Actirise — Advertising & Monetization Security & Risk Analysis

wordpress.org/plugins/actirise

Premium advertising solution to grow your WordPress site revenue with no code and real-time insights.

200 active installs v3.4.1 PHP 5.6+ WP 4.7+ Updated Mar 3, 2026
ad-manageradsadvertisingbannermonetization
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Actirise — Advertising & Monetization Safe to Use in 2026?

Generally Safe

Score 100/100

Actirise — Advertising & Monetization has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The actirise v3.4.1 plugin exhibits a strong security posture based on the provided static analysis. The absence of dangerous functions, file operations, and critical/high severity taint flows is highly positive. Furthermore, the plugin demonstrates excellent practices in output escaping, with all outputs properly escaped, and a high percentage of SQL queries utilizing prepared statements, significantly reducing the risk of SQL injection vulnerabilities. The presence of nonce checks and capability checks also indicates an effort to secure its entry points.

While the static analysis reveals no immediate critical vulnerabilities, there are a few areas that warrant attention for a more robust security posture. The plugin makes 8 external HTTP requests, which, while not inherently a vulnerability, could become a vector if the external endpoints are compromised or if the data sent/received is not handled securely. The limited number of capability checks (4) and the lack of authentication checks on all entry points (though none are currently unprotected) suggests potential for privilege escalation or unauthorized access if new entry points are introduced or existing ones are modified without proper authorization.

Given the complete lack of any recorded vulnerabilities in its history, it suggests the plugin has been maintained with security in mind. However, this absence of history does not guarantee future security. The plugin's strengths lie in its internal code hygiene, particularly in output escaping and SQL query preparation. The main areas for improvement would be to ensure all entry points, including potential future ones, are rigorously secured with capability checks and to carefully scrutinize the security implications of all external HTTP requests. Overall, actirise v3.4.1 appears to be a well-coded plugin with a low immediate risk, but continued vigilance and adherence to best practices for external interactions are recommended.

Key Concerns

  • External HTTP requests made
  • Limited capability checks found
Vulnerabilities
None known

Actirise — Advertising & Monetization Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Actirise — Advertising & Monetization Code Analysis

Dangerous Functions
0
Raw SQL Queries
3
22 prepared
Unescaped Output
0
114 escaped
Nonce Checks
19
Capability Checks
4
File Operations
0
External Requests
8
Bundled Libraries
0

SQL Query Safety

88% prepared25 total queries

Output Escaping

100% escaped114 total outputs
Attack Surface

Actirise — Advertising & Monetization Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[actirise] Includes\ShortCode.php:33
WordPress Hooks 30
actionadmin_bar_menuadmin\Includes\AdminBar.php:53
filterposts_whereadmin\Includes\Ajax.php:116
filterscript_loader_tagadmin\Includes\Core.php:142
filterdebug_informationadmin\Includes\Core.php:236
filtersite_status_testsadmin\Includes\Core.php:237
actionadmin_initadmin\Includes\Core.php:249
actionadmin_noticesadmin\Includes\View.php:67
filtersgo_javascript_combine_excluded_external_pathsIncludes\Cache\SGOCache.php:29
filtersgo_javascript_combine_excluded_inline_contentIncludes\Cache\SGOCache.php:30
actionadmin_enqueue_scriptsIncludes\Core.php:106
actionadmin_menuIncludes\Core.php:116
actionadmin_initIncludes\Core.php:117
actionadmin_initIncludes\Core.php:118
actionadmin_noticesIncludes\Core.php:119
actioninitIncludes\Core.php:133
actionactirise_cron_update_adstxtIncludes\Core.php:146
actionactirise_cron_update_presized_divIncludes\Core.php:147
actionactirise_cron_update_fast_cmpIncludes\Core.php:148
actionactirise_cron_check_adstxtIncludes\Core.php:149
actionactirise_cron_check_slotsIncludes\Core.php:150
actionactirise_cron_event_annotationIncludes\Core.php:151
actionactirise_validate_xpath_after_updateIncludes\Core.php:154
actioninitIncludes\Core.php:170
filtercron_schedulesIncludes\Cron.php:36
filterscript_loader_tagpublic\Includes\Core.php:61
actionwp_enqueue_scriptspublic\Includes\Core.php:62
actionadd_meta_boxespublic\Includes\NoPub.php:58
actionsave_postpublic\Includes\NoPub.php:59
actiontemplate_redirectpublic\Includes\PresizedDiv.php:78
actionshutdownpublic\Includes\PresizedDiv.php:129

Scheduled Events 8

actirise_validate_xpath_after_update
actirise_cron_update_presized_div
actirise_cron_update_adstxt
actirise_cron_update_presized_div
actirise_cron_update_fast_cmp
actirise_cron_check_adstxt
actirise_cron_check_slots
actirise_cron_event_annotation
Maintenance & Trust

Actirise — Advertising & Monetization Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 3, 2026
PHP min version5.6
Downloads10K

Community Trust

Rating100/100
Number of ratings11
Active installs200
Developer Profile

Actirise — Advertising & Monetization Developer Profile

Actirise

1 plugin · 200 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Actirise — Advertising & Monetization

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/actirise/admin/assets/css/main-.css/wp-content/plugins/actirise/admin/assets/js/main-.js/wp-content/plugins/actirise/public/assets/css/ads.css/wp-content/plugins/actirise/public/assets/css/ads.min.css/wp-content/plugins/actirise/public/assets/js/ads.js/wp-content/plugins/actirise/public/assets/js/ads.min.js/wp-content/plugins/actirise/public/assets/js/common.js/wp-content/plugins/actirise/public/assets/js/common.min.js+2 more
Script Paths
/wp-content/plugins/actirise/admin/assets/js/main-.js/wp-content/plugins/actirise/public/assets/js/ads.js/wp-content/plugins/actirise/public/assets/js/ads.min.js/wp-content/plugins/actirise/public/assets/js/common.js/wp-content/plugins/actirise/public/assets/js/common.min.js/wp-content/plugins/actirise/public/assets/js/ads.script.js+1 more
Version Parameters
actirise/admin/assets/css/main-.css?ver=actirise/admin/assets/js/main-.js?ver=actirise/public/assets/css/ads.css?ver=actirise/public/assets/css/ads.min.css?ver=actirise/public/assets/js/ads.js?ver=actirise/public/assets/js/ads.min.js?ver=actirise/public/assets/js/common.js?ver=actirise/public/assets/js/common.min.js?ver=actirise/public/assets/js/ads.script.js?ver=actirise/public/assets/js/ads.script.min.js?ver=

HTML / DOM Fingerprints

CSS Classes
actirise-badge
Data Attributes
data-aurldata-adwidthdata-adheight
JS Globals
Actirise
REST Endpoints
/wp-json/actirise/v1/settings/wp-json/actirise/v1/settings/update/wp-json/actirise/v1/token/update/wp-json/actirise/v1/ad_request
FAQ

Frequently Asked Questions about Actirise — Advertising & Monetization