[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fA7k2mTY2IzwCxGjSfVWrTcPeD95PSnn_e4YIXHGJsws":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":11,"num_ratings":11,"last_updated":13,"tested_up_to":14,"requires_at_least":15,"requires_php":16,"tags":17,"homepage":23,"download_link":24,"security_score":25,"vuln_count":11,"unpatched_count":11,"last_vuln_date":26,"fetched_at":27,"vulnerabilities":28,"developer":29,"crawl_stats":26,"alternatives":36,"analysis":143,"fingerprints":210},"activity-feed-anywhere","Activity Feed Anywhere","1.0.0","Ben Roberts","https:\u002F\u002Fprofiles.wordpress.org\u002Fbouncingsprout\u002F","\u003Cp>This plugin lets you add a fully functional BuddyPress activity stream to any page. Designed to match the native BuddyPress activity feed, you can now post and see activity from wherever you like.\u003C\u002Fp>\n\u003Ch3>How to use Activity Feed Anywhere\u003C\u002Fh3>\n\u003Cp>Simply add the shortcode [activity_feed_anywhere] to any page on your site.\u003C\u002Fp>\n\u003Cp>If you would rather not display the feed, but only the ‘post box’, simply use [activity_feed_anywhere feed=false ]. Activity entered here will show up in activity feeds elsewhere in the site.\u003C\u002Fp>\n\u003Cp>If you would rather not display the post box, but only the feed itself, simply use [activity_feed_anywhere postbox=false ].\u003C\u002Fp>\n\u003Ch3>Feature Requests, Compatibility and Extending the Plugin\u003C\u002Fh3>\n\u003Cp>This plugin is provided ‘as-is’ and is totally free to use. There is no premium version or upsell. However, if you would like to see improvements, request enhancements, or use it for other means including on BuddyBoss websites, please get in touch with me via our website, where we may be able to provide a quote.\u003C\u002Fp>\n","Activity Feed Anywhere adds a custom BuddyPress activity post box and\u002For feed on any page.",0,1048,"2025-12-02T09:04:00.000Z","6.9.4","5.0","7.0",[18,19,20,21,22],"activity","activity-feed","buddypress","feed","stream","https:\u002F\u002Fwww.bouncingsprout.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Factivity-feed-anywhere.zip",100,null,"2026-03-15T15:16:48.613Z",[],{"slug":30,"display_name":7,"profile_url":8,"plugin_count":31,"total_installs":32,"avg_security_score":25,"avg_patch_time_days":33,"trust_score":34,"computed_at":35},"bouncingsprout",4,1600,1793,79,"2026-04-04T16:01:27.948Z",[37,62,83,99,123],{"slug":38,"name":39,"version":40,"author":41,"author_profile":42,"description":43,"short_description":44,"active_installs":45,"downloaded":46,"rating":25,"num_ratings":47,"last_updated":48,"tested_up_to":49,"requires_at_least":15,"requires_php":50,"tags":51,"homepage":56,"download_link":57,"security_score":58,"vuln_count":59,"unpatched_count":60,"last_vuln_date":61,"fetched_at":27},"bp-activity-plus-reloaded","Activity Plus Reloaded for BuddyPress","1.1.2","BuddyDev","https:\u002F\u002Fprofiles.wordpress.org\u002Fbuddydev\u002F","\u003Cp>Activity Plus Reloaded for BuddyPress gives your social network all the features and ease of Facebook when it comes to uploading and sharing media!\u003C\u002Fp>\n\u003Cp>It is a fork of now unmaintained \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fsupport\u002Fplugin\u002Fbuddypress-activity-plus\u002F\" rel=\"ugc\">BuddyPress Activity Plus\u003C\u002Fa>\u003Cbr \u002F>\nThe plugin adds 3 new buttons to your BuddyPress activity stream.  Enabling you to attach photos, videos, and even share web links with everyone on your network!\u003C\u002Fp>\n\u003Cp>Here’s the quick overview of this plugin’s features:\u003Cbr \u002F>\n * Upload a photo (or multiple) directly from your computer to the activity stream\u003Cbr \u002F>\n * Embed a video from popular sites such as youtube and vimeo by copying the link\u003Cbr \u002F>\n * Embed a link to any site – the site title and description will automatically be pulled in\u003Cbr \u002F>\n * Embedding a link also allows you to choose a thumbnail image from a list of images on the site’s homepage\u003Cbr \u002F>\n * Works perfectly with any theme based on the BuddyPress Default theme\u003C\u002Fp>\n\u003Cp>Blog Post :\u003Ca href=\"https:\u002F\u002Fbuddydev.com\u002Fintroducing-buddypress-activity-plus-reloaded\u002F\" rel=\"nofollow ugc\">Introducing BuddyPress Activity Plus Reloaded\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch4>Credit\u003C\u002Fh4>\n\u003Cp>Activity Plus Reloaded for BuddyPress is a fork of \u003Cem>BuddyPress Activity Plus\u003C\u002Fem>(now abandoned) by @wpmudev. We have refactored it to wok with current BuddyPress\u002FWordPress.\u003Cbr \u002F>\n and we plan to maintain and further develop it.\u003Cbr \u002F>\n We would like to express our sincere gratitude to the @wpmudv team for their cooperation in getting this plugin back.\u003C\u002Fp>\n\u003Cp>If you are looking to optimize media, We recommend \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fwp-smushit\u002F\" rel=\"ugc\">Smush\u003C\u002Fa> to optimize your BuddyPress media.\u003C\u002Fp>\n\u003Ch4>Contribute\u003C\u002Fh4>\n\u003Cp>The plugin is available on gihub. You can contribute by sending pull request, reporting errors and helping others.\u003Cbr \u002F>\nGithub repository: \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fbuddydev\u002Fbp-activity-plus-reloaded\" rel=\"nofollow ugc\">https:\u002F\u002Fgithub.com\u002Fbuddydev\u002Fbp-activity-plus-reloaded\u003C\u002Fa>\u003Cbr \u002F>\nSupport & reporting Issues: \u003Ca href=\"https:\u002F\u002Fbuddydev.com\u002Fsupport\u002Fforums\u002F\" rel=\"nofollow ugc\">BuddyDev Forums\u003C\u002Fa>\u003C\u002Fp>\n","Note: This plugin will be discontinued by March 31st, 2025 in favor of BuddyPress Attachment plugin. Please migrate to the new plugin before that date &hellip;",1000,38738,9,"2025-01-22T12:55:00.000Z","6.7.5","",[52,20,53,54,55],"activity-stream","buddypress-activity","buddypress-activity-upload","embed-video","https:\u002F\u002Fbuddydev.com\u002Fplugins\u002Fbp-activity-plus-reloaded\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fbp-activity-plus-reloaded.1.1.2.zip",46,3,2,"2025-10-12 00:00:00",{"slug":63,"name":64,"version":65,"author":66,"author_profile":67,"description":68,"short_description":69,"active_installs":25,"downloaded":70,"rating":25,"num_ratings":71,"last_updated":72,"tested_up_to":73,"requires_at_least":74,"requires_php":75,"tags":76,"homepage":80,"download_link":81,"security_score":82,"vuln_count":11,"unpatched_count":11,"last_vuln_date":26,"fetched_at":27},"buddykit","BuddyKit – Additional features for BuddyPress","0.0.4","Joseph G.","https:\u002F\u002Fprofiles.wordpress.org\u002Fdunhakdis\u002F","\u003Cp>BuddyKit adds several features like Live Notifications and Media Activities to your BuddyPress sites. More social media related features are coming soon!\u003C\u002Fp>\n","BuddyKit adds several features like Live Notifications and Media Activities to your BuddyPress powered websites.",12833,1,"2019-09-08T10:15:00.000Z","4.9.29","4.5","5.4",[77,20,78,79],"activity-streams","community","social-networking","https:\u002F\u002Fbuddykit.io\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fbuddykit.0.0.4.zip",85,{"slug":84,"name":85,"version":86,"author":87,"author_profile":88,"description":89,"short_description":90,"active_installs":25,"downloaded":91,"rating":92,"num_ratings":93,"last_updated":94,"tested_up_to":50,"requires_at_least":50,"requires_php":50,"tags":95,"homepage":50,"download_link":98,"security_score":82,"vuln_count":11,"unpatched_count":11,"last_vuln_date":26,"fetched_at":27},"buddypress-activity-privacy","BuddyPress Activity Privacy","1.3.8","meg@info","https:\u002F\u002Fprofiles.wordpress.org\u002Fmegainfo\u002F","\u003Cp>BuddyPress Activity Privacy plugin add a privacy level to activity stream component.\u003C\u002Fp>\n\u003Cp>The plugin add the ability for members to choose who can read his activity (Anyone, Logged In Users, My Friends, Admins Only, Only me, My Friends in Group , Group Members …etc).\u003C\u002Fp>\n\u003Ch4>What’s news In Buddypress Activity Privacy 1.3.x ?\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\n\u003Cp>Admin have abitility to enable\u002Fdisable FontAwsome icons.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>Admin have abitility to enable\u002Fdisable viewing and editing the privacy of all activities.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>Admin have abitility to enable\u002Fdisable editing the privacy of posts for all members.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>Admin have abitility show\u002Fhide the privacy label in selexbox.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>Admin have abitility show\u002Fhide the privacy in activity meta.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>Integration with Buddypress Media plugin\u003C\u002Fstrong> (https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fbuddypress-media\u002F).\u003C\u002Fp>\n\u003Cp>Make sure to :\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Set the privacy settings to \u003Cstrong>OFF\u003C\u002Fstrong> in rtMedia settings.\u003C\u002Fli>\n\u003Cli>A new select-box (Privacy) is added to Edit Media form under Description Textarea.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>The plugin work now on multi site Netowork.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>A New privacy level (@mentioned only). When a member choose this privacy level, only mentioned members (and admin of course) can see the activity.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Remark: Members mentioned in activity can see it’s content whatever the privacy level.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\n\u003Cp>New Drop down system with a nice icons (font awsome).\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>Admin Option Area, Admin can update Enable\u002FDisable privacy level, Sort the privacy levels and change the default privacy level.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>What’s news In Buddypress Activity Privacy 1.x ?\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Members can now change the privacy of the activity already posted.\u003C\u002Fli>\n\u003Cli>\n\u003Cp>Admins can update the privacy of all activities.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>Integration with BuddyPress Follow Plugin (https:\u002F\u002Fwordpress.org\u002Fextend\u002Fplugins\u002Fbuddypress-followers\u002F ).\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>Integration With Buddypress Activity Plus Plugin (https:\u002F\u002Fwordpress.org\u002Fextend\u002Fplugins\u002Fbuddypress-activity-plus\u002F ).\u003C\u002Fp>\n\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>-The plugin is now extensible for new privacy levels !! ( Check the integration of BuddyPress Follow in bp-activity-privacy-integrations.php ).\u003C\u002Fp>\n","BuddyPress Activity Privacy plugin add a privacy level to activity stream component.",59831,74,23,"2015-11-27T00:08:00.000Z",[18,20,96,22,97],"privacy","visibility","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fbuddypress-activity-privacy.1.3.8.zip",{"slug":100,"name":101,"version":102,"author":103,"author_profile":104,"description":105,"short_description":106,"active_installs":107,"downloaded":108,"rating":11,"num_ratings":11,"last_updated":109,"tested_up_to":110,"requires_at_least":111,"requires_php":50,"tags":112,"homepage":121,"download_link":122,"security_score":82,"vuln_count":11,"unpatched_count":11,"last_vuln_date":26,"fetched_at":27},"ngg-simple-history","NextCellent Simple History","2.0.1","niknetniko","https:\u002F\u002Fprofiles.wordpress.org\u002Fniknetniko\u002F","\u003Cp>NextCellent Simple History logs events related to NextCellent in the \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fsimple-history\u002F\" rel=\"ugc\">Simple History\u003C\u002Fa> plugin.\u003C\u002Fp>\n\u003Cp>Currently, it logs following events:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Adding galleries\u003C\u002Fli>\n\u003Cli>Updating galleries\u003C\u002Fli>\n\u003Cli>Deleting galleries\u003C\u002Fli>\n\u003Cli>Adding pages for galleries\u003C\u002Fli>\n\u003Cli>Adding images to galleries\u003C\u002Fli>\n\u003Cli>Adding albums\u003C\u002Fli>\n\u003Cli>Editing albums\u003C\u002Fli>\n\u003Cli>Deleting albums\u003C\u002Fli>\n\u003Cli>Updating the NextCellent options\u003C\u002Fli>\n\u003Cli>Deleting images\u003C\u002Fli>\n\u003Cli>Updating images\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Note: this only works with NextCellent Gallery, not with NextGEN Gallery.\u003C\u002Fp>\n\u003Ch4>Requirements\u003C\u002Fh4>\n\u003Cp>NextCellent Simple History has some requirements to be able to run:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fnextcellent-gallery-nextgen-legacy\u002F\" rel=\"ugc\">NextCellent\u003C\u002Fa> 1.9.27 or higher\u003C\u002Fli>\n\u003Cli>PHP 5.4 or higher (5.5 or higher is recommended, since 5.4 is no longer supported by PHP)\u003C\u002Fli>\n\u003Cli>WordPress 4.0 or higher\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Languages\u003C\u002Fh4>\n\u003Cp>So far NextCellent Simple History is available to:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Dutch\u003C\u002Fli>\n\u003Cli>English\u003C\u002Fli>\n\u003Cli>Polish (thanks to \u003Ca href=\"http:\u002F\u002Ffw2s.com\u002F\" rel=\"nofollow ugc\">Frank P. Walentynowicz\u003C\u002Fa>)\u003C\u002Fli>\n\u003Cli>Danish (\u003Ca href=\"https:\u002F\u002Fprofiles.wordpress.org\u002FThomasDK81\" rel=\"nofollow ugc\">thomasdk81\u003C\u002Fa>)\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>If you want to help, please contact me.\u003C\u002Fp>\n\u003Ch4>Source code\u003C\u002Fh4>\n\u003Cp>The source code is available on \u003Ca href=\"https:\u002F\u002Fbitbucket.org\u002Fniknetniko\u002Fngg-simplehistory\" rel=\"nofollow ugc\">BitBucket\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>Feel free to contribute.\u003C\u002Fp>\n\u003Ch4>Credits\u003C\u002Fh4>\n\u003Cp>The plugin icon was adapted from an icon made by \u003Ca href=\"http:\u002F\u002Fwww.freepik.com\" rel=\"nofollow ugc\">Freepik\u003C\u002Fa> from \u003Ca href=\"http:\u002F\u002Fwww.flaticon.com\" rel=\"nofollow ugc\">www.flaticon.com\u003C\u002Fa> is licensed under \u003Ca href=\"http:\u002F\u002Fcreativecommons.org\u002Flicenses\u002Fby\u002F3.0\u002F\" rel=\"nofollow ugc\">Creative Commons BY 3.0\u003C\u002Fa>.\u003C\u002Fp>\n","Add Simple History integration for NextCellent.",70,2154,"2016-04-01T10:57:00.000Z","4.5.33","4.0.0",[18,113,114,115,21,116,117,118,119,22,120],"admin","changelog","changes","history","log","nextcellent","nextgen","syslog","https:\u002F\u002Fbitbucket.org\u002Fniknetniko\u002Fngg-simplehistory","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fngg-simple-history.2.0.1.zip",{"slug":124,"name":125,"version":86,"author":126,"author_profile":127,"description":128,"short_description":129,"active_installs":130,"downloaded":131,"rating":25,"num_ratings":71,"last_updated":132,"tested_up_to":133,"requires_at_least":134,"requires_php":50,"tags":135,"homepage":140,"download_link":141,"security_score":142,"vuln_count":11,"unpatched_count":11,"last_vuln_date":26,"fetched_at":27},"activitystream-extension","ActivityStream extension","Matthias Pfefferle","https:\u002F\u002Fprofiles.wordpress.org\u002Fpfefferle\u002F","\u003Cp>ActivityStreams (\u003Ca href=\"http:\u002F\u002Fwww.activitystrea.ms\" rel=\"nofollow ugc\">activitystrea.ms\u003C\u002Fa>) support for your WordPress-blog\u003C\u002Fp>\n\u003Cp>ActivityStreams is an open format specification for activity stream protocols, which are used to syndicate activities taken in social web applications and services, similar to those in Facebook’s Newsfeed, FriendFeed, the Movable Type Action Streams plugin, etc.\u003C\u002Fp>\n","ActivityStrea.ms feeds for WordPress (Atom and JSON(-LD))",60,9296,"2024-04-05T12:09:00.000Z","6.5.8","4.2",[136,137,21,138,139],"activitystreams","atom","json-ld","rss","http:\u002F\u002Fwordpress.org\u002Fplugins\u002Factivitystream-extension\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Factivitystream-extension.1.3.8.zip",92,{"attackSurface":144,"codeSignals":195,"taintFlows":202,"riskAssessment":203,"analyzedAt":209},{"hooks":145,"ajaxHandlers":187,"restRoutes":188,"shortcodes":189,"cronEvents":194,"entryPointCount":71,"unprotectedCount":11},[146,151,156,160,163,165,168,170,175,178,183],{"type":147,"name":148,"callback":149,"file":150,"line":58},"action","init","bs_afa_init","activity-feed-anywhere.php",{"type":147,"name":152,"callback":153,"file":154,"line":155},"admin_notices","add_php_notice","classes\\class-bs-activity-feed-anywhere-dependency-checker.php",20,{"type":147,"name":157,"callback":158,"file":154,"line":159},"admin_init","deactivate_self",21,{"type":147,"name":152,"callback":161,"file":154,"line":162},"add_buddypress_notice",27,{"type":147,"name":157,"callback":158,"file":154,"line":164},28,{"type":147,"name":152,"callback":166,"file":154,"line":167},"add_buddyboss_notice",34,{"type":147,"name":157,"callback":158,"file":154,"line":169},35,{"type":147,"name":171,"callback":172,"file":173,"line":174},"parse_query","check_for_shortcode","classes\\class-bs-activity-feed-anywhere.php",29,{"type":147,"name":176,"callback":177,"file":173,"line":169},"bp_before_activity_entry","hook_into_activity",{"type":179,"name":180,"callback":181,"file":173,"line":182},"filter","bp_activity_do_heartbeat","enable_heartbeat",41,{"type":179,"name":184,"callback":185,"file":173,"line":186},"body_class","add_body_classes",50,[],[],[190],{"tag":191,"callback":192,"file":173,"line":193},"activity_feed_anywhere","add_shortcode",32,[],{"dangerousFunctions":196,"sqlUsage":197,"outputEscaping":199,"fileOperations":11,"externalRequests":11,"nonceChecks":11,"capabilityChecks":59,"bundledLibraries":201},[],{"prepared":11,"raw":11,"locations":198},[],{"escaped":47,"rawEcho":11,"locations":200},[],[],[],{"summary":204,"deductions":205},"The plugin \"activity-feed-anywhere\" v1.0.0 exhibits a strong security posture based on the provided static analysis.  It has no detected dangerous functions, all SQL queries are prepared, and all output is properly escaped.  Furthermore, there are no file operations, external HTTP requests, or taint vulnerabilities identified. The plugin also demonstrates good practice by including capability checks for its entry points.\n\nDespite these positive findings, there are a few areas that warrant attention. The absence of nonce checks on the sole shortcode is a potential concern, as it means that the shortcode's functionality, if it performs any sensitive actions, could be vulnerable to Cross-Site Request Forgery (CSRF) attacks. The fact that there are no known CVEs and no recorded past vulnerabilities suggests a well-maintained codebase. However, the lack of taint analysis flows and the limited attack surface make it difficult to definitively assess deeper security risks.\n\nOverall, the plugin appears to be well-developed from a security perspective, adhering to many best practices. The primary area for improvement is the addition of nonce checks to the shortcode to mitigate potential CSRF vulnerabilities. Without this, the plugin has a minor but addressable security weakness.",[206],{"reason":207,"points":208},"Missing nonce checks on shortcode",5,"2026-03-17T06:41:23.635Z",{"wat":211,"direct":216},{"assetPaths":212,"generatorPatterns":213,"scriptPaths":214,"versionParams":215},[],[],[],[],{"cssClasses":217,"htmlComments":218,"htmlAttributes":219,"restEndpoints":221,"jsGlobals":222,"shortcodeOutput":223},[4],[],[220],"data-bp-list=\"activity\"",[],[],[224,225,226],"\u003Cdiv id=\"buddypress\" class=\"buddypress-wrap\">","\u003Cdiv id=\"activity-stream\" class=\"activity\" data-bp-list=\"activity\">","\u003Cdiv id=\"bp-ajax-loader\">"]