Affiliate Disclosure and Disclaimer – Affylite Security & Risk Analysis

wordpress.org/plugins/affylite

Affylite - Easy Affiliate Disclosure and Disclaimer

50 active installs v1.2 PHP 5.6+ WP 5.0+ Updated Sep 27, 2020
affiliateaffylitedisclaimerdisclosurelite
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Affiliate Disclosure and Disclaimer – Affylite Safe to Use in 2026?

Generally Safe

Score 85/100

Affiliate Disclosure and Disclaimer – Affylite has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5yr ago
Risk Assessment

The static analysis of Affylite v1.2 reveals a generally strong security posture with no identified dangerous functions, SQL injection vulnerabilities, or external HTTP requests. The absence of cron events, shortcodes, and REST API routes also contributes to a limited attack surface. However, a significant concern arises from the complete lack of output escaping, meaning that any data processed or displayed by the plugin is potentially vulnerable to cross-site scripting (XSS) attacks. Furthermore, the absence of nonce and capability checks on all entry points, though currently nonexistent, suggests a potential for future vulnerabilities if new entry points are introduced without proper security measures. The vulnerability history shows no recorded CVEs, which is a positive indicator of the plugin's historical stability, but it doesn't negate the immediate risks identified in the code analysis.

Key Concerns

  • Output escaping is not implemented
  • No nonce checks on any entry points
  • No capability checks on any entry points
Vulnerabilities
None known

Affiliate Disclosure and Disclaimer – Affylite Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Affiliate Disclosure and Disclaimer – Affylite Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
1
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

0% escaped1 total outputs
Attack Surface

Affiliate Disclosure and Disclaimer – Affylite Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 3
actionadmin_menuaffylite.php:14
actionadmin_initaffylite.php:15
filterthe_contentaffylite.php:89
Maintenance & Trust

Affiliate Disclosure and Disclaimer – Affylite Maintenance & Trust

Maintenance Signals

WordPress version tested5.5.18
Last updatedSep 27, 2020
PHP min version5.6
Downloads2K

Community Trust

Rating100/100
Number of ratings1
Active installs50
Developer Profile

Affiliate Disclosure and Disclaimer – Affylite Developer Profile

John

1 plugin · 50 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Affiliate Disclosure and Disclaimer – Affylite

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

Shortcode Output
<p><em>We use affiliate links. If you purchase something using one of these links, we may receive compensation or commission.</em></p>
FAQ

Frequently Asked Questions about Affiliate Disclosure and Disclaimer – Affylite