Are You Sure Security & Risk Analysis

wordpress.org/plugins/are-you-sure

Are You Sure? adds a confirmation dialogue to the Publish button.

20 active installs v0.2 PHP + WP 3.0+ Updated Sep 27, 2016
confirmationpublishing
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Are You Sure Safe to Use in 2026?

Generally Safe

Score 85/100

Are You Sure has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 9yr ago
Risk Assessment

Based on the provided static analysis and vulnerability history, the "are-you-sure" plugin v0.2 exhibits a strong security posture. The static analysis reveals no identified attack surface points, dangerous functions, raw SQL queries, unescaped output, file operations, external HTTP requests, or security checks like nonces or capability checks. This lack of exploitable entry points and adherence to secure coding practices is a significant positive indicator. The taint analysis also shows no detected flows with unsanitized paths, further reinforcing the absence of readily apparent vulnerabilities.

The vulnerability history is equally reassuring, with zero recorded CVEs of any severity. This suggests a consistent track record of secure development or a lack of prior security scrutiny. The absence of any historical vulnerabilities implies that the plugin has either been robustly developed from its inception or has successfully addressed any past issues without leaving a public record.

While the plugin's current state appears very secure with no identified risks, it's important to acknowledge that static analysis is not exhaustive and does not guarantee complete immunity from future vulnerabilities, especially with a small attack surface and limited features. However, given the data, the plugin is currently assessed as low risk.

Vulnerabilities
None known

Are You Sure Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Are You Sure Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

Are You Sure Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 2
actioninitareyousure.php:29
actionadmin_enqueue_scriptsareyousure.php:32
Maintenance & Trust

Are You Sure Maintenance & Trust

Maintenance Signals

WordPress version tested4.6.30
Last updatedSep 27, 2016
PHP min version
Downloads2K

Community Trust

Rating100/100
Number of ratings1
Active installs20
Developer Profile

Are You Sure Developer Profile

currencywiki

17 plugins · 4K total installs

80
trust score
Avg Security Score
89/100
Avg Patch Time
35 days
View full developer profile
Detection Fingerprints

How We Detect Are You Sure

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/are-you-sure/js/are-you-sure.js
Script Paths
are-you-sure/js/are-you-sure.js
Version Parameters
are-you-sure/js/are-you-sure.js?ver=

HTML / DOM Fingerprints

JS Globals
prefix_object_name
FAQ

Frequently Asked Questions about Are You Sure