
AP SMS Manager Security & Risk Analysis
wordpress.org/plugins/ap-sms-managerAP SMS Manager helps you turn your website into an SMS as a service web app. It makes it a breeze to send bulk sms messages to your contacts, using pr …
Is AP SMS Manager Safe to Use in 2026?
Generally Safe
Score 85/100AP SMS Manager has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "ap-sms-manager" v0.0.6 plugin exhibits a generally strong security posture based on the provided static analysis. There are no detected dangerous functions, SQL queries are all prepared, and output is properly escaped. Crucially, the taint analysis reveals no critical or high severity flows, and there are no recorded historical vulnerabilities. This indicates a thoughtful development process regarding common web application security threats. The absence of external HTTP requests and file operations further reduces potential attack vectors. The plugin also utilizes bundled libraries like Lodash and Guzzle, which are common and generally well-maintained.
However, the lack of any nonces or capability checks, combined with zero entry points identified, raises a significant concern. While no *active* vulnerabilities are reported, this absence of security measures on potential entry points suggests a potential blind spot. If new entry points are introduced or if the analysis missed a subtle way to interact with the plugin's logic, the lack of these fundamental security checks could expose the site to attacks that might otherwise be prevented. The vulnerability history being completely clean is a positive sign, but it cannot entirely mitigate the risk posed by the missing authentication and authorization checks on any potential (even if currently unidentified) entry points.
Key Concerns
- Missing nonce checks on entry points
- Missing capability checks on entry points
AP SMS Manager Security Vulnerabilities
AP SMS Manager Code Analysis
Bundled Libraries
SQL Query Safety
AP SMS Manager Attack Surface
WordPress Hooks 2
Maintenance & Trust
AP SMS Manager Maintenance & Trust
Maintenance Signals
Community Trust
AP SMS Manager Alternatives
TerraReach SMS for WooCommerce
terrareach-sms-for-woocommerce
SMS gateway for Sri Lanka to send transactional or bulk SMS to your customers via WooCommerse store.
Africa's Talking SMS Plugin
at-sms
Send SMS from your Wordpress Website Dashboard using the Africa's Talking Bulk SMS API.
123eworld SMS
123eworld-sms
Configure 123eworld account details and send sms using 123eworld SMS API.
New Post SMS Notifications
new-post-sms-notifications
Sends SMS notifications to your clients for new post status changes. You can also receive an SMS message when a new new post is received.
Newsletters, Email Marketing, SMS and Popups by Omnisend
omnisend
Newsletters, Email Marketing, Email Automation, Forms, Pop Up, SMS by Omnisend
AP SMS Manager Developer Profile
1 plugin · 10 total installs
How We Detect AP SMS Manager
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/ap-sms-manager/assets/styles/app.css/wp-content/plugins/ap-sms-manager/assets/js/app.js/wp-content/plugins/ap-sms-manager/assets/fonts/fonts.css/wp-content/plugins/ap-sms-manager/assets/js/app.jsap-sms-manager/assets/styles/app.css?ver=ap-sms-manager/assets/js/app.js?ver=ap-sms-manager/assets/fonts/fonts.css?ver=0.0.1HTML / DOM Fingerprints
aps_globals_one/wp-json/apps-bay-sms-manager/v1/contacts/sync/woocommerce