
CPT Descriptions Security & Risk Analysis
wordpress.org/plugins/cpt-descriptionsThis plugin adds a place to enter a description for your custom post types which you can display anywhere in your theme.
Is CPT Descriptions Safe to Use in 2026?
Generally Safe
Score 85/100CPT Descriptions has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "cpt-descriptions" plugin version 0.1 exhibits a generally good security posture based on the provided static analysis. The absence of AJAX handlers, REST API routes, shortcodes, and cron events significantly limits the potential attack surface. Furthermore, the presence of 100% prepared statements for SQL queries is a strong indicator of secure database interaction. However, a critical concern is the complete lack of output escaping, with 0% of outputs being properly sanitized. This leaves the plugin vulnerable to cross-site scripting (XSS) attacks if any user-provided data is displayed without proper sanitization. The absence of nonce checks and capability checks also increases the risk of unauthorized actions or data manipulation if any entry points were to be introduced or found in the future. The plugin's vulnerability history is clean, with no recorded CVEs, which is a positive sign, but this could also be attributed to its limited functionality and potential lack of rigorous security auditing due to its early version.
Key Concerns
- No output escaping detected
- No nonce checks
- No capability checks
CPT Descriptions Security Vulnerabilities
CPT Descriptions Code Analysis
Output Escaping
CPT Descriptions Attack Surface
WordPress Hooks 2
Maintenance & Trust
CPT Descriptions Maintenance & Trust
Maintenance Signals
Community Trust
CPT Descriptions Alternatives
Post Types Unlimited
post-types-unlimited
Create unlimited custom post types and custom taxonomies.
Custom post types, Custom Fields & more
custom-post-types
Custom Post Types, Custom Fields, Custom Taxonomies, Custom Templates, Custom Admin Pages, Custom Admin Notices. Directly from the WP dashboard.
Custom Post Type Editor
cpt-editor
Customize the text labels, menu names or description for any registered custom post type using a simple Dashboard user interface.
Hierarchy
hierarchy
Move your Pages/Posts/Custom Post Type admin links from the sidebar to a Content menu that nests everything where it should be
Custom Post Types Bubbles
custom-post-types-bubbles
Easily add notifications bubble with counters in Post Types to display either pending or draft posts.
CPT Descriptions Developer Profile
1 plugin · 10 total installs
How We Detect CPT Descriptions
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
wraptextarea_name