
Adjusted Bounce Rate Security & Risk Analysis
wordpress.org/plugins/adjusted-bounce-rateA well-designed plugin that improves the accuracy of your bounce rate, time on page, and session duration metrics in Google Analytics.
Is Adjusted Bounce Rate Safe to Use in 2026?
Generally Safe
Score 85/100Adjusted Bounce Rate has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin 'adjusted-bounce-rate' v1.2.1 exhibits a generally positive security posture based on the provided static analysis. It has no reported vulnerabilities in its history and the static analysis shows a remarkably clean code base with zero entry points, no dangerous functions, no file operations, and no external HTTP requests. The absence of taint flows also indicates a good effort to prevent data manipulation vulnerabilities.
However, there are significant concerns raised by the code analysis. The plugin uses one SQL query that is not properly prepared, which is a critical security risk that could lead to SQL injection if the input is not thoroughly sanitized elsewhere. Furthermore, none of the 20 output operations are properly escaped. This lack of output escaping creates a high risk of Cross-Site Scripting (XSS) vulnerabilities, allowing attackers to inject malicious scripts into pages rendered by the plugin. The complete absence of capability checks and nonce checks, combined with zero entry points, might suggest a limited scope for interaction, but if any interactions were to be added in the future without these security measures, it would be highly insecure.
In conclusion, while the plugin benefits from a clean history and a lack of complex attack surface or known vulnerabilities, the identified issues with raw SQL queries and unescaped output are serious and present immediate risks. These weaknesses require immediate attention to secure the plugin against common web vulnerabilities.
Key Concerns
- SQL queries without prepared statements
- Unescaped output detected
- Missing capability checks
- Missing nonce checks
Adjusted Bounce Rate Security Vulnerabilities
Adjusted Bounce Rate Code Analysis
SQL Query Safety
Output Escaping
Adjusted Bounce Rate Attack Surface
WordPress Hooks 4
Maintenance & Trust
Adjusted Bounce Rate Maintenance & Trust
Maintenance Signals
Community Trust
Adjusted Bounce Rate Alternatives
Analytics Control Plus
analytics-control-plus
Set up Google Analytics with options (demographics and enhanced link tracking), no JavaScript editing. Does bounce timeout, so more accurate stats.
MonsterInsights – Google Analytics Dashboard for WordPress (Website Stats Made Easy)
google-analytics-for-wordpress
The best free Google Analytics plugin for WordPress. See how visitors find and use your website so you can grow your business with powerful analytics.
GTM4WP – A Google Tag Manager (GTM) plugin for WordPress
duracelltomi-google-tag-manager
Advanced tag management for WordPress with Google Tag Manager
WP Statistics – Simple, privacy-friendly Google Analytics alternative
wp-statistics
Get website traffic insights with GDPR/CCPA compliant, privacy-friendly analytics. Includes visitor data, stunning graphs, and no data sharing.
PixelYourSite – Your smart PIXEL (TAG) & API Manager
pixelyoursite
Add Meta Pixel with Conversion API, Google Analytics (GA4) + Consent Mode, Google Tag Manager, and Head & Footer scripts.
Adjusted Bounce Rate Developer Profile
2 plugins · 30 total installs
How We Detect Adjusted Bounce Rate
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/adjusted-bounce-rate/assets/js/adjusted-bounce-rate.js/wp-content/plugins/adjusted-bounce-rate/assets/js/adjusted-bounce-rate.jsadjusted-bounce-rate/assets/js/adjusted-bounce-rate.js?ver=adjusted-bounce-rate.js?ver=HTML / DOM Fingerprints
adjusted_bounce_rate