[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f615kwM4Gn8vXRVWQwapGLjxtTFGhVkB40YeqbTBlhts":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":17,"tags":18,"homepage":24,"download_link":25,"security_score":26,"vuln_count":27,"unpatched_count":27,"last_vuln_date":28,"fetched_at":29,"vulnerabilities":30,"developer":31,"crawl_stats":28,"alternatives":38,"analysis":139,"fingerprints":218},"bp-profile-activity-wall","BP Profile Activity Wall","1.0.0","Venutius","https:\u002F\u002Fprofiles.wordpress.org\u002Fvenutius\u002F","\u003Cp>Adds a a new “All” tab in the BuddyPress Members Profile and makes it the default landing tab in order to create a Facebook like Wall.\u003C\u002Fp>\n\u003Cp>Simply install and activate the plugin then visit Profile>>Activity.\u003C\u002Fp>\n\u003Cp>For more options visit Settings>>Profile Activity Wall where you can choose to remove the other tabs and also setup homepage and login redirects so that the activity wall becomes the default homepage for logged in members.\u003C\u002Fp>\n","Adds a a new \"All\" tab in the BuddyPress Members Profile Activity and makes it the default landing tab in order to create a Facebook like Wa &hellip;",20,4060,100,2,"2019-04-18T10:26:00.000Z","5.2.24","",[19,20,21,22,23],"activity","buddypress","facebook","profile","wall","http:\u002F\u002Fbuddyuser.com\u002Fplugin-bp-profile-activity-wall","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fbp-profile-activity-wall.1.0.0.zip",85,0,null,"2026-03-15T15:16:48.613Z",[],{"slug":32,"display_name":7,"profile_url":8,"plugin_count":11,"total_installs":33,"avg_security_score":34,"avg_patch_time_days":35,"trust_score":36,"computed_at":37},"venutius",640,93,30,89,"2026-04-03T19:22:59.787Z",[39,55,82,103,120],{"slug":40,"name":41,"version":42,"author":43,"author_profile":44,"description":45,"short_description":46,"active_installs":47,"downloaded":48,"rating":49,"num_ratings":50,"last_updated":51,"tested_up_to":17,"requires_at_least":17,"requires_php":17,"tags":52,"homepage":17,"download_link":54,"security_score":26,"vuln_count":27,"unpatched_count":27,"last_vuln_date":28,"fetched_at":29},"buddypress-wall","BuddyPress Wall","0.9.4","meg@info","https:\u002F\u002Fprofiles.wordpress.org\u002Fmegainfo\u002F","\u003Cp>BuddyPress Wall (BP-Wall) turn your Buddypress Activity Component to an activity stream similar to a Facebook “Wall”.\u003C\u002Fp>\n\u003Cp>When you install BP-Wall, the members can post status, updates and reply on each other’s walls.\u003C\u002Fp>\n\u003Cp>BP-Wall turn the Favorite\u002FUnfavorite module of Buddypress to a facebook “I Like\u002FUnlike” system.\u003C\u002Fp>\n\u003Cp>BP-Wall change add a new comment system similar to Facebook.\u003C\u002Fp>\n","BuddyPress Wall (BP-Wall) turn your Buddypress Activity Component to an activity stream similar to a Facebook “Wall”.",50,39617,68,13,"2015-03-21T15:05:00.000Z",[19,20,21,53,23],"facebook-style","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fbuddypress-wall.0.9.4.zip",{"slug":56,"name":57,"version":58,"author":59,"author_profile":60,"description":61,"short_description":62,"active_installs":63,"downloaded":64,"rating":65,"num_ratings":66,"last_updated":67,"tested_up_to":68,"requires_at_least":69,"requires_php":70,"tags":71,"homepage":77,"download_link":78,"security_score":79,"vuln_count":80,"unpatched_count":27,"last_vuln_date":81,"fetched_at":29},"json-api-user","JSON API User","4.1.0","Ali Qureshi","https:\u002F\u002Fprofiles.wordpress.org\u002Fparorrey\u002F","\u003Cp>JSON API User extends the JSON API Plugin with a new Controller to allow RESTful user registration, authentication, password reset, RESTful Facebook Login, RESTful User Meta and BuddyPress xProfile get and update methods. This plugin is for WordPress\u002FMobile app developers who want to use WordPress as mobile app data backend.\u003C\u002Fp>\n\u003Cp>JSON API Plugin, that is required, was closed on August 7, 2019 from WordPress repository. You can download \u003Ca href=\"https:\u002F\u002Fgithub.com\u002FPI-Media\u002Fjson-api\" rel=\"nofollow ugc\">JSON API Plugin\u003C\u002Fa> from https:\u002F\u002Fgithub.com\u002FPI-Media\u002Fjson-api until it is republished and available on WordPress.\u003C\u002Fp>\n\u003Cp>Features include:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Generate Auth Cookie for user authentication\u003C\u002Fli>\n\u003Cli>Validate Auth Cookie\u003C\u002Fli>\n\u003Cli>RESTful User Registration\u003C\u002Fli>\n\u003Cli>RESTful Facebook Login\u002FRegistration with valid access_token\u003C\u002Fli>\n\u003Cli>RESTful BuddyPress xProfile fields update\u003C\u002Fli>\n\u003Cli>Get User Meta and xProfile fields\u003C\u002Fli>\n\u003Cli>Update User Meta and xProfile fields\u003C\u002Fli>\n\u003Cli>Delete User Meta\u003C\u002Fli>\n\u003Cli>Password Reset\u003C\u002Fli>\n\u003Cli>Get Avatar\u003C\u002Fli>\n\u003Cli>Get User Info\u003C\u002Fli>\n\u003Cli>Post Comment\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>The plugin was created for mobile apps integration with the web app using WordPress as backend for all the data. WordPress helped in putting together the web app quickly and then Mobile iOS and Android apps were integrated via this plugin. There were some app specific customized methods which are not included but rest have been made generic for community usage.\u003C\u002Fp>\n\u003Cp>My other JSON API Auth plugin has also been integrated with this plugin from version 1.1 because most endpoints required user authentication via cookie for data update.\u003C\u002Fp>\n\u003Cp>Pro Version – JSON API User Plus\u003C\u002Fp>\n\u003Cp>A pro version of this plugin, \u003Ca href=\"http:\u002F\u002Fwww.parorrey.com\u002Fsolutions\u002Fjson-api-user-plus\u002F\" rel=\"nofollow ugc\">JSON API User Plus\u003C\u002Fa>, is available here http:\u002F\u002Fwww.parorrey.com\u002Fsolutions\u002Fjson-api-user-plus\u002F that supports BuddyPress Messages component, BuddyPress avatar upload, BuddyPress Extended Profile, BuddyPress Groups, BuddyPress Friends, BuddyPress Activity, BuddyPress Notifications, BuddyPres Settings and other BuddyPress related functions to integrate BuddyPress features in your mobile app via REST api.\u003C\u002Fp>\n\u003Cp>\u003Ca href=\"http:\u002F\u002Fwww.parorrey.com\u002Fsolutions\u002Fjson-api-user-plus\u002F\" rel=\"nofollow ugc\">JSON API User Plus\u003C\u002Fa> includes API key which protects and restricts the endpoint calls. This key can be updated from Settings > User Plus options page. Your app must include this key with every call to get the data from REST API. Please see documentation for calling endpoints examples for ‘JSON API User Plus’.\u003C\u002Fp>\n\u003Cp>JSON API User Plus features include:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Generate Auth Cookie for user authentication\u003C\u002Fli>\n\u003Cli>Validate Auth Cookie\u003C\u002Fli>\n\u003Cli>RESTful User Registration\u003C\u002Fli>\n\u003Cli>RESTful Facebook Login\u002FRegistration with valid access_token\u003C\u002Fli>\n\u003Cli>RESTful BuddyPress xProfile fields update\u003C\u002Fli>\n\u003Cli>Get User Meta and xProfile fields\u003C\u002Fli>\n\u003Cli>Update User Meta and xProfile fields\u003C\u002Fli>\n\u003Cli>Delete User Meta\u003C\u002Fli>\n\u003Cli>Password Reset\u003C\u002Fli>\n\u003Cli>Get\u002FUpload Avatar\u003C\u002Fli>\n\u003Cli>Get User Info\u003C\u002Fli>\n\u003Cli>Post Comment\u003C\u002Fli>\n\u003Cli>Add Post, Update Post, Delete Post\u003C\u002Fli>\n\u003Cli>Add\u002FEdit\u002FDelete Custom Post Type, Custom Fields\u003C\u002Fli>\n\u003Cli>Search User\u003C\u002Fli>\n\u003Cli>BuddyPress Activities\u003C\u002Fli>\n\u003Cli>BuddyPress Members\u003C\u002Fli>\n\u003Cli>BuddyPress Friends\u003C\u002Fli>\n\u003Cli>BuddyPress Notifications\u003C\u002Fli>\n\u003Cli>BuddyPress Settings\u003C\u002Fli>\n\u003Cli>& many more\u003C\u002Fli>\n\u003C\u002Ful>\n","Extends the JSON API Plugin to allow RESTful user registration, authentication & many other User Meta, BP functions. A Pro version is also available.",1000,120913,78,21,"2025-07-29T11:54:00.000Z","6.8.5","3.0.1","5.3",[72,73,74,75,76],"authentication","json-api","restful-facebook-login","restful-user-meta-and-buddypress-xprofile","restful-user-registration","http:\u002F\u002Fwww.parorrey.com\u002Fsolutions\u002Fjson-api-user\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fjson-api-user.4.1.0.zip",97,1,"2024-07-10 00:00:00",{"slug":83,"name":84,"version":85,"author":86,"author_profile":87,"description":88,"short_description":89,"active_installs":90,"downloaded":91,"rating":92,"num_ratings":93,"last_updated":94,"tested_up_to":95,"requires_at_least":96,"requires_php":17,"tags":97,"homepage":101,"download_link":102,"security_score":26,"vuln_count":27,"unpatched_count":27,"last_vuln_date":28,"fetched_at":29},"buddypress-edit-activity","BuddyPress Edit Activity","1.1.1","Syed Balkhi","https:\u002F\u002Fprofiles.wordpress.org\u002Fsmub\u002F","\u003Cp>Let your BuddyPress members edit their activity posts and replies on the front-end of the site. You can even set a time limit for how long activity posts should remain editable.\u003C\u002Fp>\n\u003Cp>Just activate the plugin, and every activity post and reply will become editable, styled automatically by BuddyPress to fit with your theme.\u003C\u002Fp>\n","BuddyPress Edit Activity allows your members to edit their activity posts on the front-end of your BuddyPress-powered site.",900,75058,92,17,"2020-04-23T13:56:00.000Z","5.4.19","3.8",[19,20,98,99,100],"messaging","profiles","social-networking","https:\u002F\u002Fwww.buddyboss.com\u002Fproduct\u002Fbuddypress-edit-activity\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fbuddypress-edit-activity.1.1.1.zip",{"slug":104,"name":105,"version":106,"author":107,"author_profile":108,"description":109,"short_description":110,"active_installs":47,"downloaded":111,"rating":112,"num_ratings":113,"last_updated":114,"tested_up_to":115,"requires_at_least":115,"requires_php":17,"tags":116,"homepage":118,"download_link":119,"security_score":26,"vuln_count":27,"unpatched_count":27,"last_vuln_date":28,"fetched_at":29},"buddypress-social","BuddyPress Social","2.0","nit3watch","https:\u002F\u002Fprofiles.wordpress.org\u002Fnit3watch\u002F","\u003Cp>Bringing social engagement to Buddypress – let your community share to their hearts content all while promoting your website to social networks.\u003C\u002Fp>\n\u003Cp>Buddypress Social adds Facebook, Twitter, Google+ and email sharing buttons to all your community’s activity – from member updates, group activity to media uploads.\u003C\u002Fp>\n\u003Cp>Buddypress Social fits right with just about any wordpress theme as the plugin picks up your themes standard colors and adjusts the social buttons accordingly, however you may override the colors with the color pickers in the admin settings.\u003C\u002Fp>\n\u003Ch3>Notes\u003C\u002Fh3>\n\u003Cp>License.txt – contains the licensing details for this component.\u003C\u002Fp>\n","Bringing social engagement to Buddypress - let your community share to their hearts content all while promoting your website to social networks.",20958,58,8,"2013-07-20T08:10:00.000Z","3.5.2",[19,20,21,117],"twitter","http:\u002F\u002Fwordpress.org\u002Fplugins\u002Fbuddypress-social\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fbuddypress-social.2.0.zip",{"slug":121,"name":122,"version":123,"author":124,"author_profile":125,"description":126,"short_description":127,"active_installs":128,"downloaded":129,"rating":47,"num_ratings":130,"last_updated":131,"tested_up_to":132,"requires_at_least":133,"requires_php":17,"tags":134,"homepage":137,"download_link":138,"security_score":26,"vuln_count":27,"unpatched_count":27,"last_vuln_date":28,"fetched_at":29},"bp-activity-plus-styling","Buddypress Activity Plus Styling","1.1.2","Maksym Marko","https:\u002F\u002Fprofiles.wordpress.org\u002Fmarkomaksym\u002F","\u003Cp>Add to the Buddypress Activity Plus plugin. This plugin adds CSS styles to images, videos and links. Also styling a THICKBOX.\u003C\u002Fp>\n","Additional CSS styles for the Buddypress Activity Plus plugin.",40,5543,4,"2019-05-01T15:35:00.000Z","5.1.22","4.3",[19,135,20,136,23],"activity-stream","buddypress-activity","https:\u002F\u002Fgithub.com\u002FMaxim-us\u002Fbuddypress-activity-plus-styling","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fbp-activity-plus-styling.1.1.2.zip",{"attackSurface":140,"codeSignals":191,"taintFlows":211,"riskAssessment":212,"analyzedAt":217},{"hooks":141,"ajaxHandlers":187,"restRoutes":188,"shortcodes":189,"cronEvents":190,"entryPointCount":27,"unprotectedCount":27},[142,148,151,156,162,166,170,174,179,183],{"type":143,"name":144,"callback":145,"priority":11,"file":146,"line":147},"action","bp_setup_nav","bppaw_set_member_default_nav","inc\\bp-profile-activity-wall.php",22,{"type":143,"name":144,"callback":149,"priority":47,"file":146,"line":150},"bppaw_just_me_tab",24,{"type":143,"name":152,"callback":153,"priority":154,"file":146,"line":155},"bp_setup_admin_bar","bppaw_admin_bar_add",500,25,{"type":157,"name":158,"callback":159,"priority":160,"file":146,"line":161},"filter","bp_activity_set_all-activity_scope_args","bp_activity_filter_all_activity_scope",10,266,{"type":143,"name":163,"callback":164,"file":146,"line":165},"bp_before_member_body","bppaw_load_mention_me",280,{"type":143,"name":167,"callback":168,"file":146,"line":169},"template_redirect","bppaw_render_landing_page",282,{"type":157,"name":171,"callback":172,"priority":80,"file":146,"line":173},"bp_login_redirect","bppaw_login_redirect",297,{"type":143,"name":175,"callback":176,"file":177,"line":178},"admin_notices","bppaw_no_bp_admin_notice","loader.php",23,{"type":143,"name":180,"callback":181,"file":177,"line":182},"plugins_loaded","bppaw_check_buddypress",31,{"type":143,"name":184,"callback":185,"file":177,"line":186},"bp_loaded","bppaw_load_files",61,[],[],[],[],{"dangerousFunctions":192,"sqlUsage":193,"outputEscaping":195,"fileOperations":27,"externalRequests":27,"nonceChecks":80,"capabilityChecks":27,"bundledLibraries":210},[],{"prepared":27,"raw":27,"locations":194},[],{"escaped":196,"rawEcho":197,"locations":198},28,6,[199,203,205,207,208,209],{"file":200,"line":201,"context":202},"inc\\bp-profile-activity-wall-admin.php",80,"raw output",{"file":200,"line":204,"context":202},82,{"file":200,"line":206,"context":202},91,{"file":200,"line":206,"context":202},{"file":200,"line":34,"context":202},{"file":200,"line":34,"context":202},[],[],{"summary":213,"deductions":214},"The \"bp-profile-activity-wall\" v1.0.0 plugin demonstrates a generally strong security posture based on the provided static analysis. The absence of AJAX handlers, REST API routes, shortcodes, and cron events significantly limits the potential attack surface.  Furthermore, the code signals indicate good security practices such as using prepared statements for all SQL queries and a high percentage of properly escaped output. The presence of a nonce check is also a positive sign.  The lack of any recorded vulnerabilities, critical taint flows, or dangerous functions further reinforces this positive assessment.\n\nHowever, the analysis does reveal some areas that could be improved. The complete lack of capability checks is a notable omission. While the attack surface is currently small and seemingly unprotected, any future expansion or introduction of entry points without proper capability checks could lead to privilege escalation or unauthorized access issues.  The absence of taint analysis flows, while indicating no current issues, also means that a comprehensive understanding of data sanitization across all potential input vectors is not available from this report alone.\n\nIn conclusion, \"bp-profile-activity-wall\" v1.0.0 appears to be a secure plugin with a minimal attack surface and good coding practices in place for existing functionalities. The primary concern is the lack of capability checks, which, if not addressed in future development, could introduce vulnerabilities as the plugin evolves. The historical data suggests a mature and stable plugin, but continuous vigilance is always recommended.",[215],{"reason":216,"points":160},"No capability checks detected","2026-03-16T22:56:49.362Z",{"wat":219,"direct":226},{"assetPaths":220,"generatorPatterns":223,"scriptPaths":224,"versionParams":225},[221,222],"\u002Fwp-content\u002Fplugins\u002Fbp-profile-activity-wall\u002Finc\u002Fbp-profile-activity-wall.php","\u002Fwp-content\u002Fplugins\u002Fbp-profile-activity-wall\u002Finc\u002Fbp-profile-activity-wall-admin.php",[],[],[],{"cssClasses":227,"htmlComments":229,"htmlAttributes":230,"restEndpoints":231,"jsGlobals":232,"shortcodeOutput":233},[228],"notice-error6",[],[],[],[],[]]