Add Twitter Pixel for Twitter ads Security & Risk Analysis

wordpress.org/plugins/add-twitter-pixel

Twitter pixel plugin allows you to install your Twitter pixel properly on your website to track conversion & maximize ROI with your Twitter ads

100 active installs v1.0.7 PHP 5.6+ WP 4.1+ Updated Jan 16, 2026
retargetingtwittertwitter-ads
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Add Twitter Pixel for Twitter ads Safe to Use in 2026?

Generally Safe

Score 100/100

Add Twitter Pixel for Twitter ads has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The 'add-twitter-pixel' plugin, version 1.0.7, exhibits a generally strong security posture based on the provided static analysis. The absence of any recorded vulnerabilities (CVEs) and the limited attack surface are positive indicators. The plugin also demonstrates good coding practices by utilizing prepared statements for all SQL queries and implementing nonce and capability checks, albeit sparingly. This suggests a development team that is aware of common WordPress security pitfalls.

However, a significant concern arises from the output escaping. With 40% of outputs being improperly escaped, this presents a considerable risk of Cross-Site Scripting (XSS) vulnerabilities. Attackers could potentially inject malicious scripts through unsanitized output, impacting users who interact with the plugin's frontend or backend interfaces. While taint analysis shows no critical or high-severity unsanitized flows, the high percentage of unescaped output means potential XSS vulnerabilities might exist that were not flagged by the specific taint analysis paths examined.

In conclusion, the plugin benefits from a clean vulnerability history and a minimal attack surface. The developer's use of prepared statements and security checks is commendable. The primary weakness lies in the inadequate output escaping, which is a significant security concern that needs immediate attention. Addressing the XSS risks associated with unescaped output should be the priority to improve the plugin's overall security.

Key Concerns

  • High percentage of unescaped output (40%)
  • Limited capability checks observed (1)
  • Limited nonce checks observed (2)
Vulnerabilities
None known

Add Twitter Pixel for Twitter ads Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Add Twitter Pixel for Twitter ads Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
33
22 escaped
Nonce Checks
2
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
1

Bundled Libraries

Freemius1.0

Output Escaping

40% escaped55 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
page (admin\controllers\SettingsController.php:19)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Add Twitter Pixel for Twitter ads Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 12
filterconnect_urladd-twitter-pixel.php:71
filterafter_skip_urladd-twitter-pixel.php:72
filterafter_connect_urladd-twitter-pixel.php:73
filterafter_pending_connect_urladd-twitter-pixel.php:74
filterplugin_iconadd-twitter-pixel.php:79
filterconnect_messageadd-twitter-pixel.php:94
actioninitadd-twitter-pixel.php:104
actionwp_headadmin\controllers\TrackingController.php:8
actionadmin_menuadmin\Settings.php:14
actionadd_meta_boxesadmin\Settings.php:17
actionsave_postadmin\Settings.php:20
actionadmin_enqueue_scriptsadmin\Settings.php:27
Maintenance & Trust

Add Twitter Pixel for Twitter ads Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedJan 16, 2026
PHP min version5.6
Downloads4K

Community Trust

Rating40/100
Number of ratings1
Active installs100
Developer Profile

Add Twitter Pixel for Twitter ads Developer Profile

Pagup

17 plugins · 33K total installs

78
trust score
Avg Security Score
98/100
Avg Patch Time
439 days
View full developer profile
Detection Fingerprints

How We Detect Add Twitter Pixel for Twitter ads

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/add-twitter-pixel/admin/assets/style.css/wp-content/plugins/add-twitter-pixel/admin/assets/script.js
Script Paths
//static.ads-twitter.com/uwt.js
Version Parameters
/wp-content/plugins/add-twitter-pixel/admin/assets/style.css?ver=/wp-content/plugins/add-twitter-pixel/admin/assets/script.js?ver=

HTML / DOM Fingerprints

HTML Comments
<!-- Twitter universal website tag code -->
JS Globals
twq
FAQ

Frequently Asked Questions about Add Twitter Pixel for Twitter ads