Appmaker WP – Convert WordPress to Native Android & iOS App Security & Risk Analysis

wordpress.org/plugins/appmaker-wp-mobile-app-manager

Appmaker WP helps you convert your wordpress news website or wp magazine into native iOS and Android mobile apps in minutes.

200 active installs v0.4.3 PHP + WP 4.4+ Updated Dec 11, 2020
android-appappmakermobile-appmobile-app-pluginnative-mobile-app
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Appmaker WP – Convert WordPress to Native Android & iOS App Safe to Use in 2026?

Generally Safe

Score 85/100

Appmaker WP – Convert WordPress to Native Android & iOS App has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5yr ago
Risk Assessment

Based on the static analysis and vulnerability history, the "appmaker-wp-mobile-app-manager" plugin v0.4.3 exhibits a generally positive security posture, with no immediately apparent critical vulnerabilities detected in the code. The absence of dangerous functions, SQL queries executed with prepared statements, file operations, external HTTP requests, and a clean vulnerability history are all strong indicators of good coding practices and a focus on security. The plugin also shows no signs of bundled libraries, which can sometimes introduce vulnerabilities if outdated.

However, a significant concern arises from the output escaping signals. With 100% of outputs not being properly escaped, this presents a clear risk of Cross-Site Scripting (XSS) vulnerabilities. If any user-controlled input is reflected directly in the output without proper sanitization, an attacker could inject malicious scripts. Additionally, the lack of capability checks, nonce checks, and a completely clean entry point analysis (though indicating no *detected* issues) doesn't definitively prove security; it might suggest a very limited scope or that more advanced analysis is needed to uncover potential weaknesses. The plugin's current version has no recorded vulnerabilities, which is a positive sign, but the lack of escape on outputs remains a notable concern that requires attention.

Key Concerns

  • Unescaped output detected
Vulnerabilities
None known

Appmaker WP – Convert WordPress to Native Android & iOS App Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Appmaker WP – Convert WordPress to Native Android & iOS App Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
1
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

0% escaped1 total outputs
Attack Surface

Appmaker WP – Convert WordPress to Native Android & iOS App Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 4
actionplugins_loadedplugin.php:34
actionadmin_noticesplugin.php:36
actionadmin_noticesplugin.php:144
actionactivated_pluginplugin.php:167
Maintenance & Trust

Appmaker WP – Convert WordPress to Native Android & iOS App Maintenance & Trust

Maintenance Signals

WordPress version tested5.6.17
Last updatedDec 11, 2020
PHP min version
Downloads69K

Community Trust

Rating80/100
Number of ratings5
Active installs200
Developer Profile

Appmaker WP – Convert WordPress to Native Android & iOS App Developer Profile

Appmaker.xyz

2 plugins · 210 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Appmaker WP – Convert WordPress to Native Android & iOS App

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/appmaker-wp-mobile-app-manager/lib/appmaker-wp-admin.css/wp-content/plugins/appmaker-wp-mobile-app-manager/lib/appmaker-wp-admin.js/wp-content/plugins/appmaker-wp-mobile-app-manager/lib/appmaker-wp-options.css/wp-content/plugins/appmaker-wp-mobile-app-manager/lib/appmaker-wp-options.js

HTML / DOM Fingerprints

CSS Classes
warning-boxappmaker-wp-admin
Data Attributes
data-api-key
JS Globals
appmaker_wp_data
REST Endpoints
/wp-json/appmaker-wp/v1/update-settings
FAQ

Frequently Asked Questions about Appmaker WP – Convert WordPress to Native Android & iOS App