[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fFTjFXA4PjhevcTv87C8F3hiKnHfiVq7VrfQr5DYV6pU":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":15,"tags":18,"homepage":20,"download_link":21,"security_score":13,"vuln_count":22,"unpatched_count":22,"last_vuln_date":23,"fetched_at":24,"vulnerabilities":25,"developer":26,"crawl_stats":23,"alternatives":33,"analysis":147,"fingerprints":166},"ci-publish-facebook","TR Hello","1.0.4","helirc","https:\u002F\u002Fprofiles.wordpress.org\u002Fpntrinh\u002F","\u003Cp>Removed this Plugin\u003C\u002Fp>\n","Removed this Plugin",10,3588,100,1,"","3.7.41","3.0",[19],"hello","http:\u002F\u002Fngoctrinh.net\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fci-publish-facebook.zip",0,null,"2026-03-15T10:48:56.248Z",[],{"slug":27,"display_name":7,"profile_url":8,"plugin_count":28,"total_installs":29,"avg_security_score":30,"avg_patch_time_days":29,"trust_score":31,"computed_at":32},"pntrinh",3,30,90,87,"2026-04-05T05:09:50.549Z",[34,57,80,104,128],{"slug":35,"name":36,"version":37,"author":38,"author_profile":39,"description":40,"short_description":41,"active_installs":42,"downloaded":43,"rating":44,"num_ratings":14,"last_updated":45,"tested_up_to":46,"requires_at_least":47,"requires_php":48,"tags":49,"homepage":54,"download_link":55,"security_score":13,"vuln_count":22,"unpatched_count":22,"last_vuln_date":23,"fetched_at":56},"hello-plus","Hello Plus","1.7.7","Elementor","https:\u002F\u002Fprofiles.wordpress.org\u002Felemntor\u002F","\u003Cp>Hello+ is a free WordPress plugin designed to work seamlessly with Elementor’s \u003Ca href=\"https:\u002F\u002Fprofiles.wordpress.org\u002Felemntor\u002F#content-themes\" rel=\"nofollow ugc\">Hello suite of themes\u003C\u002Fa>. It provides a solid foundation for crafting unique, purpose-driven websites using Elementor’s drag-and-drop site builder.\u003C\u002Fp>\n\u003Cp>Hello+ includes specialized Hello widgets such as a Header, Footer, Zigzag, Form Lite, and more. Hello widgets help you build faster and create polished, professional websites.\u003C\u002Fp>\n\u003Cp>To use Hello+, you’ll need to \u003Ca href=\"https:\u002F\u002Fprofiles.wordpress.org\u002Felemntor\u002F#content-themes\" rel=\"nofollow ugc\">install one of Elementor’s Hello suite of themes\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch3>Copyright\u003C\u002Fh3>\n\u003Cp>This Plugin, like WordPress, is distributed under the terms of GPL.\u003Cbr \u002F>\nUse it as your springboard to building a site with \u003Cstrong>\u003Cem>Elementor\u003C\u002Fem>\u003C\u002Fstrong>.\u003C\u002Fp>\n","Hello+ is a free WordPress plugin designed to work seamlessly with Elementor’s Hello suite of themes.",80000,439115,60,"2025-09-18T11:37:00.000Z","6.8.5","6.0","7.4",[50,35,51,52,53],"elementor","hello-themes","themes","widgets","https:\u002F\u002Felementor.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fhello-plus.1.7.7.zip","2026-03-15T15:16:48.613Z",{"slug":58,"name":59,"version":60,"author":61,"author_profile":62,"description":63,"short_description":64,"active_installs":65,"downloaded":66,"rating":67,"num_ratings":68,"last_updated":69,"tested_up_to":70,"requires_at_least":71,"requires_php":15,"tags":72,"homepage":78,"download_link":79,"security_score":13,"vuln_count":22,"unpatched_count":22,"last_vuln_date":23,"fetched_at":56},"acf-gravityforms-add-on","Advanced Custom Fields: Gravity Forms Add-on","1.3.10","DannyvanHolten","https:\u002F\u002Fprofiles.wordpress.org\u002Fdannyvanholten\u002F","\u003Cp>Provides an Advanced Custom Field which allows a WordPress editorial user or administrator to select a Gravity Form as part of a field group configuration.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>This plugin does not have any effect on the frontend of the website. It does not output the form, nor does it modify the output of existing forms. The plugin only adds a custom ACF field type for use in an ACF field group.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>Full documentation can be found in the \u003Ca href=\"https:\u002F\u002Fgithub.com\u002FSayHelloGmbH\u002Facf-gravityforms-add-on\u002F\" rel=\"nofollow ugc\">plugin’s GitHub Repository\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch3>Development\u003C\u002Fh3>\n\u003Cp>Version 1.3.2 added a plain HTML filter to the output of the field. This filter is not applied to fields in ACF version 4.\u003C\u002Fp>\n\u003Cpre>\u003Ccode>apply_filters('acf-gravityforms-add-on\u002Ffield_html', string $field_html, array $field, string $field_options, string $multiple)\n\u003C\u002Fcode>\u003C\u002Fpre>\n","Provides an Advanced Custom Field which allows a WordPress user to select a Gravity Form as part of a field group configuration.",30000,552315,84,14,"2025-12-02T17:20:00.000Z","6.9.0","4.6",[73,74,75,76,77],"acf","advanced-custom-fields","form","gravity-forms","sayhellogmbh","https:\u002F\u002Fgithub.com\u002Fsayhellogmbh\u002Facf-gravityforms-add-on","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Facf-gravityforms-add-on.1.3.10.zip",{"slug":81,"name":82,"version":83,"author":84,"author_profile":85,"description":86,"short_description":87,"active_installs":88,"downloaded":89,"rating":90,"num_ratings":91,"last_updated":92,"tested_up_to":46,"requires_at_least":93,"requires_php":94,"tags":95,"homepage":100,"download_link":101,"security_score":102,"vuln_count":14,"unpatched_count":22,"last_vuln_date":103,"fetched_at":56},"lenix-elementor-leads-addon","Lenix Leads Collector","2.0.0","yonifre","https:\u002F\u002Fprofiles.wordpress.org\u002Fyonifre\u002F","\u003Cp>Lenix Leads Collector is a powerful plugin that stores and manages leads from your Elementor,Cf7,WPForms and more with export to CSV.\u003C\u002Fp>\n\u003Cp>Key Features:\u003Cbr \u002F>\n* Automatic capture of all Elementor form submissions\u003Cbr \u002F>\n* Automatic capture of all Hello Plus form submissions\u003Cbr \u002F>\n* Automatic capture of all Cf7 form submissions\u003Cbr \u002F>\n* Automatic capture of all WPForms form submissions\u003Cbr \u002F>\n* Centralized management interface in WordPress admin panel\u003Cbr \u002F>\n* Quick and easy export of leads to CSV format\u003Cbr \u002F>\n* Support for global forms\u003Cbr \u002F>\n* Multi-language support (including English, Hebrew, French and more)\u003Cbr \u002F>\n* User-friendly and intuitive interface\u003Cbr \u002F>\n* Date-based filtering for exports\u003Cbr \u002F>\n* Secure data handling\u003Cbr \u002F>\n* Each lead is a post in WordPress, so you can use all the features of WordPress to manage them\u003C\u002Fp>\n\u003Cp>No need to install any other plugin, just install and use, no configuration needed.\u003C\u002Fp>\n\u003Cp>The plugin provides a seamless way to track, manage, and export all leads received through your forms, organizing them similarly to WordPress posts for easy access and management.\u003C\u002Fp>\n\u003Cp>Perfect for Websites and organizations looking to efficiently manage their form submissions and lead data in one central location.\u003C\u002Fp>\n\u003Ch4>Maspik – Spam Protection\u003C\u002Fh4>\n\u003Cp>For improved spam protection, check out our sister plugin \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fcontact-forms-anti-spam\u002F\" rel=\"ugc\">Maspik\u003C\u002Fa>\u003Cbr \u002F>\nWe provide built-in spam protection and filtering. For enhanced spam prevention, we recommend using Maspik – an advanced anti-spam solution specifically designed for WordPress forms.\u003C\u002Fp>\n\u003Cp>With a 95%+ success rate, Maspik uses smart technology to block spam submissions while ensuring legitimate leads get through.\u003Cbr \u002F>\nThe plugin works instantly with no CAPTCHA required and includes features like smart blacklist system, IP blocking, and phone number validation.\u003C\u002Fp>\n\u003Cp>Compatible with all major form plugins including Elementor forms, you can set it up in just 2 minutes. \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fcontact-forms-anti-spam\u002F\" rel=\"ugc\">Learn more about Maspik\u003C\u002Fa>\u003C\u002Fp>\n","Leads Collector, Collects forms entries from Elementor,Cf7,WPForms and more with export to CSV.",10000,182611,88,25,"2025-06-12T06:39:00.000Z","5.0","7.0",[96,97,98,35,99],"contact-form-db","crm","form-collector","leads","https:\u002F\u002Flenix.co.il\u002Fplugin\u002Flenix-elementor-leads-addon\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Flenix-elementor-leads-addon.2.0.0.zip",98,"2025-02-19 00:00:00",{"slug":105,"name":106,"version":107,"author":106,"author_profile":108,"description":109,"short_description":110,"active_installs":111,"downloaded":112,"rating":113,"num_ratings":114,"last_updated":115,"tested_up_to":116,"requires_at_least":117,"requires_php":118,"tags":119,"homepage":124,"download_link":125,"security_score":126,"vuln_count":114,"unpatched_count":22,"last_vuln_date":127,"fetched_at":56},"helloasso","HelloAsso","1.1.24","https:\u002F\u002Fprofiles.wordpress.org\u002Fhelloasso\u002F","\u003Cp>HelloAsso est la solution gratuite (0 frais, 0 commission) des associations pour collecter des dons et des paiements sur internet. Plus de 80 000 associations françaises font confiance à HelloAsso pour gagner du temps et recevoir des paiements en ligne afin de financer leurs projets. Quel que soit le besoin de votre association, HelloAsso vous permet de proposer le paiement en ligne : don en ligne, billetterie, adhésion \u002F cotisation, crowdfunding, et davantage !\u003C\u002Fp>\n\u003Cp>L’extension HelloAsso vous permet d’intégrer tous vos formulaires de paiement HelloAsso directement sur votre site WordPress.\u003C\u002Fp>\n\u003Ch4>Cas d’usage :\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Financez de nouveaux projets (https:\u002F\u002Fwww.helloasso.com\u002Factivites\u002Ffinancement-de-projet)\u003C\u002Fli>\n\u003Cli>Organisez des événements (https:\u002F\u002Fwww.helloasso.com\u002Factivites\u002Fspectacle-concert)\u003C\u002Fli>\n\u003Cli>Gérez des compétitions et tournois (https:\u002F\u002Fwww.helloasso.com\u002Factivites\u002Fcompetition-tournoi)\u003C\u002Fli>\n\u003Cli>Proposez des ateliers et des stages (https:\u002F\u002Fwww.helloasso.com\u002Factivites\u002Fatelier-stage)\u003C\u002Fli>\n\u003Cli>Gérez vos adhérents et leur cotisation (https:\u002F\u002Fwww.helloasso.com\u002Foutils\u002Fgerer-mes-adhesions)\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Fonctionnalités :\u003C\u002Fh4>\n\u003Cp>L’extension HelloAsso permet vous permet d’intégrer vos formulaires de paiement HelloAsso directement sur le site WordPress de votre association. Vous bénéficiez donc de toutes les fonctionnalités de HelloAsso :\u003Cbr \u002F>\n* Gestion des adhésions et adhérents\u003Cbr \u002F>\n* Billetterie et organisation d’événément\u003Cbr \u002F>\n* Collecte de dons\u003Cbr \u002F>\n* Campagne de financement participatif\u003Cbr \u002F>\n* Formulaire de vente\u003C\u002Fp>\n\u003Cp>Support HelloAsso : Une équipe de 15 personnes disponible via notre \u003Ca href=\"https:\u002F\u002Fcentredaide.helloasso.com\u002Fassociation?question=comment-integrer-mes-campagnes-sur-wordpress\" rel=\"nofollow ugc\">centre d’aide\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch3>Video\u003C\u002Fh3>\n\u003Cspan class=\"embed-youtube\" style=\"text-align:center; display: block;\">\u003Ciframe loading=\"lazy\" class=\"youtube-player\" width=\"750\" height=\"422\" src=\"https:\u002F\u002Fwww.youtube.com\u002Fembed\u002Fyrv1_PIakac?version=3&rel=1&showsearch=0&showinfo=1&iv_load_policy=1&fs=1&hl=en-US&autohide=2&wmode=transparent\" allowfullscreen=\"true\" style=\"border:0;\" sandbox=\"allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox\">\u003C\u002Fiframe>\u003C\u002Fspan>\n","HelloAsso est la solution gratuite des associations pour collecter des paiements et des dons sur internet.",4000,60735,72,5,"2025-12-09T10:08:00.000Z","6.9.4","4.0","7.2.34",[120,121,122,105,123],"association","crowdfunding","don","paiement","https:\u002F\u002Fcentredaide.helloasso.com\u002Fs\u002Farticle\u002Fpaiement-en-ligne-wordpress-integrer-vos-campagnes-helloasso","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fhelloasso.1.1.24.zip",97,"2025-01-24 00:00:00",{"slug":129,"name":130,"version":131,"author":132,"author_profile":133,"description":134,"short_description":135,"active_installs":136,"downloaded":137,"rating":13,"num_ratings":28,"last_updated":138,"tested_up_to":70,"requires_at_least":93,"requires_php":139,"tags":140,"homepage":145,"download_link":146,"security_score":13,"vuln_count":22,"unpatched_count":22,"last_vuln_date":23,"fetched_at":56},"mhm-menu-separator","Add menu separators to navigation","2.1.3","Mark Howells-Mead","https:\u002F\u002Fprofiles.wordpress.org\u002Fmarkhowellsmead\u002F","\u003Cp>Allow separator (\u003Ccode>HR\u003C\u002Fcode> \u002F line) and unlinked, text-only entries in WordPress’ classic navigation menus.\u003C\u002Fp>\n\u003Ch3>Block editor\u003C\u002Fh3>\n\u003Cp>\u003Cstrong>This plugin does not support the Block Editor or the navigation block\u003C\u002Fstrong>. It is intended for use with the \u003Ca href=\"https:\u002F\u002Fcodex.wordpress.org\u002FWordPress_Menu_User_Guide\" rel=\"nofollow ugc\">classic menus\u003C\u002Fa> (e.g. \u003Ccode>wp_nav_menu\u003C\u002Fcode>).\u003C\u002Fp>\n\u003Ch3>Usage\u003C\u002Fh3>\n\u003Col>\n\u003Cli>Upload the plugin folder to the \u003Ccode>\u002Fwp-content\u002Fplugins\u002F\u003C\u002Fcode> directory\u003C\u002Fli>\n\u003Cli>Activate the plugin through the ‘Plugins’ menu in WordPress\u003C\u002Fli>\n\u003Cli>Edit your menu in the “Appearance” section of WordPress Admin. Add a custom link entry, then use \u003Ccode>---\u003C\u002Fcode> (three dashes) as link text for a horizontal line or use \u003Ccode>#\u003C\u002Fcode> as a URL for an unlinked menu entry.\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch3>Filters\u003C\u002Fh3>\n\u003Cp>Version 2.1.0 of the plugin added two filters, with which developers can customise the output.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Ccode>mhm-menu-separator\u002Fseparator\u003C\u002Fcode> allows customisation of a separator output. Receives the arguments \u003Ccode>'\u003Chr class=\"mhm-menu-separator\">'\u003C\u002Fcode> (the uncustomised HTML) and \u003Ccode>$item\u003C\u002Fcode> (the menu item).\u003C\u002Fli>\n\u003Cli>\u003Ccode>mhm-menu-separator\u002Ftitle\u003C\u002Fcode> allows customisation of an unlinked menu entry. Receives the arguments \u003Ccode>$item->post_title\u003C\u002Fcode> (the plain, unlinked menu item text) and \u003Ccode>$item\u003C\u002Fcode> (the menu item).\u003C\u002Fli>\n\u003C\u002Ful>\n","Allow separator (HR \u002F line) and unlinked, text-only entries in WordPress' classic navigation menus.",900,15755,"2025-12-02T16:11:00.000Z","5.6",[141,142,77,143,144],"menu","navigation","separator","wp_nav_menu","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fmhm-menu-separator\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fmhm-menu-separator.zip",{"attackSurface":148,"codeSignals":154,"taintFlows":161,"riskAssessment":162,"analyzedAt":165},{"hooks":149,"ajaxHandlers":150,"restRoutes":151,"shortcodes":152,"cronEvents":153,"entryPointCount":22,"unprotectedCount":22},[],[],[],[],[],{"dangerousFunctions":155,"sqlUsage":156,"outputEscaping":158,"fileOperations":22,"externalRequests":22,"nonceChecks":22,"capabilityChecks":22,"bundledLibraries":160},[],{"prepared":22,"raw":22,"locations":157},[],{"escaped":22,"rawEcho":22,"locations":159},[],[],[],{"summary":163,"deductions":164},"The \"ci-publish-facebook\" v1.0.4 plugin exhibits a strong security posture based on the provided static analysis. The complete absence of identified dangerous functions, SQL injection vulnerabilities, unescaped output, file operations, external HTTP requests, and crucial security checks like nonce and capability checks is highly commendable. The fact that all SQL queries utilize prepared statements and all output is properly escaped further reinforces this positive assessment.  The plugin also has no recorded vulnerabilities, suggesting a history of secure development practices.  However, the total lack of any identified entry points (AJAX, REST API, shortcodes, cron events) is unusual and raises a slight concern. While this contributes to an extremely small attack surface, it might indicate the plugin is very simple or perhaps not fully functional in ways that would create such entry points, which could be a weakness if intended functionality is missing or if the analysis is incomplete. Overall, based on the presented data, the plugin appears very secure, but the lack of any attack surface warrants a note of caution regarding potential incomplete analysis or very limited functionality.",[],"2026-03-16T23:30:41.869Z",{"wat":167,"direct":176},{"assetPaths":168,"generatorPatterns":171,"scriptPaths":172,"versionParams":173},[169,170],"\u002Fwp-content\u002Fplugins\u002Fci-publish-facebook\u002Fcss\u002Fstyle.css","\u002Fwp-content\u002Fplugins\u002Fci-publish-facebook\u002Fjs\u002Fscript.js",[],[170],[174,175],"ci-publish-facebook\u002Fstyle.css?ver=","ci-publish-facebook\u002Fscript.js?ver=",{"cssClasses":177,"htmlComments":178,"htmlAttributes":179,"restEndpoints":180,"jsGlobals":181,"shortcodeOutput":182},[],[],[],[],[],[]]