Company Data Manager Security & Risk Analysis

wordpress.org/plugins/company-data-manager

A plugin for managing and displaying essential company information, including contact details and social media links.

10 active installs v1.0.1 PHP 7.0+ WP 5.0+ Updated Feb 4, 2025
companycompany-datacontact-informationsocial-media
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Company Data Manager Safe to Use in 2026?

Generally Safe

Score 92/100

Company Data Manager has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The "company-data-manager" v1.0.1 plugin exhibits a strong security posture based on the provided static analysis. The absence of any identified AJAX handlers, REST API routes, shortcodes, or cron events significantly limits the potential attack surface. Furthermore, the code demonstrates good security practices by utilizing prepared statements for all SQL queries and having a high percentage of properly escaped output. The presence of nonce checks, even if limited, is a positive indicator of an awareness of security best practices. The plugin also shows no history of known vulnerabilities, suggesting a history of stable and secure development.

However, the analysis also highlights areas that, while not explicitly indicating a vulnerability in this specific version, represent potential weaknesses. The complete lack of capability checks in any of the (zero) identified entry points is a notable concern. While there are no entry points to check, if any were to be introduced in future versions, the absence of this fundamental security control could be a critical oversight. Similarly, the zero taint analysis flows, while positive, could also be an indicator of a very limited or simplistic codebase, or potentially that the analysis itself was constrained in its scope. Therefore, while the current state is secure, vigilance regarding the introduction of new features and ensuring proper authorization mechanisms are implemented will be crucial for future versions.

Key Concerns

  • No capability checks found
Vulnerabilities
None known

Company Data Manager Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Company Data Manager Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
2
28 escaped
Nonce Checks
2
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

93% escaped30 total outputs
Attack Surface

Company Data Manager Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 4
actionadmin_menucompany-data-manager.php:39
actionadmin_initcompany-data-manager.php:125
actionadmin_post_webpro_dde_delete_company_datacompany-data-manager.php:347
actionplugins_loadedcompany-data-manager.php:374
Maintenance & Trust

Company Data Manager Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedFeb 4, 2025
PHP min version7.0
Downloads566

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Company Data Manager Developer Profile

webprowp

2 plugins · 20 total installs

88
trust score
Avg Security Score
92/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Company Data Manager

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

CSS Classes
wrapform-table
Data Attributes
for="webpro_dde_email"id="webpro_dde_email"name="webpro_dde_email"for="webpro_dde_cif"id="webpro_dde_cif"name="webpro_dde_cif"+11 more
Shortcode Output
[company_email][company_cif][company_entity_name]
FAQ

Frequently Asked Questions about Company Data Manager