Auto Tagger for Amazon Affiliate Links Security & Risk Analysis

wordpress.org/plugins/auto-tagger-for-amazon

Set your Amazon Affiliate Tracking ID (example-20) for your site just once.

300 active installs v0.2 PHP + WP 5.0+ Updated Feb 21, 2026
affiliatesamazonassociatesautomationlinks
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Auto Tagger for Amazon Affiliate Links Safe to Use in 2026?

Generally Safe

Score 100/100

Auto Tagger for Amazon Affiliate Links has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The auto-tagger-for-amazon plugin version 0.2 exhibits a strong security posture based on the provided static analysis. The absence of any detected AJAX handlers, REST API routes, shortcodes, or cron events with missing authentication checks indicates a minimal attack surface. Furthermore, the code signals are overwhelmingly positive, with no dangerous functions, all SQL queries utilizing prepared statements, and all output properly escaped. The lack of file operations, external HTTP requests, and the absence of any identified taint flows further bolster its security. The plugin also has no recorded vulnerability history, suggesting a history of secure development. However, a notable concern is the complete absence of nonce checks and capability checks. While the current attack surface is zero, any future introduction of entry points without these fundamental security measures could expose the plugin to significant risks, such as Cross-Site Request Forgery (CSRF) and privilege escalation vulnerabilities. The plugin's strengths lie in its current minimal attack surface and robust handling of SQL and output. Its primary weakness is the lack of implemented authorization checks, which, while not an immediate threat given its current state, represents a critical oversight for future maintainability and extensibility.

Key Concerns

  • Missing nonce checks
  • Missing capability checks
Vulnerabilities
None known

Auto Tagger for Amazon Affiliate Links Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Auto Tagger for Amazon Affiliate Links Release Timeline

No version history available.
Code Analysis
Analyzed Mar 16, 2026

Auto Tagger for Amazon Affiliate Links Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
5 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped5 total outputs
Attack Surface

Auto Tagger for Amazon Affiliate Links Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 3
actionadmin_menuauto-tagger-for-amazon.php:19
actionadmin_initauto-tagger-for-amazon.php:24
actionwp_footerauto-tagger-for-amazon.php:55
Maintenance & Trust

Auto Tagger for Amazon Affiliate Links Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedFeb 21, 2026
PHP min version
Downloads5K

Community Trust

Rating100/100
Number of ratings2
Active installs300
Developer Profile

Auto Tagger for Amazon Affiliate Links Developer Profile

Web Guy

34 plugins · 52K total installs

79
trust score
Avg Security Score
100/100
Avg Patch Time
629 days
View full developer profile
Detection Fingerprints

How We Detect Auto Tagger for Amazon Affiliate Links

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

CSS Classes
atfa
FAQ

Frequently Asked Questions about Auto Tagger for Amazon Affiliate Links