[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fhFBnhJAF4I1T1PpJEg-bYCbTi7L0oWFvLD1Avc6QGCA":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":18,"tags":19,"homepage":25,"download_link":26,"security_score":27,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30,"vulnerabilities":31,"developer":32,"crawl_stats":29,"alternatives":40,"analysis":136,"fingerprints":208},"affiliates-manager-mailchimp-integration","Affiliates Manager MailChimp Integration","1.0.1","wp.insider","https:\u002F\u002Fprofiles.wordpress.org\u002Fwpinsider-1\u002F","\u003Cp>This addon allows you to specify a MailChimp list name in the addon settings. When affiliates join your site, they get signed up to the specified MailChimp list automatically.\u003C\u002Fp>\n\u003Cp>This addon requires the \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Faffiliates-manager\u002F\" rel=\"ugc\">Affiliates Manager Plugin\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>After you install this addon, go to the MailChimp settings interface and specify your API Key and the MailChimp list name.\u003C\u002Fp>\n\u003Cp>Read the following page for step by step usage documentation:\u003Cbr \u002F>\nhttp:\u002F\u002Fwpaffiliatemanager.com\u002Fsignup-affiliates-mailchimp-list\u002F\u003C\u002Fp>\n","An addon for the Affiliates Manager plugin to signup the affiliates to your MailChimp list",100,7483,80,1,"2025-01-21T22:42:00.000Z","6.7.5","3.8","5.3",[20,21,22,23,24],"autoresponder","email","mailchimp","optin","signup","http:\u002F\u002Fwpaffiliatemanager.com\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Faffiliates-manager-mailchimp-integration.zip",92,0,null,"2026-03-15T15:16:48.613Z",[],{"slug":33,"display_name":7,"profile_url":8,"plugin_count":34,"total_installs":35,"avg_security_score":36,"avg_patch_time_days":37,"trust_score":38,"computed_at":39},"wpinsider-1",14,76450,95,556,76,"2026-04-04T03:10:34.731Z",[41,58,80,102,118],{"slug":42,"name":43,"version":44,"author":7,"author_profile":8,"description":45,"short_description":46,"active_installs":47,"downloaded":48,"rating":49,"num_ratings":50,"last_updated":51,"tested_up_to":52,"requires_at_least":53,"requires_php":54,"tags":55,"homepage":56,"download_link":57,"security_score":11,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30},"simple-membership-mailchimp-integration","Simple Membership MailChimp Integration","1.9.7","\u003Cp>This addon allows you to specify a MailChimp list name for each of your access levels. When members join your site, they get signed up to the specified MailChimp list.\u003C\u002Fp>\n\u003Cp>This addon requires the \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fsimple-membership\u002F\" rel=\"ugc\">simple membership plugin\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>After you install this addon, edit your membership level and specify the mailchimp list name. Then go to the MailChimp settings interface and specify your API Key.\u003C\u002Fp>\n\u003Cp>Read the following page for step by step usage documentation:\u003Cbr \u002F>\nhttps:\u002F\u002Fsimple-membership-plugin.com\u002Fsignup-members-mailchimp-list\u002F\u003C\u002Fp>\n","An addon for the simple membership plugin to signup members to your MailChimp list",1000,32139,60,2,"2025-10-09T03:32:00.000Z","6.8.5","5.5","",[20,21,22,23,24],"https:\u002F\u002Fsimple-membership-plugin.com\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsimple-membership-mailchimp-integration.1.9.7.zip",{"slug":22,"name":59,"version":60,"author":61,"author_profile":62,"description":63,"short_description":64,"active_installs":65,"downloaded":66,"rating":67,"num_ratings":68,"last_updated":69,"tested_up_to":70,"requires_at_least":71,"requires_php":72,"tags":73,"homepage":76,"download_link":77,"security_score":78,"vuln_count":14,"unpatched_count":28,"last_vuln_date":79,"fetched_at":30},"Mailchimp List Subscribe Form","2.0.1","Mailchimp","https:\u002F\u002Fprofiles.wordpress.org\u002Fmailchimp\u002F","\u003Cp>Use the Mailchimp List Subscribe plugin to quickly add a Mailchimp signup form block, widget, or shortcode to your WordPress site.\u003C\u002Fp>\n\u003Cp>After installation, if you already have a Mailchimp account, you’ll log in with that account and then proceed to configure settings.\u003C\u002Fp>\n\u003Cp>If you don’t have an account, you can create one directly in the plugin. After entering in all your personal details, you’ll need to activate your account via an email that will be sent to you. Once done, you’ll proceed to configure settings.\u003C\u002Fp>\n\u003Cp>On the settings screen, you’ll select your Mailchimp list, choose merge fields and groups, and configure other options. Once done, you can now add the block, widget, or shortcode (\u003Ccode>[mailchimpsf_form]\u003C\u002Fcode>) to your site. Typically, installation and setup will take about 5-10 minutes, and absolutely everything can be done via the WordPress Setting GUI, with no file editing at all.\u003C\u002Fp>\n\u003Cp>WordPress.com compatibility is limited to Business tier users only. \u003Ca href=\"https:\u002F\u002Fmailchimp.com\u002Fhelp\u002Fways-to-add-a-signup-form-in-wordpress\u002F\" rel=\"nofollow ugc\">How to add a signup form if you have a WordPress.com site\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch3>Access Token Encryption\u003C\u002Fh3>\n\u003Cp>Starting in version 1.6.0, authentication has changed to use OAuth. As part of this process, we retrieve an access token that can be used to make API requests. To provide a high-level of security, this access token is encrypted before being stored in the WordPress database. In order to ensure this access token can be decrypted when used, the plugin relies on certain security constants that should remain unchanged.\u003C\u002Fp>\n\u003Cp>With no additional configuration, we use the standard \u003Ccode>LOGGED_IN_KEY\u003C\u002Fcode> and \u003Ccode>LOGGED_IN_SALT\u003C\u002Fcode> constants that are normally set in your site’s \u003Ccode>wp-config.php\u003C\u002Fcode> file. Some sites make use of security plugins that rotate these constants on a periodic basis. When this happens, we won’t be able to decrypt the access token and you’ll need to reconnect your Mailchimp account to generate a new access token.\u003C\u002Fp>\n\u003Cp>To prevent such issues, it is recommended to define two additional constants in your site’s \u003Ccode>wp-config.php\u003C\u002Fcode> file: \u003Ccode>MAILCHIMP_SF_ENCRYPTION_KEY\u003C\u002Fcode> and \u003Ccode>MAILCHIMP_SF_ENCRYPTION_SALT\u003C\u002Fcode>. These constants should consist of a combination of characters, preferably at least 32 characters long. Once set, these values should not be changed. For strong values, you can copy some of the values from \u003Ca href=\"https:\u002F\u002Fapi.wordpress.org\u002Fsecret-key\u002F1.1\u002Fsalt\u002F\" rel=\"nofollow ugc\">here\u003C\u002Fa> and use them. You’ll end up with additional code like the following in your \u003Ccode>wp-config.php\u003C\u002Fcode> file:\u003C\u002Fp>\n\u003Cpre>\u003Ccode>define( 'MAILCHIMP_SF_ENCRYPTION_KEY', 'put your unique phrase here' );\ndefine( 'MAILCHIMP_SF_ENCRYPTION_SALT', 'put your unique phrase here' );\n\u003C\u002Fcode>\u003C\u002Fpre>\n\u003Cp>If these constants are added after you’ve already authenticated with Mailchimp, you will need to reconnect your account. To avoid this, you can copy the values from \u003Ccode>LOGGED_IN_KEY\u003C\u002Fcode> and \u003Ccode>LOGGED_IN_SALT\u003C\u002Fcode> (if they exist) to \u003Ccode>MAILCHIMP_SF_ENCRYPTION_KEY\u003C\u002Fcode> and \u003Ccode>MAILCHIMP_SF_ENCRYPTION_SALT\u003C\u002Fcode> respectively.\u003C\u002Fp>\n\u003Ch3>Upgrading\u003C\u002Fh3>\n\u003Cp>If you are upgrading to version 1.2.1 and you used the widget in your sidebar previously, all you need to do is drag the \u003Ccode>Mailchimp Widget\u003C\u002Fcode> back into the sidebar, visit the Mailchimp settings page (which will have maintained your prior settings), click the “Update List” button, and you’re done!\u003C\u002Fp>\n","Add a Mailchimp signup form block, widget, or shortcode to your WordPress site.",60000,2489684,52,77,"2026-01-08T23:25:00.000Z","6.9.4","6.4","7.0",[21,22,74,75,24],"marketing","newsletter","https:\u002F\u002Fmailchimp.com\u002Fhelp\u002Fconnect-or-disconnect-list-subscribe-for-wordpress\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fmailchimp.2.0.1.zip",99,"2026-02-18 14:55:46",{"slug":81,"name":82,"version":83,"author":84,"author_profile":85,"description":86,"short_description":87,"active_installs":47,"downloaded":88,"rating":67,"num_ratings":89,"last_updated":90,"tested_up_to":52,"requires_at_least":91,"requires_php":92,"tags":93,"homepage":97,"download_link":98,"security_score":99,"vuln_count":100,"unpatched_count":28,"last_vuln_date":101,"fetched_at":30},"sendpulse-email-marketing-newsletter","SendPulse Email Marketing Newsletter","2.2.2","SendPulse","https:\u002F\u002Fprofiles.wordpress.org\u002Fsendpulse\u002F","\u003Cp>SendPulse plugin for WordPress\u003Cbr \u002F>\nAdd an email subscription form to your site. Each new subscriber will be automatically added to your mailing list. Create and send email campaigns with SendPulse, a multi-channel marketing automation platform.\u003C\u002Fp>\n\u003Ch4>FEATURES\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Install the plugin in 1 click and set up within minutes;\u003C\u002Fli>\n\u003Cli>Add multiple email subscription forms;\u003C\u002Fli>\n\u003Cli>Customize your subscription forms to fit your brand identity;\u003C\u002Fli>\n\u003Cli>Import contacts from WordPress to your mailing list.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>SENDPULSE’S KEY FEATURES\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Rich automation possibilities that allow you to create email, SMS, web push, and chatbot campaigns on one platform;\u003C\u002Fli>\n\u003Cli>Drag and drop email editor;\u003C\u002Fli>\n\u003Cli>Ready-made email templates;\u003C\u002Fli>\n\u003Cli>Email personalization and list segmentation;\u003C\u002Fli>\n\u003Cli>Detailed analytics and reports;\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>WHAT IS SENDPULSE?\u003C\u002Fh4>\n\u003Cp>SendPulse is a multi-channel marketing automation platform for multifaceted business promotion and customer retention.\u003C\u002Fp>\n\u003Cp>SendPulse allows you to send email, SMS, and web push campaigns, stay in touch with clients using Telegram, Facebook Messenger, WhatsApp, and Instagram chatbots, and create landing pages in just 15 minutes.\u003C\u002Fp>\n\u003Cp>You can easily track all of your marketing activities and gather customer data with SendPulse’s free CRM.\u003C\u002Fp>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fsendpulse.com\u002Fregister\" rel=\"nofollow ugc\">Create a SendPulse account\u003C\u002Fa>, and send up to 15,000 emails every month for free.\u003C\u002Fp>\n\u003Cp>You can install \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fsendpulse-web-push\u002F\" rel=\"ugc\">SendPulse Free WebPush plugin\u003C\u002Fa> if you need a plugin for web push notifications.\u003C\u002Fp>\n\u003Ch4>Contacts\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Customer support – \u003Ca href=\"https:\u002F\u002Fsendpulse.com\u002Fsupport\" rel=\"nofollow ugc\">https:\u002F\u002Fsendpulse.com\u002Fsupport\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>Twitter – \u003Ca href=\"https:\u002F\u002Ftwitter.com\u002FSendPulseCom\" rel=\"nofollow ugc\">https:\u002F\u002Ftwitter.com\u002FSendPulseCom\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>Facebook – \u003Ca href=\"https:\u002F\u002Ffacebook.com\u002Fsendpulse\" rel=\"nofollow ugc\">https:\u002F\u002Ffacebook.com\u002Fsendpulse\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Usage\u003C\u002Fh4>\n\u003Col>\n\u003Cli>Create a subscription form using \u003Ca href=\"https:\u002F\u002Flogin.sendpulse.com\u002Femailservice\u002Fforms\u002Fconstructor\u002F\" rel=\"nofollow ugc\">SendPulse’s builder\u003C\u002Fa>.\u003C\u002Fli>\n\u003Cli>Add a new SendPulse form using WordPress.\u003C\u002Fli>\n\u003Cli>Paste your subscription form code in the editor.\u003C\u002Fli>\n\u003Cli>To display your subscription form, use a shortcode (for example \u003Ccode>[sendpulse-form id=\"...\"]\u003C\u002Fcode> where “…” is form id) in editor or place \u003Ccode>\u003C?php echo do_shortcode('[sendpulse-form id=\"...\"]')?>\u003C\u002Fcode> in your themes file.\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch4>Requirement\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>PHP version >= 7.2+ (\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fabout\u002Frequirements\u002F\" rel=\"ugc\">Recommended\u003C\u002Fa> >= 7.2+)\u003C\u002Fli>\n\u003C\u002Ful>\n","Add a customizable email subscription form to your site, send newsletters, and automate email campaigns with autoresponders using SendPulse.",33627,8,"2025-12-05T16:17:00.000Z","5.7","7.1",[20,94,95,75,96],"email-marketing","email-optin","subscription-form","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fsendpulse-email-marketing-newsletter\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsendpulse-email-marketing-newsletter.2.2.2.zip",96,3,"2025-12-05 00:00:00",{"slug":103,"name":104,"version":105,"author":106,"author_profile":107,"description":108,"short_description":109,"active_installs":11,"downloaded":110,"rating":111,"num_ratings":100,"last_updated":112,"tested_up_to":113,"requires_at_least":114,"requires_php":54,"tags":115,"homepage":54,"download_link":116,"security_score":117,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30},"easy-mailchimp-opt-in","Easy Mailchimp Optin Form","1.3","Mahfuzar Rahman","https:\u002F\u002Fprofiles.wordpress.org\u002Fmahfuzar\u002F","\u003Cp>The MailChimp plugin allows you to quickly and easily add a signup form for your MailChimp list as a widget on your WordPress 2.8 or higher site.\u003C\u002Fp>\n\u003Cp>Not sure what \u003Ca href=\"http:\u002F\u002Fwww.mailchimp.com\u002Ffeatures\u002Ffull_list\u002F\" rel=\"nofollow ugc\">MailChimp\u003C\u002Fa> is or if it will be helpful? Signup up for a \u003Ca href=\"http:\u002F\u002Fwww.mailchimp.com\u002Fsignup\u002F\" rel=\"nofollow ugc\">FREE Trial Account\u003C\u002Fa> and see for yourself!\u003C\u002Fp>\n\u003Cp>After Installation, the setup page will guide you through entering API information, selecting your List and then add the Widget to your site. The time from starting installation to have the form on your site should be less than 5 minutes – absolutely everything can be done via the WordPress Setting GUI – no file editing at all!\u003C\u002Fp>\n\u003Ch3>Developer Mode\u003C\u002Fh3>\n\u003Cp>You can enable “Devleoper Mode” by adding the following line to your \u003Ccode>wp-config.php\u003C\u002Fcode> file just above the “That’s all, stope editing!” line.\u003C\u002Fp>\n\u003Cpre>\u003Ccode>define('MAILCHIMP_DEV_MODE', true);\n\u003C\u002Fcode>\u003C\u002Fpre>\n\u003Cp>This will enable the MailChimp List Subscribe plugin to operate without the need to connect an external MailChimp Account, and will provide a\u003Cbr \u002F>\nsubscription form widget that will not actually submit anywhere.\u003C\u002Fp>\n\u003Cp>This will allow you to style and configure the widget in non-production environments that are not publicly accessible.\u003C\u002Fp>\n\u003Cp>For more Developer Mode customization options see the following article:\u003C\u002Fp>\n\u003Cp>http:\u002F\u002Fconnect.mailchimp.com\u002Fhow-to\u002Fhow-to-article-configuring-developer-mode-for-the-list-subscribe-wordpress-plugin\u003C\u002Fp>\n","The MailChimp plugin allows you to quickly and easily add a signup form for your MailChimp list as a widget on your WordPress 2.8 or higher site.",18747,74,"2014-09-09T14:30:00.000Z","4.0.38","2.8",[21,22,74,75,24],"https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Feasy-mailchimp-opt-in.zip",85,{"slug":119,"name":120,"version":121,"author":122,"author_profile":123,"description":124,"short_description":125,"active_installs":126,"downloaded":127,"rating":28,"num_ratings":28,"last_updated":128,"tested_up_to":129,"requires_at_least":130,"requires_php":54,"tags":131,"homepage":134,"download_link":135,"security_score":117,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30},"mailchimp-comment-optin","MailChimp Comment Optin","1.2.1","Thomas Griffin","https:\u002F\u002Fprofiles.wordpress.org\u002Fgriffinjt\u002F","\u003Cp>\u003Cstrong>Note: This plugin is no longer being maintained or supported. Download and use at your own risk.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>Never miss another potential lead again. With this plugin, you now have the ability to add a simple checkbox and message to the end of your comment forms to allow your users to subscribe to a MailChimp list when commenting.\u003C\u002Fp>\n\u003Cp>The plugin integrates seamlessly with the MailChimp API to register the name and email of your commenters into an email list of your choosing. By using the double optin method for capturing these email addresses, you can rest assured you are getting the best qualified leads for your growing email list.\u003C\u002Fp>\n\u003Cp>This plugin was created by \u003Ca href=\"https:\u002F\u002Fthomasgriffin.io\" title=\"WordPress Developer - Thomas Griffin\" rel=\"me nofollow ugc\">Thomas Griffin\u003C\u002Fa>. Check out some of my other products, including \u003Ca href=\"http:\u002F\u002Fsoliloquywp.com\u002F\" title=\"Soliloquy - the best responsive WordPress slider plugin\" rel=\"friend nofollow ugc\">Soliloquy – the best responsive WordPress slider plugin\u003C\u002Fa>, \u003Ca href=\"http:\u002F\u002Fenviragallery.com\u002F\" title=\"Envira Gallery - the best responsive WordPress gallery plugin\" rel=\"friend nofollow ugc\">Envira Gallery – the best responsive WordPress gallery plugin\u003C\u002Fa> and \u003Ca href=\"http:\u002F\u002Foptinmonster.com\u002F\" title=\"OptinMonster\" rel=\"friend nofollow ugc\">OptinMonster\u003C\u002Fa>.\u003C\u002Fp>\n","This plugin allows you to insert a checkbox at the end of your comment forms so your viewers can double optin to a MailChimp list of your choosing.",90,9382,"2014-12-27T20:19:00.000Z","4.1.42","3.0",[21,22,132,133,74],"mailchimp-form","mailchimp-optin","http:\u002F\u002Fwordpress.org\u002Fextend\u002Fplugins\u002Fmailchimp-comment-optin\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fmailchimp-comment-optin.zip",{"attackSurface":137,"codeSignals":154,"taintFlows":166,"riskAssessment":194,"analyzedAt":207},{"hooks":138,"ajaxHandlers":150,"restRoutes":151,"shortcodes":152,"cronEvents":153,"entryPointCount":28,"unprotectedCount":28},[139,146],{"type":140,"name":141,"callback":142,"priority":143,"file":144,"line":145},"action","wpam_front_end_registration_form_submitted","wpam_do_mailchimp_signup",10,"affmgr-mailchimp-action.php",5,{"type":140,"name":147,"callback":148,"file":149,"line":100},"wpam_after_main_admin_menu","wpam_mailchimp_do_admin_menu","affmgr-mailchimp-admin-menu.php",[],[],[],[],{"dangerousFunctions":155,"sqlUsage":156,"outputEscaping":158,"fileOperations":28,"externalRequests":28,"nonceChecks":28,"capabilityChecks":28,"bundledLibraries":165},[],{"prepared":28,"raw":28,"locations":157},[],{"escaped":28,"rawEcho":50,"locations":159},[160,163],{"file":149,"line":161,"context":162},53,"raw output",{"file":149,"line":164,"context":162},61,[],[167,186],{"entryPoint":168,"graph":169,"unsanitizedCount":14,"severity":185},"wpam_mc_admin_interface (affmgr-mailchimp-admin-menu.php:9)",{"nodes":170,"edges":182},[171,176],{"id":172,"type":173,"label":174,"file":149,"line":175},"n0","source","$_POST",21,{"id":177,"type":178,"label":179,"file":149,"line":180,"wp_function":181},"n1","sink","update_option() [Settings Manipulation]",23,"update_option",[183],{"from":172,"to":177,"sanitized":184},false,"low",{"entryPoint":187,"graph":188,"unsanitizedCount":14,"severity":185},"\u003Caffmgr-mailchimp-admin-menu> (affmgr-mailchimp-admin-menu.php:0)",{"nodes":189,"edges":192},[190,191],{"id":172,"type":173,"label":174,"file":149,"line":175},{"id":177,"type":178,"label":179,"file":149,"line":180,"wp_function":181},[193],{"from":172,"to":177,"sanitized":184},{"summary":195,"deductions":196},"The \"affiliates-manager-mailchimp-integration\" v1.0.1 plugin exhibits a generally good security posture based on the provided static analysis, with no known CVEs and a minimal attack surface. The absence of AJAX handlers, REST API routes, shortcodes, and cron events with missing authentication checks is a significant strength. The plugin also avoids dangerous functions and file operations, and does not make external HTTP requests, further limiting potential attack vectors.  All SQL queries are reported as using prepared statements, which is excellent practice.\n\nHowever, a critical concern arises from the taint analysis, which indicates two flows with unsanitized paths. This suggests that data processed by the plugin might not be properly validated or cleaned before being used, potentially leading to vulnerabilities like cross-site scripting (XSS) or other injection attacks, even if the specific impact is not classified as critical or high in this analysis. The most significant weakness lies in the complete lack of output escaping. With two outputs analyzed and 0% properly escaped, there is a high probability of reflected or stored XSS vulnerabilities being present.  The absence of nonce and capability checks on any potential entry points, while the attack surface is currently reported as zero, leaves the plugin vulnerable if new entry points are introduced in the future without these security measures.\n\nGiven the lack of historical vulnerabilities, the plugin has likely been maintained with security in mind. However, the identified taint flows and the absolute absence of output escaping are significant red flags. The plugin's strengths in minimizing attack surface and using prepared statements are commendable, but these are overshadowed by the immediate risks of unsanitized data and unescaped output. A cautious approach is recommended when using this plugin until these issues are addressed.",[197,200,203,205],{"reason":198,"points":199},"Unsanitized paths in taint analysis",15,{"reason":201,"points":202},"Output escaping: 0% properly escaped",6,{"reason":204,"points":145},"No nonce checks",{"reason":206,"points":145},"No capability checks","2026-03-16T21:10:18.465Z",{"wat":209,"direct":218},{"assetPaths":210,"generatorPatterns":213,"scriptPaths":214,"versionParams":215},[211,212],"\u002Fwp-content\u002Fplugins\u002Faffiliates-manager-mailchimp-integration\u002Faffmgr-mailchimp-admin-menu.php","\u002Fwp-content\u002Fplugins\u002Faffiliates-manager-mailchimp-integration\u002Faffmgr-mailchimp-action.php",[],[],[216,217],"affiliates-manager-mailchimp-integration\u002Faffmgr-mailchimp-admin-menu.php?ver=1.0.1","affiliates-manager-mailchimp-integration\u002Faffmgr-mailchimp-action.php?ver=1.0.1",{"cssClasses":219,"htmlComments":220,"htmlAttributes":221,"restEndpoints":222,"jsGlobals":223,"shortcodeOutput":224},[],[],[],[],[],[]]