BcodeCraft Post Lifecycle Security & Risk Analysis

wordpress.org/plugins/bcodecraft-post-lifecycle

Complete content lifecycle management - smart scheduling, automatic expiration, and content audit tools for WordPress.

0 active installs v1.0.0 PHP 8.0+ WP 6.0+ Updated Feb 1, 2026
calendarcontent-auditcontent-managementexpirationscheduling
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is BcodeCraft Post Lifecycle Safe to Use in 2026?

Generally Safe

Score 100/100

BcodeCraft Post Lifecycle has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The bcodecraft-post-lifecycle plugin v1.0.0 exhibits a generally strong security posture based on the provided static analysis. A significant strength is the complete reliance on prepared statements for all SQL queries and the high percentage of properly escaped output. The plugin also demonstrates good security practices with a substantial number of capability checks and a single nonce check, indicating an awareness of common WordPress security mechanisms. The absence of external HTTP requests and file operations further reduces its attack surface. The plugin's vulnerability history is also a positive indicator, showing no recorded CVEs, which suggests a mature and secure development process for this version.

However, there are a few areas that, while not indicating immediate critical vulnerabilities in this specific analysis, warrant careful consideration. The presence of 6 cron events, while not explicitly stated as unprotected, represents potential entry points that could be a concern if not properly secured. The static analysis did not reveal any critical or high-severity taint flows, and the attack surface is reported as zero unprotected entry points, which is excellent. Nevertheless, the overall lack of vulnerabilities in its history, combined with good coding practices, points to a plugin that is likely secure for version 1.0.0, but continuous monitoring for future versions is always recommended.

Vulnerabilities
None known

BcodeCraft Post Lifecycle Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

BcodeCraft Post Lifecycle Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
16 prepared
Unescaped Output
14
246 escaped
Nonce Checks
1
Capability Checks
15
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared16 total queries

Output Escaping

95% escaped260 total outputs
Data Flows
All sanitized

Data Flow Analysis

1 flows
<audit-results> (templates\admin\audit-results.php:0)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

BcodeCraft Post Lifecycle Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 16
actionadmin_menuincludes\class-bclc-admin.php:42
actionadmin_enqueue_scriptsincludes\class-bclc-admin.php:45
actionwp_dashboard_setupincludes\class-bclc-admin.php:48
actionbclc_run_auditincludes\class-bclc-audit.php:66
filtercron_schedulesincludes\class-bclc-cron.php:28
actionbclc_check_expirationsincludes\class-bclc-cron.php:31
actionbclc_run_auditincludes\class-bclc-cron.php:32
actionadmin_initincludes\class-bclc-loader.php:155
actionadd_meta_boxesincludes\class-bclc-metabox.php:42
actionsave_postincludes\class-bclc-metabox.php:45
actioninitincludes\class-bclc-metabox.php:48
actionadmin_enqueue_scriptsincludes\class-bclc-metabox.php:51
actionrest_api_initincludes\class-bclc-rest.php:51
actionadmin_initincludes\class-bclc-settings.php:55
actionadmin_noticespost-lifecycle.php:83
actionplugins_loadedpost-lifecycle.php:115

Scheduled Events 6

bclc_check_expirations
bclc_check_expirations
bclc_run_audit
bclc_check_expirations
bclc_check_expirations
bclc_run_audit
Maintenance & Trust

BcodeCraft Post Lifecycle Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedFeb 1, 2026
PHP min version8.0
Downloads101

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

BcodeCraft Post Lifecycle Developer Profile

BCodeCraft

5 plugins · 40 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect BcodeCraft Post Lifecycle

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/bcodecraft-post-lifecycle/assets/css/admin.css/wp-content/plugins/bcodecraft-post-lifecycle/assets/js/admin.js/wp-content/plugins/bcodecraft-post-lifecycle/assets/css/calendar.css/wp-content/plugins/bcodecraft-post-lifecycle/assets/js/vendor/fullcalendar.min.js/wp-content/plugins/bcodecraft-post-lifecycle/assets/js/calendar.js
Script Paths
/wp-content/plugins/bcodecraft-post-lifecycle/assets/js/admin.js/wp-content/plugins/bcodecraft-post-lifecycle/assets/js/vendor/fullcalendar.min.js/wp-content/plugins/bcodecraft-post-lifecycle/assets/js/calendar.js
Version Parameters
bcodecraft-post-lifecycle/assets/css/admin.css?ver=bcodecraft-post-lifecycle/assets/js/admin.js?ver=bcodecraft-post-lifecycle/assets/css/calendar.css?ver=bcodecraft-post-lifecycle/assets/js/vendor/fullcalendar.min.js?ver=bcodecraft-post-lifecycle/assets/js/calendar.js?ver=

HTML / DOM Fingerprints

HTML Comments
<!-- Prevent direct access. -->
Data Attributes
data-bclc-settings
JS Globals
bclcAdmin
FAQ

Frequently Asked Questions about BcodeCraft Post Lifecycle