BP Signup Member Type Security & Risk Analysis

wordpress.org/plugins/bp-signup-member-type

Add a "Member Type" option to the BuddyPress registration form.

10 active installs v0.1.1 PHP + WP + Updated May 14, 2020
administrationbuddypressmember-typemembersusers
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is BP Signup Member Type Safe to Use in 2026?

Generally Safe

Score 85/100

BP Signup Member Type has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5yr ago
Risk Assessment

The "bp-signup-member-type" plugin exhibits a strong security posture based on the provided static analysis and vulnerability history. The absence of any detected AJAX handlers, REST API routes, shortcodes, or cron events with unprotected entry points is a significant strength. Furthermore, the code signals show no dangerous functions, all SQL queries utilize prepared statements, and there are no file operations or external HTTP requests, which are excellent security practices. The taint analysis also indicates no critical or high severity vulnerabilities found. The lack of any recorded CVEs further reinforces its current security standing. While the output escaping is not perfect at 77%, this is a relatively minor concern given the other positive indicators and the absence of critical issues. Overall, this plugin appears to be developed with security in mind and has a clean vulnerability history. However, the lack of any detected entry points could also indicate a very small or specialized plugin, or potentially a limitation in the static analysis tool's ability to detect certain interaction points.

Key Concerns

  • Output escaping not fully implemented
Vulnerabilities
None known

BP Signup Member Type Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

BP Signup Member Type Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
6
20 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

77% escaped26 total outputs
Attack Surface

BP Signup Member Type Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 6
actionbp_includebp-signup-member-type.php:58
actionbp_initbp-signup-member-type.php:59
actionplugins_loadedbp-signup-member-type.php:61
actionbp_register_admin_settingsbp-signup-member-type.php:84
actionbp_before_registration_submit_buttonsbp-signup-member-type.php:85
actionbp_complete_signupbp-signup-member-type.php:86
Maintenance & Trust

BP Signup Member Type Maintenance & Trust

Maintenance Signals

WordPress version tested4.8.28
Last updatedMay 14, 2020
PHP min version
Downloads2K

Community Trust

Rating20/100
Number of ratings1
Active installs10
Developer Profile

BP Signup Member Type Developer Profile

Meitar

13 plugins · 2K total installs

85
trust score
Avg Security Score
87/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect BP Signup Member Type

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/bp-signup-member-type/css/bp-signup-member-type.css
Version Parameters
bp-signup-member-type/css/bp-signup-member-type.css?ver=

HTML / DOM Fingerprints

Data Attributes
id="bp_smt_types_at_signupname="bp_smt_types_at_signupid="bp_smt_allow_multiplename="bp_smt_allow_multiple
FAQ

Frequently Asked Questions about BP Signup Member Type