
Borderage Core Security & Risk Analysis
wordpress.org/plugins/borderage-coreProtect your WordPress pages by verifying visitor age via the BorderAge API using hand gesture recognition.
Is Borderage Core Safe to Use in 2026?
Generally Safe
Score 100/100Borderage Core has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'borderage-core' plugin v0.1.0 demonstrates several strong security practices. The complete absence of known CVEs and the consistent use of prepared statements for all SQL queries are significant strengths. Additionally, the plugin exhibits a very high rate of proper output escaping and includes capability checks for its entry points, indicating a good understanding of secure coding principles. The limited attack surface, primarily consisting of a single AJAX handler, and the lack of bundled libraries also contribute positively to its security posture.
However, the static analysis reveals potential areas for improvement. The presence of 5 'flows with unsanitized paths' is a concern, with 3 identified as high severity taint flows. These flows suggest that user-supplied data might be processed without adequate sanitization, potentially leading to vulnerabilities like path traversal or local file inclusion if not handled carefully within the application context. While the attack surface is small, the specific nature of these unsanitized paths requires further investigation to confirm if they are exploitable.
The plugin's vulnerability history is currently clear, which is excellent. This, combined with the strong coding practices observed, suggests a generally secure plugin. Nevertheless, the identified high-severity taint flows warrant attention to ensure that these potential weaknesses are addressed, particularly given the plugin's early version. The overall security posture is good, but the taint analysis highlights specific code-level risks that should be remediated to achieve a fully robust security profile.
Key Concerns
- High severity taint flows found
- Unsanitized paths found in taint analysis
Borderage Core Security Vulnerabilities
Borderage Core Release Timeline
Borderage Core Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Borderage Core Attack Surface
AJAX Handlers 1
WordPress Hooks 30
Maintenance & Trust
Borderage Core Maintenance & Trust
Maintenance Signals
Community Trust
Borderage Core Alternatives
Advanced Age Verification Popup
advanced-age-verification-popup
Add an age verification popup with Yes/No and Date of Birth check for WooCommerce or adult sites.
Legal Age Sign
legal-age-sign
Legal Age Sign - WordPress Plugin Version: 1.5 Author: SDMEIER
XYZ Age Verification
xyz-age-verification-free
Real age verification for WordPress — biometric liveness detection and government ID verification, not just a checkbox.
Age Gate
age-gate
A plugin to check the age of a visitor before view site or specified content
Age Gate Lite
age-gate-lite
A lightweight, customisable age gate to lock content from younger audience.
Borderage Core Developer Profile
1 plugin · 0 total installs
How We Detect Borderage Core
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/borderage-core/src/Admin/assets/js/admin.js/wp-content/plugins/borderage-core/src/Admin/assets/css/admin.css/wp-content/plugins/borderage-core/src/Frontend/assets/css/frontend.css/wp-content/plugins/borderage-core/src/Admin/assets/js/admin.js/wp-content/plugins/borderage-core/src/Frontend/assets/js/frontend.jsborderage-core/src/Admin/assets/js/admin.js?ver=borderage-core/src/Admin/assets/css/admin.css?ver=borderage-core/src/Frontend/assets/css/frontend.css?ver=borderage-core/src/Frontend/assets/js/frontend.js?ver=HTML / DOM Fingerprints
borderage-credits-bannerborderage-banner-errorborderage-banner-warningborderage-banner-iconborderage-banner-contentborderage-banner-actionborderage-banner-contactborderage-protection-form+6 more<!-- Generated by BorderAge Core --><!-- Protect all pages and posts --><!-- Age verification form --><!-- BorderAge Modal -->data-borderage-verifydata-borderage-actiondata-borderage-pin-urldata-borderage-modal-targetborderageCoreBorderageCore/wp-json/borderage-core/v1/verify/wp-json/borderage-core/v1/pin/wp-json/borderage-core/v1/credits[borderage_protection_form][borderage_age_gate]