
Author Signature Security & Risk Analysis
wordpress.org/plugins/author-signatureThis plugin appends the author's signature to blog posts or/and pages.
Is Author Signature Safe to Use in 2026?
Generally Safe
Score 92/100Author Signature has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "author-signature" plugin version 1.3.8 exhibits a strong security posture based on the provided static analysis. The absence of any detected AJAX handlers, REST API routes, shortcodes, or cron events significantly limits the potential attack surface. The code demonstrates good security practices, with all SQL queries utilizing prepared statements and all output being properly escaped. There are no identified dangerous functions, file operations, or external HTTP requests, further bolstering its security. The presence of one capability check is a positive indicator, though the lack of nonce checks across any entry points is a notable oversight, especially if functionality were to be added later.
The taint analysis reveals no identified flows, indicating no apparent risks of unsanitized data leading to vulnerabilities. The vulnerability history is equally clean, with no recorded CVEs of any severity. This history suggests a plugin that has either been consistently secure or has not been a target for exploitation. However, the lack of nonce checks, while not currently exploitable given the zero entry points, represents a potential future weakness if new features are introduced without proper authorization mechanisms.
Key Concerns
- Missing nonce checks on potential entry points
Author Signature Security Vulnerabilities
Author Signature Code Analysis
Output Escaping
Author Signature Attack Surface
WordPress Hooks 8
Maintenance & Trust
Author Signature Maintenance & Trust
Maintenance Signals
Community Trust
Author Signature Alternatives
AB Post Signature
ab-post-signature
Plugin allows you to add a signature after every post.
WP Post Signature
wp-post-signature
This plugin allows you to append a signature after every post. Some variables can be used.
TinyMCE Signature
tinymce-signature
Automatically adds a signature to your posts. Configurable via TinyMCE on the profile page.
DT Author Box
dt-author-box
Easily add an author box bio signature with custom profile image and social profile buttons to the end of each author's posts
Awesome Author Box Widget
awesome-author-box-widget
Awesome Author Box Wigets
Author Signature Developer Profile
2 plugins · 20 total installs
How We Detect Author Signature
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/author-signature/admin/css/style.css/wp-content/plugins/author-signature/public/css/style.css/wp-content/plugins/author-signature/admin/js/media-lib-uploader.jsauthor-signature/admin/css/style.css?ver=author-signature/public/css/style.css?ver=author-signature/admin/js/media-lib-uploader.js?ver=HTML / DOM Fingerprints
my-signaturesignature-woo-activatedwoo-deactivatedsignature-namealt="Author Signature for Pages"alt="Author Signature for Posts"