CAFEHAUS API Security & Risk Analysis

wordpress.org/plugins/cafe-api

兼容小程序、APP和H5的多端 API 插件,提供更加优雅的路由、入参和出参,开箱即用零依赖零设置,让前端用着更省心

10 active installs v1.0.0 PHP 7.0+ WP 5.0+ Updated Nov 16, 2022
apiappjsonrestful
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is CAFEHAUS API Safe to Use in 2026?

Generally Safe

Score 85/100

CAFEHAUS API has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3yr ago
Risk Assessment

Based on the static analysis and vulnerability history, the cafe-api plugin v1.0.0 appears to have a strong security posture. The absence of any identified attack surface points, such as AJAX handlers, REST API routes, shortcodes, or cron events, is a significant strength. Furthermore, the code analysis indicates robust development practices with no dangerous functions, all SQL queries using prepared statements, and 100% output escaping. The lack of file operations, external HTTP requests, and successful taint analysis flows further bolsters this positive assessment.

Vulnerabilities
None known

CAFEHAUS API Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

CAFEHAUS API Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
1 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared1 total queries
Attack Surface

CAFEHAUS API Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 1
actionrest_api_initincludes\api\api.php:13
Maintenance & Trust

CAFEHAUS API Maintenance & Trust

Maintenance Signals

WordPress version tested6.1.10
Last updatedNov 16, 2022
PHP min version7.0
Downloads795

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

CAFEHAUS API Developer Profile

cafehaus

1 plugin · 10 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect CAFEHAUS API

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

REST Endpoints
/cafe/v1/categories/cafe/v1/comments/cafe/v1/post/comments/cafe/v1/comment/add
FAQ

Frequently Asked Questions about CAFEHAUS API