
AG: Twitter Security & Risk Analysis
wordpress.org/plugins/ag-twitterAG Twitter is sidebar widget to display your twitter timeline.
Is AG: Twitter Safe to Use in 2026?
Generally Safe
Score 100/100AG: Twitter has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
Based on the static analysis, "ag-twitter" v1.1.1 presents a seemingly secure profile. The absence of identified AJAX handlers, REST API routes, shortcodes, and cron events significantly limits the plugin's attack surface. Furthermore, the fact that all SQL queries utilize prepared statements and no dangerous functions, file operations, or external HTTP requests were detected are all positive indicators of good coding practices. The taint analysis also shows no identified vulnerabilities. The plugin's vulnerability history is clean, with no recorded CVEs, which suggests a history of responsible development or minimal exposure. However, a significant concern is that 100% of the 17 identified output operations are not properly escaped. This indicates a high risk of Cross-Site Scripting (XSS) vulnerabilities, where malicious scripts could be injected into the WordPress site through the plugin's output. While the lack of known vulnerabilities is a strength, the unescaped output represents a critical weakness that needs immediate attention. The absence of nonce and capability checks, although not directly flagged as vulnerabilities in this analysis, are also concerning practices that could be exploited in conjunction with other weaknesses.
Key Concerns
- All output is unescaped
- No nonce checks found
- No capability checks found
AG: Twitter Security Vulnerabilities
AG: Twitter Code Analysis
Output Escaping
AG: Twitter Attack Surface
WordPress Hooks 1
Maintenance & Trust
AG: Twitter Maintenance & Trust
Maintenance Signals
Community Trust
AG: Twitter Alternatives
Simple Twitter Plugin
simple-twitter-plugin
Display timeline for Tweets from an individual user, a user’s favorites, Twitter lists, or any search query or hashtag as a widget in your sidebar.
Social Networks Timelines
social-networks-timelines
This plugin adds social network timelines to the template. These timelines are configured from the tab "edit" to the plugin itself.
Nextend Social Login and Register
nextend-facebook-connect
One click registration & login plugin for Facebook, Google, X (formerly Twitter) and more. Quick setup and easy configuration.
Open Graph and Twitter Card Tags
wonderm00ns-simple-facebook-open-graph-tags
Improve social media sharing by inserting Facebook Open Graph, Twitter Card, and SEO Meta Tags on your WordPress website pages, posts, WooCommerce pro …
Social Media Widget
social-media-widget
Adds links to all of your social media and sharing site profiles. Tons of icons come in 3 sizes, 4 icon styles, and 4 animations.
AG: Twitter Developer Profile
1 plugin · 10 total installs
How We Detect AG: Twitter
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/ag-twitter/style.css/wp-content/plugins/ag-twitter/ag-twitter-script.js/wp-content/plugins/ag-twitter/ag-twitter-script.jsag-twitter/style.css?ver=ag-twitter-script.js?ver=HTML / DOM Fingerprints
tweetstweethorarioerror<ul class="tweets"><li class="tweet"><span class="horario"><span class="error">Não foi possível carregar a timeline :´(</span>