
Awesome Click To Tweet Security & Risk Analysis
wordpress.org/plugins/awesome-click-to-tweetThe best click to tweet plugin. Insert customizable click to tweet boxes with customizable: fonts, templates, button text and animations into your Wor …
Is Awesome Click To Tweet Safe to Use in 2026?
Generally Safe
Score 85/100Awesome Click To Tweet has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "awesome-click-to-tweet" plugin v1.0.7 exhibits a strong security posture based on the provided static analysis and vulnerability history. The absence of dangerous functions, SQL queries without prepared statements, and external HTTP requests are positive indicators. Furthermore, the high percentage of properly escaped output and the presence of capability checks suggest good development practices aimed at preventing common web vulnerabilities. The plugin also has a clean vulnerability history with no known CVEs, which is a significant strength.
While the plugin demonstrates good security practices, there are a few areas that warrant attention. The analysis indicates a lack of nonce checks on the single shortcode entry point. While there are capability checks, the absence of nonce verification could potentially open the door to Cross-Site Request Forgery (CSRF) attacks if the shortcode's functionality is sensitive or can be manipulated by an attacker to perform unintended actions on behalf of a logged-in user. The taint analysis revealing zero flows, while positive, is limited by the fact that zero flows were analyzed, making it difficult to definitively rule out all potential taint-related issues.
In conclusion, "awesome-click-to-tweet" v1.0.7 appears to be a relatively secure plugin due to its clean code signals and lack of historical vulnerabilities. The primary concern lies with the potential for CSRF due to the absence of nonce checks on its sole entry point. Addressing this would further solidify its security and mitigate a common attack vector, making it a more robust and trustworthy plugin.
Key Concerns
- Missing nonce check on shortcode
Awesome Click To Tweet Security Vulnerabilities
Awesome Click To Tweet Release Timeline
Awesome Click To Tweet Code Analysis
Bundled Libraries
Output Escaping
Awesome Click To Tweet Attack Surface
Shortcodes 1
WordPress Hooks 10
Maintenance & Trust
Awesome Click To Tweet Maintenance & Trust
Maintenance Signals
Community Trust
Awesome Click To Tweet Alternatives
Open Graph and Twitter Card Tags
wonderm00ns-simple-facebook-open-graph-tags
Improve social media sharing by inserting Facebook Open Graph, Twitter Card, and SEO Meta Tags on your WordPress website pages, posts, WooCommerce pro …
Social Media Widget
social-media-widget
Adds links to all of your social media and sharing site profiles. Tons of icons come in 3 sizes, 4 icon styles, and 4 animations.
Social Snap — Social Share Buttons & Click to Tweet
socialsnap
Social sharing plugin with share buttons for Facebook, X (Twitter), LinkedIn and more. Includes Click to Tweet feature.
Social Media Auto Publish
social-media-auto-publish
Publish posts automatically to social media networks like Facebook, Twitter, Instagram, Tumblr, LinkedIn, Threads and Telegram.
Autopost for X (formerly Autoshare for Twitter)
autoshare-for-twitter
Automatically shares the post title or custom message and a link to the post to X/Twitter.
Awesome Click To Tweet Developer Profile
5 plugins · 2K total installs
How We Detect Awesome Click To Tweet
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/awesome-click-to-tweet/assets/css/style.css/wp-content/plugins/awesome-click-to-tweet/assets/css/icomoon.css/wp-content/plugins/awesome-click-to-tweet/assets/css/animate.min.css/wp-content/plugins/awesome-click-to-tweet/assets/css/admin.cssstyle.css?v1.0.0animate.min.css?v3.5.2admin.css?v1.0.0HTML / DOM Fingerprints
tld-actt-bbuttontld-actt-dashedtld-actt-minimalistanimatedicon-twittertld-actt-tweet-containertld-actt-tweet-texttld-actt-white-btn-text+2 moredata-maskdata-tweetdata-btn-textdata-animdata-durationdata-delay+3 more<div id="tld-actt-tweet-container"<a href="https://twitter.com/intent/tweet?text=<span class="icon-twitter"></span>