Blue Raven Security & Risk Analysis

wordpress.org/plugins/blue-raven

Boost WooCommerce SEO with meta tags, schema, alt tags, sitemaps, and forms. Upgrade to Blue Raven Pro for generative Product descriptions and more.

0 active installs v1.0.1 PHP 7.4+ WP 6.2+ Updated Dec 3, 2025
contact-formoptimizationproduct-descriptionsseowoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Blue Raven Safe to Use in 2026?

Generally Safe

Score 100/100

Blue Raven has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4mo ago
Risk Assessment

The "blue-raven" plugin, at version 1.0.1, exhibits a generally strong security posture based on the provided static analysis and vulnerability history. The absence of known CVEs and a clean vulnerability history are positive indicators. Furthermore, the plugin demonstrates good development practices with a high percentage of SQL queries using prepared statements and properly escaped output, minimizing the risk of common web vulnerabilities like SQL injection and cross-site scripting. The presence of nonce and capability checks on most entry points also contributes to a more secure foundation.

However, the analysis does reveal a few areas for improvement. The "flows with unsanitized paths" identified in the taint analysis, while not reaching critical or high severity in this instance, represent potential entry points for path traversal vulnerabilities if not handled with extreme care. A more thorough review of these specific flows is recommended. Additionally, the presence of file operations and external HTTP requests warrants careful scrutiny to ensure these functions are implemented securely and do not introduce unforeseen vulnerabilities.

In conclusion, "blue-raven" v1.0.1 is a well-developed plugin with a strong emphasis on security best practices, evidenced by its clean vulnerability record and robust use of prepared statements and output escaping. The identified unsanitized paths, though currently low-risk, are the primary area of concern and should be addressed to further strengthen its security. The overall risk is low, but vigilance regarding the identified taint flows is advised.

Key Concerns

  • Unsanitized paths in taint analysis
  • File operations present
  • External HTTP requests present
Vulnerabilities
None known

Blue Raven Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Blue Raven Code Analysis

Dangerous Functions
0
Raw SQL Queries
5
114 prepared
Unescaped Output
82
771 escaped
Nonce Checks
11
Capability Checks
6
File Operations
11
External Requests
8
Bundled Libraries
0

SQL Query Safety

96% prepared119 total queries

Output Escaping

90% escaped853 total outputs
Data Flows
4 unsanitized

Data Flow Analysis

12 flows4 with unsanitized paths
execute_cron_task (includes\routines\admin-cron-site-map.php:50)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Blue Raven Attack Surface

Entry Points13
Unprotected0

AJAX Handlers 12

authwp_ajax_blue_raven_submit_formblue-raven.php:332
noprivwp_ajax_blue_raven_submit_formblue-raven.php:333
authwp_ajax_blue_raven_sales_analyticsincludes\admin-home.php:32
authwp_ajax_blue_raven_my_productsincludes\admin-my-products.php:44
authwp_ajax_blue_raven_load_sub_menusincludes\admin-pages.php:31
authwp_ajax_blue_raven_my_tableincludes\admin-products-table.php:31
authwp_ajax_blue_raven_productsincludes\admin-products.php:35
authwp_ajax_blue_raven_settings_licenseincludes\admin-settings-license.php:32
authwp_ajax_blue_raven_load_sub_settingsincludes\admin-settings-pages.php:31
authwp_ajax_blue_raven_settingsincludes\admin-settings.php:33
authwp_ajax_blue_raven_load_tools_sub_containerincludes\admin-tools-subpages.php:35
authwp_ajax_blue_raven_toolsincludes\admin-tools.php:41

Shortcodes 1

[blueRaven_Form] includes\hooks.php:762
WordPress Hooks 26
actionadmin_menublue-raven.php:67
actionadmin_enqueue_scriptsblue-raven.php:270
filterwp_sitemaps_enabledblue-raven.php:304
actionadmin_enqueue_scriptsblue-raven.php:313
actionwp_enqueue_scriptsblue-raven.php:323
filterplugin_row_metablue-raven.php:386
actionadmin_noticesblue-raven.php:465
actionwp_footerincludes\hooks.php:164
filterscript_loader_tagincludes\hooks.php:180
actionwp_headincludes\hooks.php:735
actionwp_headincludes\hooks.php:736
actionwp_headincludes\hooks.php:737
actionwp_headincludes\hooks.php:738
actionwp_headincludes\hooks.php:739
actionsave_postincludes\hooks.php:740
actionsave_postincludes\hooks.php:744
actiontrashed_postincludes\hooks.php:745
actiondeleted_postincludes\hooks.php:746
actionwoocommerce_product_set_stockincludes\hooks.php:748
actionwoocommerce_product_set_stock_statusincludes\hooks.php:749
actionwoocommerce_reduce_order_stockincludes\hooks.php:750
actionpost_updatedincludes\hooks.php:752
actiontemplate_redirectincludes\hooks.php:753
actionbefore_delete_postincludes\hooks.php:754
actionwp_enqueue_scriptsincludes\hooks.php:783
filtercron_schedulesincludes\routines\admin-cron-site-map.php:40
Maintenance & Trust

Blue Raven Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 3, 2025
PHP min version7.4
Downloads300

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Blue Raven Developer Profile

Enterrahost

2 plugins · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Blue Raven

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/blue-raven/assets/js/admin.js/wp-content/plugins/blue-raven/assets/css/admin.css
Script Paths
/wp-content/plugins/blue-raven/assets/js/admin.js
Version Parameters
blue-raven/assets/js/admin.js?ver=blue-raven/assets/css/admin.css?ver=

HTML / DOM Fingerprints

CSS Classes
enterra-adminblue-raven-view-containerbr-admin-sidebarbr-admin-main-contentbr-settings-containerbr-settings-tabsbr-tab-contentbr-about-container
HTML Comments
Blue Raven Admin PageBlue Raven Settings PageBlue Raven About PageMain menu item+38 more
Data Attributes
data-br-view
JS Globals
blue_raven_admin_params
FAQ

Frequently Asked Questions about Blue Raven