
AutoConvert Greeklish Permalinks Security & Risk Analysis
wordpress.org/plugins/autoconvert-greeklish-permalinksConvert Greek characters to Latin on all your site's permalinks instantly.
Is AutoConvert Greeklish Permalinks Safe to Use in 2026?
Generally Safe
Score 100/100AutoConvert Greeklish Permalinks has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The static analysis of the "autoconvert-greeklish-permalinks" v4.2.0 plugin reveals a generally good security posture. The absence of dangerous functions, file operations, and external HTTP requests is a positive sign. Crucially, all SQL queries are using prepared statements, which is excellent practice and mitigates SQL injection risks. The limited attack surface, with no AJAX handlers, REST API routes, or shortcodes found, further contributes to its security. The plugin also performs capability checks, indicating an awareness of WordPress security best practices.
However, a significant concern arises from the low percentage of properly escaped output (42%). This suggests that sensitive data displayed to users might be vulnerable to cross-site scripting (XSS) attacks, especially if the plugin handles user-generated content or dynamic data. The lack of nonce checks on entry points, while the attack surface is currently zero, could become a vulnerability if new entry points are introduced in future updates without proper security considerations. The plugin's vulnerability history is clean, with no recorded CVEs, which is a strong indicator of past security diligence or a lack of discovered vulnerabilities, but the output escaping issue should not be overlooked.
In conclusion, while the plugin exhibits strengths in its handling of database queries and a minimal attack surface, the insufficient output escaping represents a notable weakness. The absence of historical vulnerabilities is reassuring, but the current code analysis highlights a potential XSS risk that warrants attention. Addressing the output escaping issue should be a priority to improve the plugin's overall security.
Key Concerns
- Low percentage of properly escaped output
- No nonce checks on entry points
AutoConvert Greeklish Permalinks Security Vulnerabilities
AutoConvert Greeklish Permalinks Release Timeline
AutoConvert Greeklish Permalinks Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
AutoConvert Greeklish Permalinks Attack Surface
WordPress Hooks 13
Maintenance & Trust
AutoConvert Greeklish Permalinks Maintenance & Trust
Maintenance Signals
Community Trust
AutoConvert Greeklish Permalinks Alternatives
Greeklish Slugs
skp-greeklish-slugs
Translitaration of greek characters to latin for post permalinks with some extra options. (greeklish)
Greek Multi Tool – Greeklish Slugs, Permalinks & Transliteration
greek-multi-tool
The only lightweight plugin you need for Greek WordPress sites. Auto-convert Greeklish slugs, optimize permalinks, and enhance search without bloat.
Longer Permalinks
longer-permalinks
Allow long permalinks in your WordPress. Useful especially for using non-latin characters in permalinks. Respects future relevant core updates.
Wenprise Pinyin Slug
wenprise-pinyin-slug
自动转换 WordPress 中的中文文章别名、分类项目别名、图片文件名称为汉语拼音或英文翻译。
Pinyin Slugs
so-pinyin-slugs
Transforms Simplified or Traditional Chinese character titles into Pinyin to create a permalink friendly slug.
AutoConvert Greeklish Permalinks Developer Profile
1 plugin · 30K total installs
How We Detect AutoConvert Greeklish Permalinks
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/autoconvert-greeklish-permalinks/admin/css/agp-admin.css/wp-content/plugins/autoconvert-greeklish-permalinks/admin/js/agp-admin.js/wp-content/plugins/autoconvert-greeklish-permalinks/public/css/agp-public.css/wp-content/plugins/autoconvert-greeklish-permalinks/public/js/agp-public.js/wp-content/plugins/autoconvert-greeklish-permalinks/admin/js/agp-admin.js/wp-content/plugins/autoconvert-greeklish-permalinks/public/js/agp-public.jsautoconvert-greeklish-permalinks/admin/css/agp-admin.css?ver=autoconvert-greeklish-permalinks/admin/js/agp-admin.js?ver=autoconvert-greeklish-permalinks/public/css/agp-public.css?ver=autoconvert-greeklish-permalinks/public/js/agp-public.js?ver=HTML / DOM Fingerprints
agp-settings-viewagp-converter-viewagp-admin-view<!-- Currently plugin version. --><!-- Start at version 1.0.0 and use SemVer - https://semver.org --><!-- Rename this for your plugin and update it as you release new versions. --><!-- If this file is called directly, abort. -->+26 moredata-slug-typedata-auto-convertagp_admin_params