “?” bubble now covers all of them, not just some, and each says what the option does, what WordPress does by default, what we recommend, and what you give up by turning it on.
  • Options with a real consequence say so where you set them, in a coloured note: an SVG upload can carry script, a 2FA role list can lock out anyone whose email is broken, a maintenance page hides the site from search engines, a published WhatsApp number is public and messaging customers first is regulated, a Cloudflare token should be scoped rather than global.
  • Modules worth switching on for most sites carry a “Recommended” tag.
  • New on the Overview tab: a recommended-settings checklist that says which of them are not in place, what each one is for, and applies them in one click. Nothing is changed until the button is pressed, and every change is named first.
  • Roles and post types are chosen from a list of what the site actually has, rather than typed as comma-separated slugs. Getting a role name wrong is how people locked themselves out of 2FA.
  • Two-factor authentication is configured in one place. It appeared under both Security and Privacy & Users, the same field rendered twice, with nothing to say which was real.
  • Settings for a module you do not have installed are no longer rendered. On the Integrations and Privacy tabs, the section headings were conditional but the fields underneath them were not, so one installed integration displayed the settings for all ten.
  • Quick search now matches module names as well as field names, hides a section heading whose sections have all been filtered out, and says when nothing matched instead of showing a blank page.
  • The save button follows you down long tabs, and leaving a tab with unsaved edits now asks first.
  • New: disable pingbacks and trackbacks. Ends pingback spam and self-pings, and stops the site making an outbound HTTP request to every URL you link to — the behaviour that lets a WordPress site be used to attack someone else.
  • Channel Performance now separates paid advertising from free traffic out of the same place. An Instagram ad and a link in an Instagram bio were one row; they are now “Instagram Ads” and “Instagram”, counted separately, so ad spend is never reported as organic reach. Read from the campaign medium WooCommerce already stores (cpc, paid_social and the like) — a row is only called “Ads” when the data says so, and an ad whose link was never tagged with a medium is still counted as an ordinary tagged link rather than guessed at. The medium is printed under every name, and included in the add-on’s CSV export.
  • Channel Performance: a source reached two different ways no longer appears twice under one identical name. Instagram from a link and Instagram from a tagged campaign link are still counted separately, because merging free traffic into paid would misreport what advertising is doing, but the name now says which is which. Names that do not collide are untouched.
  • Search Analytics: “Last 7 days” and “Last 30 days” covered 8 and 31 days. Both the on-screen reports and the CSV exports had their own copy of the same off-by-one; they now share one definition and cover exactly the days they name.
  • Search Analytics: “Avg results / search” averaged one value per keyword per day, so a term searched five hundred times counted the same as one searched once. It is now weighted by how often each term was actually searched.
  • Search Analytics: the zero-result rate and the unsuccessful-searches table disagreed — a keyword that returned nothing last week but works today was counted as a failure by the rate and left out of the list of failures. Both now use the same definition.
  • Search Analytics: the recorded result count could only ever go up, and any secondary search on the page — a sidebar widget, a “related searches” block — was allowed to raise it. A page listing three results could end up recorded as forty. The count now comes only from the query whose results the visitor was looking at.

2.5.7

  • Traffic sources in Channel Performance are now named the way a person would say them. WooCommerce records whatever the browser reported, so the report used to read “Referral: Com.google.android.googlequicksearchbox” and “Organic: Google”; it now reads “Google App & Discover (Android)” and “Google Search”, covering search engines, social networks and their apps, messengers, AI assistants, email tools, marketplaces and payment-page returns.
  • The value WooCommerce actually recorded is printed under each name, along with how the visitor arrived, so every row can still be matched against WooCommerce’s own Origin column and nothing is hidden behind the friendlier wording.
  • Different spellings of one source — facebook.com, m.facebook.com and the Facebook Android app, for example — now count as a single row. Organic search is never merged with a campaign tag of the same name, so free traffic is never counted as paid.
  • Android apps are covered too — the Gmail, YouTube, Instagram, Facebook, Messenger, WhatsApp, Telegram, TikTok, X, Pinterest, Reddit, LinkedIn and Snapchat apps, the mobile browsers that report themselves as the referrer, and the link shims social platforms redirect through.
  • A source with no entry in the list is still shown, tidied but never dropped, so nothing goes missing from the report.
  • Naming is done while the report is drawn, from data already fetched: no extra queries, no lookups, nothing scheduled, nothing stored.
  • The add-on gains Channel by Device: the same orders split across phones, tablets and computers, so a source that completes on a computer but fails on a phone — usually a checkout problem rather than a traffic problem — is visible. Its CSV export covers it too.

2.5.6

  • City Performance now supersedes the weaker city table the paid add-on used to draw. That one read the billing address rather than the shipping one on a delivery report, silently dropped every order with no city set, listed “lahore” and “Lahore” as two places, and measured its lost rate against orders that had not settled yet. It has been removed rather than kept alongside.
  • The add-on now cross-references the two instead: which traffic sources actually convert in which cities, so a channel that looks healthy overall but fails in one city is visible. Pairings too small to read anything into are hidden.
  • The add-on’s CSV export now covers channel performance, city performance and the channel-by-city crossing.

2.5.5

  • Fixed Channel Performance reporting every order as “Unknown”. WooCommerce does not store the Origin string shown in the orders list — it composes it at display time from two separate meta values — so grouping on an origin key matched nothing. Channels are now grouped on the real attribution data and labelled the same way WooCommerce labels them. The Pro dashboard’s orders-origin widget had the identical bug and is fixed too.
  • Sources that differ only by capitalisation are now merged into one row instead of appearing as separate channels.
  • New: City Performance, alongside Channel Performance — orders received versus delivered per destination city, using the shipping city and falling back to billing. City spellings differing only by case or spacing are merged.
  • Search dates are now bucketed in your site’s timezone instead of UTC. “Today” previously began at UTC midnight, so on a UTC+5 store everything searched before 5am local was filed under the previous day.
  • The Search Report now shows “Searches Today” and “Searches Yesterday” as term lists with a count each, replacing the raw timestamped log. The full log remains available as a CSV export.

2.5.4

  • Fixed inflated search counts. A search was recorded for any search query running during an AJAX request, so a theme with live search suggestions logged one search per keystroke — typing a seven-letter word recorded seven searches. Only a real front-end search page view is counted now; REST, XML-RPC, cron, feed and robots requests are excluded too, and a secondary query can still correct a result count but can never create a search. Existing recorded data is unchanged.
  • Added a minimum search term length (default 2 characters) so one-letter fragments from type-ahead boxes are not recorded as searches.
  • Widened crawler detection to cover more SEO, AI and uptime-monitoring agents.
  • New: Channel Performance in Order Analytics — orders received versus actually delivered for each traffic source, with completion rate, lost and refunded counts, realized revenue and average order value. Reads WooCommerce’s own Order Attribution data; this plugin sets no cookie and stores no visitor data of its own for it. Completion rate is measured against settled orders, so recent timeframes are not penalised for orders still in progress.
  • The purge and cache tools now report what they removed instead of returning silently.
  • “Clear Cache” now removes every cache the plugin owns, including the hash-keyed order analytics caches that previously lingered until they expired on their own.
  • Uninstall now sweeps the plugin’s remaining transients, including orphaned timeout rows.

Full changelog on WordPress.org →

For developers

Is this your plugin? Show off the numbers.

Add a live badge to your site, docs or GitHub README. It updates on its own — no account needed.

Active installs badge Rating badge Health score badge

Best Dango System Utilities alternatives

All admin plugins →
Alternatives
Rank Plugin Active installs Rating Updated Health
1 Loginizer Loginizer Loginizer is a WordPress security plugin which helps you fight against bruteforce attacks. by Softaculous 1M+ ★★★★★★★★★★ 4.8 (1K) 1 week ago 90
2 Redux Framework Redux Framework Redux is a simple, truly extensible, and fully responsive options framework for WordPress… by David Anderson / Team Updraft 900K+ ★★★★★★★★★★ 4.4 (273) 2 weeks ago 95
3 Admin Menu Editor Admin Menu Editor Lets you edit the WordPress admin menu. You can re-order, hide or rename menus, add custom… by Janis Elsts 300K+ ★★★★★★★★★★ 4.6 (312) 2 months ago 84
4 White Label CMS White Label CMS Customise dashboard panels and branding, hide menus plus lots more. by Video User Manuals 200K+ ★★★★★★★★★★ 4.7 (114) 3 months ago 71
5 Advanced Custom Fields: Extended Advanced Custom Fields: Extended All-in-one enhancement suite that improves WordPress & Advanced Custom Fields. by Konrad Chmielewski 100K+ ★★★★★★★★★★ 4.8 (132) 1 month ago 76
6 Nested Pages Nested Pages Nested Pages provides a drag and drop interface for managing pages & posts in the WordPress… by Hook & Filter 90K+ ★★★★★★★★★★ 4.7 (126) 2 weeks ago 88
7 Disable REST API Disable REST API Disable the use of the REST API on your website to site users. Now with User Role support! by Dave McHale 80K+ ★★★★★★★★★★ 4.8 (38) 3 years ago 48
8 All In One Favicon All In One Favicon Easily add a Favicon to your site and the WordPress admin pages. Complete with upload… by Garrett Grimm 60K+ ★★★★★★★★★★ 4.5 (82) 3 years ago 46
9 Conditional Menus Conditional Menus This plugin enables you to set conditional menus per posts, pages, categories, archive… by themifyme 60K+ ★★★★★★★★★★ 4.4 (71) 2 months ago 76
10 Add From Server Add From Server Add From Server is designed to help ease the pain of bad web hosts, allowing you to upload… by Dion Hulse 60K+ ★★★★★★★★★★ 4.6 (239) 6 years ago 46

FAQ

Dango System Utilities: quick answers

Straight answers, pulled from live WordPress.org data.

Live data from WordPress.org · checked Oct 6, 2026

Is Dango System Utilities free?

Yes. Dango System Utilities is free to download and use from the official WordPress.org plugin directory.

Is Dango System Utilities safe to use in 2026?

Dango System Utilities is a solid plugin choice in 2026, with a few things worth checking first. Was last updated 2 weeks ago, and scores 64/100 on our health check.

How many websites use Dango System Utilities?

Dango System Utilities is active on <10 WordPress websites and has been downloaded 179 times since it launched in September 2026. It was downloaded 182 times in the last 30 days.

Does Dango System Utilities work with WordPress 7.1?

Yes. The developer has tested Dango System Utilities up to WordPress 7.1.2, the latest release. It requires WordPress 6.0 or newer.

What PHP version does Dango System Utilities need?

Dango System Utilities requires PHP 7.4 or higher. Most hosts run PHP 8.x today, so it works on any modern WordPress hosting.

When was Dango System Utilities last updated?

The latest version, 2.6.0, was released on September 25, 2026 (2 weeks ago).

Who makes Dango System Utilities?

Dango System Utilities is developed and maintained by DANGO.

What are the best alternatives to Dango System Utilities?

The most popular alternatives to Dango System Utilities are Loginizer (1M+ installs), Redux Framework (900K+ installs) and Admin Menu Editor (300K+ installs).

Powered by PageForge

Want thousands of pages that rank like these? Build them in an afternoon.

This directory runs on the same engine as PageForge. Turn any spreadsheet, CSV or API into thousands of fast, SEO-ready WordPress pages — with schema, internal links and AI-written copy baked in.

  • CSV, Google Sheets & API data sources
  • AI content, schema & internal links per page
  • Works with Elementor, Gutenberg, Yoast & Rank Math
  • Free on WordPress.org — no credit card
Sarah is here to help!
Hi there! 👋 Need help finding what you're looking for?
Sarah
Sarah
Online & Ready to Help
Hi there! 👋 Need help finding what you're looking for?

We'll use this to continue our conversation

Just now ✓ Verified

Join 500+ SEO Pros Scaling Their Strategy

Get exclusive programmatic SEO tactics, AI content workflows, and the latest PageForge updates delivered straight to your inbox. Stay ahead of the algorithm.

We care about your data in our privacy policy.