
Build a House Security & Risk Analysis
wordpress.org/plugins/build-a-houseEasily track and manage your house construction expenses step-by-step, from permits to finishing touches, all within your WordPress dashboard.
Is Build a House Safe to Use in 2026?
Generally Safe
Score 100/100Build a House has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'build-a-house' plugin version 1.0.9 exhibits a generally good security posture with several positive indicators. The absence of any known CVEs, critical taint flows, raw SQL queries, file operations, or external HTTP requests is commendable. Furthermore, the high percentage of properly escaped outputs and the presence of nonce and capability checks suggest a developer who is mindful of common security pitfalls. The use of prepared statements for SQL queries is a strong defense against SQL injection. The bundled Select2 library is also a common and generally safe component.
However, a significant concern arises from the static analysis revealing one unprotected AJAX handler out of a total of four entry points. This presents a direct attack vector that could be exploited if this AJAX handler performs sensitive operations or exposes information without proper authorization. While the taint analysis did not reveal any unsanitized paths, the unprotected AJAX handler is a potential blind spot that requires immediate attention and mitigation.
In conclusion, the plugin demonstrates a good foundation in secure coding practices, particularly regarding data handling and preventing common web vulnerabilities. The primary weakness lies in an exposed AJAX endpoint. Addressing this specific oversight is crucial to further strengthen the plugin's security and achieve a robust security profile. The lack of past vulnerabilities is positive but should not breed complacency, especially with the identified unprotected entry point.
Key Concerns
- Unprotected AJAX handler
Build a House Security Vulnerabilities
Build a House Release Timeline
Build a House Code Analysis
Bundled Libraries
Output Escaping
Data Flow Analysis
Build a House Attack Surface
AJAX Handlers 4
WordPress Hooks 40
Maintenance & Trust
Build a House Maintenance & Trust
Maintenance Signals
Community Trust
Build a House Alternatives
Under Construction
under-construction-page
Easy to use Under Construction Page & Coming Soon Page. Enable Under Construction Mode in seconds & show you're Under Construction!
CMP – Coming Soon & Maintenance Plugin by NiteoThemes
cmp-coming-soon-maintenance
Beautiful Coming soon, Maintenance or Landing page on your website, packed with premium features for free.
Internal Link Juicer: SEO Auto Linker for WordPress
internal-links
Improve your SEO and your user experience through internal linkbuilding. Automated links between your posts based on a smart keyword configuration.
WP Maintenance
wp-maintenance
Create and customize your maintenance page
underConstruction
underconstruction
Creates a 'Coming Soon' page that will show for all users who are not logged in
Build a House Developer Profile
23 plugins · 89K total installs
How We Detect Build a House
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/build-a-house/assets/build-a-house-admin.js/wp-content/plugins/build-a-house/assets/build-a-house-public.css/wp-content/plugins/build-a-house/assets/build-a-house-public.js/wp-content/plugins/build-a-house/build-a-house.css/wp-content/plugins/build-a-house/build-a-house.js/wp-content/plugins/build-a-house/assets/build-a-house-admin.js/wp-content/plugins/build-a-house/assets/build-a-house-public.jsbuild-a-house/build-a-house.css?ver=build-a-house/build-a-house.js?ver=build-a-house/assets/build-a-house-admin.js?ver=build-a-house/assets/build-a-house-public.css?ver=build-a-house/assets/build-a-house-public.js?ver=HTML / DOM Fingerprints
iworks-type<!-- Plugin Name: Build a House -->data-sourcedata-nonce-actionbuild_a_house_admin_paramsiworks_build_a_house_public/wp-json/build-a-house/v1/get-options/wp-json/build-a-house/v1/get-post-types/wp-json/build-a-house/v1/get-breakdowns[build_a_house_expenses][build_a_house_budget][build_a_house_plan]