
Citations Security & Risk Analysis
wordpress.org/plugins/citationsThis Plugin introduces practical citation functionality to the WordPress Block Editor, aiming to streamline the process of adding references to your c …
Is Citations Safe to Use in 2026?
Generally Safe
Score 85/100Citations has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "citations" v0.2.1 plugin exhibits an exceptionally strong security posture based on the provided static analysis. The absence of any identified entry points (AJAX, REST API, shortcodes, cron events) significantly limits the plugin's attack surface. Furthermore, the code signals indicate diligent security practices, with all SQL queries utilizing prepared statements and all output being properly escaped. The lack of file operations, external HTTP requests, nonce checks, and capability checks, while contributing to a small attack surface, also points to a plugin that likely performs very limited functionality. The plugin's vulnerability history is clean, with no recorded CVEs, further reinforcing its current security. However, the complete absence of any identified flows in the taint analysis, coupled with the lack of nonces and capability checks, might indicate a very rudimentary plugin or a lack of sophisticated analysis coverage. While the current data suggests a highly secure plugin, this could also be attributed to its limited scope or the specific limitations of the static analysis performed.
Citations Security Vulnerabilities
Citations Code Analysis
Output Escaping
Citations Attack Surface
WordPress Hooks 5
Maintenance & Trust
Citations Maintenance & Trust
Maintenance Signals
Community Trust
Citations Alternatives
CM Footnotes – Boost your content’s credibility with footnotes, citations, and bibliography
cm-footnotes
Add and manage footnotes, citations, and bibliography with this footnotes Plugin. Improve clarity and provide references.
CiteKit – Citation and Reference Manager
citation-reference-manager
Add in-text citations, tooltips, and auto-generated bibliography to your WordPress posts in APA, MLA, Chicago and more.
Modern Footnotes
modern-footnotes
Add inline footnotes to your posts. On desktop, the footnotes will appear as tooltips. On mobile, the footnote will expand beneath the text.
Footnotes Made Easy
footnotes-made-easy
Allows post authors to easily add and manage footnotes in posts.
Zotpress
zotpress
Zotpress displays your Zotero citations on WordPress.
Citations Developer Profile
3 plugins · 2K total installs
How We Detect Citations
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/citations/admin/dist/js/blocks-helper.min.js/wp-content/plugins/citations/admin/dist/js/blocks.min.js/wp-content/plugins/citations/admin/dist/css/admin.min.css/wp-content/plugins/citations/vendor/autoload.php/wp-content/plugins/citations/inc/functions.phpcitations-blocks-helpercitations-blockscitations-adminHTML / DOM Fingerprints
<!-- wp:lh/bibliography --><!-- /wp:lh/bibliography -->