Caledros Typewriter Animator Security & Risk Analysis

wordpress.org/plugins/caledros-typewriter-animator

Adds a custom typewriter animation block to the WordPress Gutenberg editor.

0 active installs v1.0.0 PHP 8.3+ WP 6.9+ Updated Jan 9, 2026
block-editorcustom-blocksgutenberg
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Caledros Typewriter Animator Safe to Use in 2026?

Generally Safe

Score 100/100

Caledros Typewriter Animator has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The 'caledros-typewriter-animator' plugin v1.0.0 exhibits an excellent security posture based on the provided static analysis. The absence of any identified dangerous functions, raw SQL queries, file operations, or external HTTP requests is commendable. Furthermore, the 100% proper output escaping across all 58 outputs indicates a strong defense against cross-site scripting (XSS) vulnerabilities. The plugin also scores well by not bundling any libraries, which can sometimes be a source of vulnerabilities if not kept updated.

However, the static analysis also reveals significant areas of concern that impact its overall security. The complete lack of nonce checks and capability checks, especially when considering potential future additions to the attack surface, is a major weakness. While the current attack surface is zero, this absence of built-in authorization mechanisms means that if any entry points (AJAX, REST API, shortcodes) are introduced in future versions, they would likely be unprotected, leaving the site vulnerable to unauthorized actions. The vulnerability history is clean, which is a positive indicator, but it doesn't negate the inherent risks present in the current code structure regarding authorization.

In conclusion, the plugin demonstrates strong defensive coding practices in areas like output sanitization and secure SQL usage. Nevertheless, the complete omission of authentication and authorization checks represents a significant inherent security risk. While there are no currently known vulnerabilities, the lack of these fundamental security controls means the plugin is not robust against potential future threats or misconfigurations that could expose its functionality. A score of 100 points is maintained due to the absence of active vulnerabilities and good coding practices, but the noted deduction reflects the potential for future exploitation if the attack surface expands.

Key Concerns

  • No nonce checks implemented
  • No capability checks implemented
Vulnerabilities
None known

Caledros Typewriter Animator Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Caledros Typewriter Animator Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
58 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped58 total outputs
Attack Surface

Caledros Typewriter Animator Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 4
filterblock_categories_allcore\loaders\block-category-loader.php:45
actioninitcore\loaders\block-loader.php:49
actionenqueue_block_assetscore\loaders\css-styles-loader.php:41
actionenqueue_block_editor_assetscore\loaders\load-translations.php:36
Maintenance & Trust

Caledros Typewriter Animator Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedJan 9, 2026
PHP min version8.3
Downloads112

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Caledros Typewriter Animator Developer Profile

David Arnado

3 plugins · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Caledros Typewriter Animator

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/caledros-typewriter-animator/styles/dist/editor-styles.min.css
Version Parameters
ctwa-editor-css?ver=1.0

HTML / DOM Fingerprints

CSS Classes
ctwa-typewriter-animator
FAQ

Frequently Asked Questions about Caledros Typewriter Animator