Chartivio Security & Risk Analysis

wordpress.org/plugins/chartivio

Professional, interactive data visualization for WordPress. Create stunning charts with a live-preview editor, CSV support, and manual data entry.

0 active installs v1.0.4 PHP 7.4+ WP 5.0+ Updated Feb 28, 2026
bar-chartchartchartsdata-visualizationpie-chart
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Chartivio Safe to Use in 2026?

Generally Safe

Score 100/100

Chartivio has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The chartivio plugin v1.0.4 exhibits a generally strong security posture based on the static analysis. The absence of dangerous functions, file operations, external HTTP requests, and a complete reliance on prepared statements for SQL queries are significant strengths. Furthermore, the high percentage of properly escaped output (91%) and the presence of nonce and capability checks indicate good development practices aimed at preventing common web vulnerabilities. The limited attack surface of two entry points, both without apparent authentication issues, further contributes to a positive security outlook.

The plugin's vulnerability history is also remarkably clean, with zero known CVEs recorded. This lack of past vulnerabilities, especially critical or high-severity ones, suggests a history of responsible development and maintenance. The absence of any taint analysis findings further reinforces the impression that sensitive data flows are likely handled securely. While the plugin demonstrates many positive security attributes, it's important to remember that static analysis is not exhaustive and may not detect all potential vulnerabilities, particularly those arising from complex logical flaws or specific server configurations.

In conclusion, chartivio v1.0.4 appears to be a secure plugin with a strong foundation. Its adherence to best practices in SQL handling, output escaping, and access control, combined with a clean vulnerability history, provides a high degree of confidence in its security. The minimal attack surface and lack of flagged taint flows are also commendable. No specific deductions are warranted based on the provided data.

Vulnerabilities
None known

Chartivio Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Chartivio Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
5
50 escaped
Nonce Checks
2
Capability Checks
3
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

91% escaped55 total outputs
Attack Surface

Chartivio Attack Surface

Entry Points2
Unprotected0

AJAX Handlers 1

authwp_ajax_chartivio_save_chartincludes\admin-settings.php:506

Shortcodes 1

[chartivio] includes\shortcodes.php:104
WordPress Hooks 13
actioninitchartivio.php:54
actionadmin_menuchartivio.php:59
filteruse_block_editor_for_post_typechartivio.php:78
filterget_user_option_screen_layout_chartiviochartivio.php:88
filterscreen_options_show_screenchartivio.php:95
actionadmin_enqueue_scriptschartivio.php:119
filtermanage_edit-chartivio_columnschartivio.php:131
actionmanage_chartivio_posts_custom_columnchartivio.php:146
filterupload_mimesincludes\admin-settings.php:13
actionadd_meta_boxesincludes\admin-settings.php:28
actionadmin_enqueue_scriptsincludes\admin-settings.php:99
actionsave_postincludes\admin-settings.php:428
actionwp_enqueue_scriptsincludes\shortcodes.php:123
Maintenance & Trust

Chartivio Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedFeb 28, 2026
PHP min version7.4
Downloads211

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Chartivio Developer Profile

rachanapaudel26

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Chartivio

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/chartivio/assets/css/admin-style.css/wp-content/plugins/chartivio/assets/js/admin-list.js/wp-content/plugins/chartivio/assets/js/chartjs/chart.umd.min.js/wp-content/plugins/chartivio/assets/js/admin-settings.js
Script Paths
/wp-content/plugins/chartivio/assets/js/admin-list.js/wp-content/plugins/chartivio/assets/js/chartjs/chart.umd.min.js/wp-content/plugins/chartivio/assets/js/admin-settings.js
Version Parameters
chartivio-admin-style?ver=chartivio-admin-list?ver=chartjs?ver=4.5.1chartivio-admin-settings?ver=

HTML / DOM Fingerprints

CSS Classes
chartivio-shortcode-pillchartivio-copy-iconchartivio-type-badge
Data Attributes
data-chartivio-iddata-chartivio-typedata-chartivio-manual-datadata-chartivio-csv-urldata-chartivio-active-sourcedata-chartivio-chart-type+5 more
JS Globals
chartivio_list_vars
Shortcode Output
[chartivio id="
FAQ

Frequently Asked Questions about Chartivio