
Add a Yoast Breadcrumb Security & Risk Analysis
wordpress.org/plugins/add-a-yoast-breadcrumbAdd/prepend a breacrumb to the current page for Yoast SEO breadcrumbs
Is Add a Yoast Breadcrumb Safe to Use in 2026?
Generally Safe
Score 85/100Add a Yoast Breadcrumb has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'add-a-yoast-breadcrumb' plugin version 1.1.0 exhibits a strong security posture based on the provided static analysis and vulnerability history. The complete absence of identified CVEs and a clean vulnerability history are significant strengths. Furthermore, the code analysis reveals no dangerous functions, no raw SQL queries, no file operations, and no external HTTP requests, all of which contribute to a reduced attack surface and better security hygiene.
However, there are minor areas for improvement. While the plugin demonstrates good practices by implementing nonce and capability checks, the fact that 25% of output is not properly escaped represents a potential risk for cross-site scripting (XSS) vulnerabilities, especially if user-supplied data is involved in these outputs. The static analysis did not identify any taint flows, which is a positive sign, but the lack of analysis for dynamic entry points like AJAX, REST API, or shortcodes means that any such undocumented entry points could pose a risk if not properly secured.
In conclusion, the plugin appears to be relatively secure with a minimal attack surface and a history free of known vulnerabilities. The primary concern lies in the unescaped output, which warrants attention to prevent potential XSS issues. The lack of dynamic entry points being analyzed is a neutral observation, as it might indicate they don't exist or simply weren't covered by the analysis. Overall, it's a plugin with good foundational security, but vigilance regarding output sanitization is recommended.
Key Concerns
- Unescaped output
Add a Yoast Breadcrumb Security Vulnerabilities
Add a Yoast Breadcrumb Code Analysis
Output Escaping
Add a Yoast Breadcrumb Attack Surface
WordPress Hooks 5
Maintenance & Trust
Add a Yoast Breadcrumb Maintenance & Trust
Maintenance Signals
Community Trust
Add a Yoast Breadcrumb Alternatives
ACF Content Analysis for Yoast SEO
acf-content-analysis-for-yoast-seo
WordPress plugin that adds the content of all ACF fields to the Yoast SEO score analysis.
Yoast Test Helper
yoast-test-helper
This plugin makes testing Yoast SEO, Yoast SEO add-ons and integrations and resetting the different features a lot easier.
Website LLMs.txt
website-llms-txt
Automatically generate and manage LLMS.txt files for LLM/AI content understanding, with full Yoast SEO, Rank Math, SEOPress, and AIOSEO integration.
WP All Import – Import SEO Settings for Yoast SEO
yoast-seo-settings-xml-csv-import
Drag & drop to import from any CSV, Excel, XML, or Google Sheets file into Yoast SEO's titles, meta descriptions, focus keywords, schema sett …
Remove Yoast SEO Comments
remove-yoast-seo-comments
Removes the Yoast SEO advertisement HTML comments from your front-end source code.
Add a Yoast Breadcrumb Developer Profile
2 plugins · 370 total installs
How We Detect Add a Yoast Breadcrumb
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
breadcrumb_after_home_titlebreadcrumb_after_home_linkbreadcrumb_titlebreadcrumb_link