
Bphonetic WordCount Security & Risk Analysis
wordpress.org/plugins/bphonetic-wordcountShort Description: A lightweight plugin for Classic Editor that adds Bangla & English typing support, word count, and reading time estimation.
Is Bphonetic WordCount Safe to Use in 2026?
Generally Safe
Score 100/100Bphonetic WordCount has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The bphonetic-wordcount plugin v1.0 exhibits an excellent security posture based on the provided static analysis and vulnerability history. The absence of any AJAX handlers, REST API routes, shortcodes, or cron events significantly reduces the potential attack surface to zero. Furthermore, the code demonstrates strong security practices with zero dangerous functions, 100% of SQL queries using prepared statements, and 100% of output properly escaped. The lack of file operations and external HTTP requests further minimizes common attack vectors. The taint analysis revealing zero flows with unsanitized paths reinforces this positive assessment. The plugin's vulnerability history is also clean, with no recorded CVEs, indicating a history of stable and secure development. The only notable observation is the complete lack of any detected entry points, which, while indicating a secure design, also means there are no explicit capability checks or nonce checks, which are standard WordPress security mechanisms. This could be interpreted as the plugin not requiring any user interaction or privileged access, thus not necessitating these checks, or it could be an oversight if the plugin were to evolve and gain more functionality.
Key Concerns
- No Nonce checks detected
- No Capability checks detected
Bphonetic WordCount Security Vulnerabilities
Bphonetic WordCount Code Analysis
Bphonetic WordCount Attack Surface
WordPress Hooks 4
Maintenance & Trust
Bphonetic WordCount Maintenance & Trust
Maintenance Signals
Community Trust
Bphonetic WordCount Alternatives
No alternatives data available yet.
Bphonetic WordCount Developer Profile
1 plugin · 0 total installs
How We Detect Bphonetic WordCount
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/bphonetic-wordcount/assets/js/phonetic.driver.js/wp-content/plugins/bphonetic-wordcount/assets/js/engine.js/wp-content/plugins/bphonetic-wordcount/assets/js/bpwc-quick-tags.js/wp-content/plugins/bphonetic-wordcount/assets/js/phonetic.driver.js/wp-content/plugins/bphonetic-wordcount/assets/js/engine.js/wp-content/plugins/bphonetic-wordcount/assets/js/bpwc-quick-tags.jsbphonetic-wordcount/assets/js/phonetic.driver.js?ver=1.0bphonetic-wordcount/assets/js/engine.js?ver=1.0bphonetic-wordcount/assets/js/bpwc-quick-tags.js?ver=1.0