
Coderlift Affiliate Compliance Security & Risk Analysis
wordpress.org/plugins/coderlift-affiliate-complianceThis plugin automatically tracks the affiliate links from your post contents and shows a disclaimer message if links found.
Is Coderlift Affiliate Compliance Safe to Use in 2026?
Generally Safe
Score 100/100Coderlift Affiliate Compliance has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "coderlift-affiliate-compliance" v1.0.0 plugin exhibits a strong security posture based on the provided static analysis. There are no identified direct entry points like AJAX handlers, REST API routes, or shortcodes, which significantly reduces the attack surface. The absence of dangerous functions, file operations, and external HTTP requests further contributes to its security. Importantly, all SQL queries utilize prepared statements, and there's no indication of common vulnerability types in its history.
However, some areas warrant attention. The plugin has only two total outputs, and only 50% of these are properly escaped. This suggests a potential for cross-site scripting (XSS) vulnerabilities if user-supplied data is not handled carefully in the unescaped output. Additionally, the lack of any capability checks or nonce checks on the limited code signals, while currently not exposed via an attack surface, could become a concern if new entry points are introduced in future versions without proper authorization mechanisms.
Overall, the plugin is well-coded with a focus on preventing common web vulnerabilities. The primary concern lies with the unescaped output, which, while limited in scope, presents a tangible risk. The absence of any vulnerability history is a positive indicator of development practices, but it's crucial to maintain this by addressing the identified code signals.
Key Concerns
- Unescaped output detected
- Lack of capability checks
- Lack of nonce checks
Coderlift Affiliate Compliance Security Vulnerabilities
Coderlift Affiliate Compliance Code Analysis
Output Escaping
Coderlift Affiliate Compliance Attack Surface
WordPress Hooks 9
Maintenance & Trust
Coderlift Affiliate Compliance Maintenance & Trust
Maintenance Signals
Community Trust
Coderlift Affiliate Compliance Alternatives
Affiliate Notice Manager
affiliate-notice-manager
This plugin helps to display affiliate disclosure on WordPress Single Posts. It's easy to setup and customize with any latest WordPress Version.
MWW Disclaimer Buttons
mww-disclaimer-buttons
The FTC requires that you put disclosures at the top of your post if you were compensated in any way (affiliate links, free products, or payment).
Disclaimify – Affiliate Disclosure / Disclaimer for WordPress
disclaimify
Disclaimify is the ultimate solution to add affiliate disclosure statements & inform your readers about affiliate links while ensuring transparency.
Disclosure for Amazon Affiliate
disclosure-for-amazon-affiliate
The fastest way to help your site be compliant with Amazon Associates / FTC affiliate and Amazon trademark disclosures
Affiliate Disclosure and Disclaimer – Affylite
affylite
Affylite - Easy Affiliate Disclosure and Disclaimer
Coderlift Affiliate Compliance Developer Profile
2 plugins · 0 total installs
How We Detect Coderlift Affiliate Compliance
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/coderlift-affiliate-compliance/assets/style.css/wp-content/plugins/coderlift-affiliate-compliance/assets/main-script.js/wp-content/plugins/coderlift-affiliate-compliance/assets/main-script.jsHTML / DOM Fingerprints
comp-text