autometa Security & Risk Analysis

wordpress.org/plugins/autometa

It reproduces metadata information and it generates taxonomy clouds and comment and search forms to publications simply via shortcodes.

40 active installs v2.2 PHP + WP 4.4.0+ Updated Jan 18, 2018
automationmetadatapackreplicationshortcode
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is autometa Safe to Use in 2026?

Generally Safe

Score 85/100

autometa has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 8yr ago
Risk Assessment

The autometa v2.2 plugin exhibits a generally good security posture, with no known vulnerabilities or critical findings in the static and taint analysis. The absence of dangerous functions, SQL injection risks due to prepared statements, file operations, and external HTTP requests is highly commendable. Furthermore, the plugin demonstrates a commitment to secure coding practices by not bundling external libraries, which often become vectors for vulnerabilities if not meticulously maintained. The presence of a comprehensive attack surface through 28 shortcodes, while noted, is mitigated by the fact that none of these are flagged as unprotected entry points. The primary concern lies in the output escaping, where only 44% of outputs are properly escaped. This indicates a potential for Cross-Site Scripting (XSS) vulnerabilities if user-supplied data is displayed without adequate sanitization through the remaining 56% of unescaped outputs. The lack of any recorded historical vulnerabilities is a positive indicator, suggesting a proactive approach to security by the developers, but the output escaping issue warrants attention to ensure a more robust security profile.

Key Concerns

  • Low percentage of properly escaped output
Vulnerabilities
None known

autometa Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

autometa Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
5
4 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

44% escaped9 total outputs
Attack Surface

autometa Attack Surface

Entry Points28
Unprotected0

Shortcodes 28

[titul] autometa.php:33
[titulink] autometa.php:40
[autua] autometa.php:47
[autualink] autometa.php:54
[autuaguest] autometa.php:61
[dated] autometa.php:68
[urlug] autometa.php:75
[urlink] autometa.php:82
[urlinked] autometa.php:89
[thumb] autometa.php:96
[sumus] autometa.php:103
[cats] autometa.php:111
[tags] autometa.php:119
[catag] autometa.php:135
[pfcats] autometa.php:143
[pfatts] autometa.php:151
[folio] autometa.php:167
[woocats] autometa.php:175
[wootags] autometa.php:183
[woodo] autometa.php:199
[tagcloud] autometa.php:219
[cloud] autometa.php:239
[ments] autometa.php:257
[recents] autometa.php:276
[forma] autometa.php:660
[loupe] autometa.php:667
[nowon] autometa.php:674
[nowadays] autometa.php:681
Maintenance & Trust

autometa Maintenance & Trust

Maintenance Signals

WordPress version tested4.9.29
Last updatedJan 18, 2018
PHP min version
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs40
Developer Profile

autometa Developer Profile

JorgeAmVF

7 plugins · 90 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect autometa

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/autometa/autometa.js/wp-content/plugins/autometa/autometa.css
Script Paths
/wp-content/plugins/autometa/autometa.js
Version Parameters
autometa/autometa.js?ver=autometa/autometa.css?ver=

HTML / DOM Fingerprints

CSS Classes
autometa
Data Attributes
id="titul"id="titulink"id="autua"id="autualink"id="autuaguest"id="dated"+16 more
Shortcode Output
<span id="titul"<span id="titulink"<span id="autua"<span id="autualink"
FAQ

Frequently Asked Questions about autometa