
Auto-Blogroll Checker Security & Risk Analysis
wordpress.org/plugins/auto-blogroll-checkerAutomatically checks all blogroll links if your link is still live.
Is Auto-Blogroll Checker Safe to Use in 2026?
Generally Safe
Score 85/100Auto-Blogroll Checker has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The auto-blogroll-checker v2.0 plugin exhibits a mixed security posture. On the positive side, it has no known CVEs, a clean vulnerability history, and a minimal attack surface with no apparent AJAX handlers, REST API routes, shortcodes, or cron events. Furthermore, all SQL queries are correctly prepared, and there are no file operations or bundled libraries to worry about. However, significant concerns arise from the static analysis. The presence of a `set_time_limit` function is a potential risk if not handled carefully, and critically, 100% of its outputs are unescaped, indicating a high likelihood of Cross-Site Scripting (XSS) vulnerabilities. The taint analysis also revealed two flows with unsanitized paths, although they were not classified as critical or high severity. The absence of nonce checks and capability checks, coupled with the unescaped output, creates an opening for malicious actors to inject harmful scripts. Overall, while the plugin appears to have a small attack surface and good practices regarding SQL, the lack of output escaping and the presence of unsanitized paths are serious weaknesses that significantly increase its risk profile.
Key Concerns
- Unescaped output detected (100%)
- Flows with unsanitized paths detected
- Dangerous function used (set_time_limit)
- Missing nonce checks
- Missing capability checks
Auto-Blogroll Checker Security Vulnerabilities
Auto-Blogroll Checker Release Timeline
Auto-Blogroll Checker Code Analysis
Dangerous Functions Found
Output Escaping
Data Flow Analysis
Auto-Blogroll Checker Attack Surface
WordPress Hooks 1
Maintenance & Trust
Auto-Blogroll Checker Maintenance & Trust
Maintenance Signals
Community Trust
Auto-Blogroll Checker Alternatives
Link Manager
link-manager
Enables the Link Manager that existed in WordPress until version 3.5.
Eazy Enable Blogroll
eazy-enable-blogroll
Eazy Enable Blogroll brings back the one and only WordPress Blogroll Feature, with nearly one click!
Link View
link-view
Display a link-list or link-slider in a post or page by using a shortcode.
Better Blogroll
better-blogroll
Allows you to display a configurable number of random links from your Wordpress blogroll
Blogroll Links
blogroll-links
Display your blogroll links anywhere in posts or pages using a simple shortcode.
Auto-Blogroll Checker Developer Profile
1 plugin · 10 total installs
How We Detect Auto-Blogroll Checker
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/auto-blogroll-checker/link-checker.cssHTML / DOM Fingerprints
wrap