Audience Segments Security & Risk Analysis

wordpress.org/plugins/audience-segment-taxonomies

Custom taxonomies based on target audience segments and phases of the buyers journey.

0 active installs v1.1.0 PHP + WP 4.0+ Updated Unknown
audiencebuyer-journeygoogle-analyticsmarketingreporting
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Audience Segments Safe to Use in 2026?

Generally Safe

Score 100/100

Audience Segments has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs
Risk Assessment

The "audience-segment-taxonomies" plugin v1.1.0 exhibits a generally strong security posture based on the static analysis results. The absence of any identified AJAX handlers, REST API routes, shortcodes, or cron events with unprotected entry points is a significant positive. Furthermore, the plugin utilizes prepared statements for all SQL queries and has no recorded vulnerabilities, indicating a commitment to secure coding practices and a history of stability. The presence of nonce checks on all identified points of entry further strengthens its defense against common web attacks.

However, the analysis does highlight areas for improvement. A notable concern is the percentage of improperly escaped output, with 57% of 21 total outputs not being properly escaped. This could expose the site to Cross-Site Scripting (XSS) vulnerabilities if user-supplied data is directly outputted without sanitization. The lack of capability checks on identified entry points, while not immediately alarming given the limited attack surface, could become a risk if new entry points are introduced in future versions without appropriate permission controls. The zero taint analysis flows and lack of dangerous functions are positive indicators, but the output escaping issue warrants attention.

In conclusion, this plugin has a good foundation for security, particularly in its minimal attack surface and SQL query handling. The primary weakness lies in the insufficient output escaping. While the vulnerability history is clean, the potential for XSS due to unescaped output presents a moderate risk that should be addressed to ensure a fully robust security profile.

Key Concerns

  • Improperly escaped output detected
Vulnerabilities
None known

Audience Segments Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Audience Segments Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
9
12 escaped
Nonce Checks
2
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

57% escaped21 total outputs
Attack Surface

Audience Segments Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 14
actionload-post.phpaudience.php:179
actionload-post-new.phpaudience.php:180
actionwp_loadedaudience.php:185
actionadmin_menuaudience.php:221
filterplugin_row_metaaudience.php:222
actionplugins_loadedaudience.php:223
actionparent_fileaudience.php:224
actionwp_headaudience.php:228
actionadd_meta_boxesaudience.php:298
actionsave_postaudience.php:299
actioninitinc\class-audience-taxonomies.php:36
actioninitinc\class-audience-taxonomies.php:37
actioninitinc\class-audience-taxonomies.php:38
actioninitinc\class-audience-taxonomies.php:39
Maintenance & Trust

Audience Segments Maintenance & Trust

Maintenance Signals

WordPress version tested4.7.32
Last updatedUnknown
PHP min version
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Audience Segments Developer Profile

alquemie

2 plugins · 60 total installs

89
trust score
Avg Security Score
93/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Audience Segments

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/audience-segment-taxonomies/assets/css/admin.css/wp-content/plugins/audience-segment-taxonomies/assets/js/admin.js
Script Paths
/wp-content/plugins/audience-segment-taxonomies/assets/js/admin.js
Version Parameters
audience-segment-taxonomies/assets/css/admin.css?ver=audience-segment-taxonomies/assets/js/admin.js?ver=

HTML / DOM Fingerprints

CSS Classes
audience-segment-taxonomies
HTML Comments
<!-- Audience Segment Taxonomies -->
JS Globals
alquemie_audience_ajax_object
FAQ

Frequently Asked Questions about Audience Segments