
Alceris Analytics Security & Risk Analysis
wordpress.org/plugins/alceris-analyticsPowerful privacy friendly, GDPR compliant Google Analytics alternative.
Is Alceris Analytics Safe to Use in 2026?
Generally Safe
Score 85/100Alceris Analytics has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The alceris-analytics plugin version 1.0.0 demonstrates a strong security posture based on the provided static analysis and vulnerability history. The complete absence of AJAX handlers, REST API routes, shortcodes, and cron events with open attack surfaces significantly limits potential entry points for attackers. Furthermore, the code's use of prepared statements for all SQL queries and the absence of dangerous functions or file operations indicate robust development practices. The presence of a capability check, even if only one, is a positive sign of authorization being considered.
While the static analysis reveals no critical or high severity taint flows and a clean vulnerability history, a minor concern arises from the output escaping. With 50% of outputs not properly escaped, there is a moderate risk of cross-site scripting (XSS) vulnerabilities if user-supplied data is directly outputted without sanitization in those instances. This is the most prominent area for improvement. Overall, the plugin appears well-secured with no known vulnerabilities and a limited attack surface, but attention to output escaping would further enhance its security.
Key Concerns
- 50% of outputs not properly escaped
Alceris Analytics Security Vulnerabilities
Alceris Analytics Release Timeline
Alceris Analytics Code Analysis
Output Escaping
Alceris Analytics Attack Surface
WordPress Hooks 2
Maintenance & Trust
Alceris Analytics Maintenance & Trust
Maintenance Signals
Community Trust
Alceris Analytics Alternatives
Google Analytics Opt-Out
google-analytics-opt-out
Provides opt-out functionality for Google Analytics.
Opt-Out for Google Analytics (DSGVO / GDPR)
opt-out-for-google-analytics
Allows the user to opt-out of Google Analytics tracking. DSGVO / GDPR.
JENTIS – simply better data
jentis
JENTIS plugin is implementing the JENTIS Tracking Code to the web page and provides the Signals to JENTIS Runtime Environment.
Compliance by Hu-manity.co
cookie-notice
Intentional Consent for WordPress — GDPR, CCPA, CPRA & ePrivacy compliance with consent records, autoblocking & Google Consent Mode v2.
GDPR Cookie Compliance – Cookie Banner, Cookie Consent, Cookie Notice for CCPA, EU Cookie Law
gdpr-cookie-compliance
Cookie notice banner for GDPR, CCPA, EU cookie law, data protection and privacy regulations and other cookie law and consent notice requirements on yo …
Alceris Analytics Developer Profile
1 plugin · 0 total installs
How We Detect Alceris Analytics
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
https://alceris.com/script.jsHTML / DOM Fingerprints
data-id