AllGrain.Beer Security & Risk Analysis

wordpress.org/plugins/allgrainbeer

Adds oEmbed support for AllGrain.Beer

10 active installs v1.0.0 PHP + WP 3.7+ Updated Oct 11, 2019
allgrain-beerallgrainbeerbeerembedoembed
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is AllGrain.Beer Safe to Use in 2026?

Generally Safe

Score 85/100

AllGrain.Beer has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 6yr ago
Risk Assessment

The static analysis of the 'allgrainbeer' v1.0.0 plugin reveals a remarkably clean codebase with no identified vulnerabilities in its attack surface, code signals, or taint flows. The absence of AJAX handlers, REST API routes, shortcodes, and cron events, or at least their complete absence of unprotected entry points, indicates a limited attack surface. Furthermore, the complete lack of dangerous functions, reliance on prepared statements for all SQL queries, proper output escaping, and absence of file operations or external HTTP requests are all strong indicators of good security practices. The vulnerability history being entirely clear further reinforces this positive security posture.

However, the complete absence of nonce checks and capability checks across the entire plugin, as indicated by the static analysis, presents a significant concern. While there are currently no exposed entry points, any future additions or modifications that introduce such points without proper authorization checks could be easily exploited. The plugin's current strengths lie in its well-handled internal operations, but its lack of explicit access control mechanisms leaves a gap that needs attention. A proactive approach to implementing these checks is crucial for maintaining its secure state.

Key Concerns

  • Missing nonce checks
  • Missing capability checks
Vulnerabilities
None known

AllGrain.Beer Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

AllGrain.Beer Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

AllGrain.Beer Attack Surface

Entry Points0
Unprotected0
Maintenance & Trust

AllGrain.Beer Maintenance & Trust

Maintenance Signals

WordPress version tested5.2.24
Last updatedOct 11, 2019
PHP min version
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

AllGrain.Beer Developer Profile

Nagmay

5 plugins · 250 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect AllGrain.Beer

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about AllGrain.Beer