BadgeOS AffiliateWP Integration Security & Risk Analysis

wordpress.org/plugins/badgeos-affiliatewp

BadgeOS

0 active installs v1.0 PHP 7.0+ WP 4.0+ Updated Aug 19, 2020
affiliateaffiliatewpbadgebadgesopenbadges
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is BadgeOS AffiliateWP Integration Safe to Use in 2026?

Generally Safe

Score 85/100

BadgeOS AffiliateWP Integration has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5yr ago
Risk Assessment

The badgeos-affiliatewp plugin version 1.0 exhibits a strong security posture based on the provided static analysis. The absence of any identified entry points like AJAX handlers, REST API routes, shortcodes, or cron events significantly limits the plugin's attack surface, making it difficult for attackers to find an initial foothold. Furthermore, the code signals are generally positive, with no dangerous functions or external HTTP requests observed. The use of prepared statements for all SQL queries is a robust defense against SQL injection vulnerabilities, and the majority of output appears to be properly escaped, mitigating cross-site scripting (XSS) risks. The plugin also correctly implements capability checks for its operations.

Key Concerns

  • No nonce checks found
  • 82% output escaping (18% unescaped)
Vulnerabilities
None known

BadgeOS AffiliateWP Integration Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

BadgeOS AffiliateWP Integration Release Timeline

No version history available.
Code Analysis
Analyzed Apr 16, 2026

BadgeOS AffiliateWP Integration Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
2 prepared
Unescaped Output
3
14 escaped
Nonce Checks
0
Capability Checks
2
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared2 total queries

Output Escaping

82% escaped17 total outputs
Attack Surface

BadgeOS AffiliateWP Integration Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 24
actionadmin_noticesbadgeos-affiliatewp.php:69
actionplugins_loadedbadgeos-affiliatewp.php:77
actionplugins_loadedincludes/badgeos/bos-affwp-integration.php:58
actioninitincludes/badgeos/rules-engine.php:37
filteruser_deserves_achievementincludes/badgeos/rules-engine.php:282
filterbadgeos_is_achievementincludes/badgeos/rules-engine.php:295
filterbadgeos_user_deserves_rank_stepincludes/badgeos/rules-engine.php:357
filterbadgeos_user_deserves_rank_awardincludes/badgeos/rules-engine.php:414
filterbadgeos_user_deserves_credit_awardincludes/badgeos/rules-engine.php:474
filterbadgeos_user_deserves_credit_deductincludes/badgeos/rules-engine.php:535
filterbadgeos_get_step_requirementsincludes/badgeos/steps-ui.php:30
filterbadgeos_get_rank_req_step_requirementsincludes/badgeos/steps-ui.php:31
filterbadgeos_get_award_step_requirementsincludes/badgeos/steps-ui.php:32
filterbadgeos_get_deduct_step_requirementsincludes/badgeos/steps-ui.php:33
filterbadgeos_activity_triggersincludes/badgeos/steps-ui.php:46
filterbadgeos_ranks_req_activity_triggersincludes/badgeos/steps-ui.php:47
filterbadgeos_award_points_activity_triggersincludes/badgeos/steps-ui.php:48
filterbadgeos_deduct_points_activity_triggersincludes/badgeos/steps-ui.php:49
actionbadgeos_steps_ui_html_after_trigger_typeincludes/badgeos/steps-ui.php:96
actionbadgeos_rank_req_steps_ui_html_after_trigger_typeincludes/badgeos/steps-ui.php:97
actionbadgeos_award_steps_ui_html_after_achievement_typeincludes/badgeos/steps-ui.php:98
actionbadgeos_deduct_steps_ui_html_after_trigger_typeincludes/badgeos/steps-ui.php:99
filterbadgeos_save_stepincludes/badgeos/steps-ui.php:143
actionadmin_footerincludes/badgeos/steps-ui.php:214
Maintenance & Trust

BadgeOS AffiliateWP Integration Maintenance & Trust

Maintenance Signals

WordPress version tested5.4.19
Last updatedAug 19, 2020
PHP min version7.0
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

BadgeOS AffiliateWP Integration Developer Profile

learningtimes

16 plugins · 750 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect BadgeOS AffiliateWP Integration

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about BadgeOS AffiliateWP Integration