JSON-LD Schema for Yandex Metrica Security & Risk Analysis

wordpress.org/plugins/antoniolite-yandex-metrica-json-ld-schema

Insert the needed JSON-LD Schema in your post pages so you can use the content reports in Yandex Metrica

10 active installs v1.1 PHP 5.6+ WP 4.6+ Updated Unknown
analyticscontent-analyticsmetricayandexyandex-metrica
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is JSON-LD Schema for Yandex Metrica Safe to Use in 2026?

Generally Safe

Score 100/100

JSON-LD Schema for Yandex Metrica has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs
Risk Assessment

The "antoniolite-yandex-metrica-json-ld-schema" v1.1 plugin exhibits a generally strong security posture based on the provided static analysis. The absence of identified AJAX handlers, REST API routes, shortcodes, and cron events with unprotected entry points indicates a minimal attack surface. Furthermore, the code signals show no dangerous functions, no direct SQL queries (all using prepared statements), and no file operations, all of which are positive security indicators. The plugin also avoids bundled libraries and shows no taint analysis findings, suggesting a lack of common vulnerabilities related to data flow manipulation.

However, a significant concern arises from the output escaping. With 31 total outputs and only 19% properly escaped, a substantial portion of the plugin's output is at risk of Cross-Site Scripting (XSS) vulnerabilities. While there are no identified vulnerabilities in its history, this lack of historical issues might be due to its relatively simple functionality or a lack of prior thorough analysis rather than inherent invulnerability. The plugin also performs an external HTTP request, which, while not inherently a vulnerability, warrants review for secure implementation to prevent potential man-in-the-middle attacks or data exfiltration if the external endpoint is compromised.

In conclusion, while the plugin demonstrates good practices in limiting its attack surface and avoiding risky coding patterns like raw SQL, the low rate of proper output escaping is a critical weakness that needs immediate attention. The presence of an external HTTP request also adds a minor point of concern. The absence of historical vulnerabilities is a positive sign, but it should not overshadow the identified risks in the static analysis.

Key Concerns

  • Low percentage of properly escaped output
  • External HTTP request made
Vulnerabilities
None known

JSON-LD Schema for Yandex Metrica Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

JSON-LD Schema for Yandex Metrica Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
25
6 escaped
Nonce Checks
0
Capability Checks
1
File Operations
0
External Requests
1
Bundled Libraries
0

Output Escaping

19% escaped31 total outputs
Attack Surface

JSON-LD Schema for Yandex Metrica Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 4
filterwpseo_json_ld_outputyandex-metrica-json-ld-schema.php:18
actionadmin_inityandex-metrica-json-ld-schema.php:38
actionadmin_menuyandex-metrica-json-ld-schema.php:40
actionwp_headyandex-metrica-json-ld-schema.php:304
Maintenance & Trust

JSON-LD Schema for Yandex Metrica Maintenance & Trust

Maintenance Signals

WordPress version tested5.5.18
Last updatedUnknown
PHP min version5.6
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

JSON-LD Schema for Yandex Metrica Developer Profile

antoniolite

2 plugins · 10 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect JSON-LD Schema for Yandex Metrica

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/antoniolite-yandex-metrica-json-ld-schema/css/admin.css/wp-content/plugins/antoniolite-yandex-metrica-json-ld-schema/js/admin.js

HTML / DOM Fingerprints

HTML Comments
<!-- JSON-LD Schema for Yandex Metrica -->
FAQ

Frequently Asked Questions about JSON-LD Schema for Yandex Metrica