What's Hot Activity Tab for BuddyPress Security & Risk Analysis

wordpress.org/plugins/bp-whats-hot

Adds a What's Hot tab to the BuddyPress activity stream.

10 active installs v0.2 PHP + WP 3.6+ Updated Aug 26, 2015
activitybpbuddypresssocial-networkingwhats-hot
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is What's Hot Activity Tab for BuddyPress Safe to Use in 2026?

Generally Safe

Score 85/100

What's Hot Activity Tab for BuddyPress has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 10yr ago
Risk Assessment

The "bp-whats-hot" plugin version 0.2 exhibits an exceptionally clean static analysis report, with no identified attack surface points, dangerous functions, raw SQL queries, or unescaped output. Taint analysis also shows no issues. This suggests a well-developed and securely coded plugin at this version, with a strong adherence to best practices for preventing common web vulnerabilities.

The plugin's vulnerability history is also clean, with no known CVEs recorded. This, combined with the positive static analysis, indicates a potentially very low risk profile for this specific version. The absence of vulnerabilities and the clean code signals are strong indicators of a secure implementation. However, it's important to note that a zero attack surface is unusual for a functional plugin, which might indicate it's very limited in scope or functionality. Nonetheless, based solely on the provided data, the security posture of bp-whats-hot v0.2 appears to be excellent.

Vulnerabilities
None known

What's Hot Activity Tab for BuddyPress Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

What's Hot Activity Tab for BuddyPress Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

What's Hot Activity Tab for BuddyPress Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 2
actionbp_before_activity_type_tab_friendsbp-whats-hot.php:23
filterbp_activity_paged_activities_sqlbp-whats-hot.php:54
Maintenance & Trust

What's Hot Activity Tab for BuddyPress Maintenance & Trust

Maintenance Signals

WordPress version tested4.3.34
Last updatedAug 26, 2015
PHP min version
Downloads5K

Community Trust

Rating100/100
Number of ratings2
Active installs10
Developer Profile

What's Hot Activity Tab for BuddyPress Developer Profile

edwardtownend

2 plugins · 1K total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect What's Hot Activity Tab for BuddyPress

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

CSS Classes
activity-whats-hot
Shortcode Output
<li class="" id="activity-whats-hot"><a href="
FAQ

Frequently Asked Questions about What's Hot Activity Tab for BuddyPress