BB Content Types Security & Risk Analysis

wordpress.org/plugins/bb-content-types

Create custom WP post types and taxonomies in minutes, without writing code.

0 active installs v1.0.5 PHP 8.0+ WP 6.0+ Updated Mar 15, 2026
admincustom-post-typesrewritestaxonomies
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is BB Content Types Safe to Use in 2026?

Generally Safe

Score 100/100

BB Content Types has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The "bb-content-types" v1.0.5 plugin exhibits a strong security posture based on the provided static analysis. The absence of any detected dangerous functions, SQL injection vulnerabilities (all queries use prepared statements), unsanitized taint flows, or file operations is highly positive. Furthermore, the plugin demonstrates good practice by consistently implementing nonce checks and capability checks for its entry points, and all output is properly escaped. The plugin also has no recorded vulnerability history, suggesting a stable and secure development process.

While the plugin's overall security is impressive, the primary area for consideration is the absence of any detected entry points like AJAX handlers, REST API routes, or shortcodes. This could indicate a very minimal plugin functionality, or it could mean that more complex interactions are handled through other means not captured in this analysis. However, given the strong code signals and lack of historical vulnerabilities, this does not present an immediate risk. The plugin's strengths lie in its robust implementation of secure coding practices, making it appear secure at version 1.0.5.

Vulnerabilities
None known

BB Content Types Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

BB Content Types Release Timeline

v1.0.5Current
v1.0.4
v1.0.3
v1.0.2
Code Analysis
Analyzed Apr 16, 2026

BB Content Types Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
4 prepared
Unescaped Output
1
239 escaped
Nonce Checks
12
Capability Checks
16
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared4 total queries

Output Escaping

100% escaped240 total outputs
Data Flows · Security
All sanitized

Data Flow Analysis

4 flows
bb_ct_render_post_types_page (admin/post-types.php:22)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

BB Content Types Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 20
actionadmin_menuadmin/admin.php:15
actionadmin_noticesadmin/admin.php:16
actionadmin_post_bb_ct_flush_rewritesadmin/admin.php:17
actionbb_core_registeradmin/admin.php:18
actionadmin_enqueue_scriptsadmin/admin.php:19
actionadmin_post_bb_ct_exportadmin/import-export.php:12
actionadmin_post_bb_ct_import_previewadmin/import-export.php:13
actionadmin_post_bb_ct_import_applyadmin/import-export.php:14
actionadmin_post_bb_ct_save_post_typeadmin/post-types.php:12
actionadmin_post_bb_ct_delete_post_typeadmin/post-types.php:13
actionadmin_post_bb_ct_duplicate_post_typeadmin/post-types.php:14
actionadmin_post_bb_ct_toggle_post_typeadmin/post-types.php:15
actionadmin_post_bb_ct_save_taxonomyadmin/taxonomies.php:12
actionadmin_post_bb_ct_delete_taxonomyadmin/taxonomies.php:13
actionadmin_post_bb_ct_duplicate_taxonomyadmin/taxonomies.php:14
actioninitinc/register.php:12
actionadmin_initinc/rewrites.php:12
actioninitinc/rewrites.php:13
filterpost_type_linkinc/rewrites.php:14
filterpost_type_archive_linkinc/rewrites.php:15
Maintenance & Trust

BB Content Types Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 15, 2026
PHP min version8.0
Downloads197

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

BB Content Types Developer Profile

Chris Anderson

2 plugins · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect BB Content Types

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/bb-content-types/admin/css/admin.css/wp-content/plugins/bb-content-types/admin/js/admin.js
Script Paths
/wp-content/plugins/bb-content-types/admin/js/admin.js
Version Parameters
bb-content-types/admin/css/admin.css?ver=bb-content-types/admin/js/admin.js?ver=

HTML / DOM Fingerprints

CSS Classes
bb-ct-headerbb-ct-header-leftbb-ct-header-subtitlebb-ct-page-introbb-ct-intro-textbb-ct-cardbb-ct-card-headerbb-ct-card-sub+18 more
Data Attributes
data-bb-ct-message
JS Globals
BB_CT_VERSION
FAQ

Frequently Asked Questions about BB Content Types