
Create my Apps Security & Risk Analysis
wordpress.org/plugins/create-my-appsWP to App and WooCommerce to App is absolutely easy with the App Builder software from https://create-my-apps.com without programming knowledge.
Is Create my Apps Safe to Use in 2026?
Generally Safe
Score 85/100Create my Apps has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'create-my-apps' plugin version 1.2.5 exhibits a seemingly robust security posture based on the provided static analysis. There are no identified entry points that are unprotected, and the code does not appear to use dangerous functions, perform file operations, or make external HTTP requests. Furthermore, all SQL queries are properly prepared, which is a significant strength. The absence of any reported vulnerabilities in its history is also a positive indicator of past security diligence.
However, a critical concern arises from the output escaping analysis, where 100% of outputs are not properly escaped. This represents a significant risk, as it can lead to Cross-Site Scripting (XSS) vulnerabilities if user-supplied data is not handled correctly before being displayed. The lack of any nonce or capability checks, while not directly tied to identified entry points in this analysis, suggests a potential weakness if new entry points were to be introduced or if existing ones were overlooked. The fact that no taint flows were found is good, but this could be due to the limited attack surface analyzed or the absence of data processing that would trigger taint analysis.
In conclusion, while the plugin avoids common pitfalls like raw SQL and direct access to entry points, the pervasive issue of unescaped output presents a clear and present danger. This weakness, coupled with the absence of nonce and capability checks, necessitates caution. The plugin's clean vulnerability history is a positive, but it should not overshadow the identified risks within the current code.
Key Concerns
- Output escaping is not used
- No nonce checks
- No capability checks
Create my Apps Security Vulnerabilities
Create my Apps Release Timeline
Create my Apps Code Analysis
Output Escaping
Create my Apps Attack Surface
WordPress Hooks 4
Maintenance & Trust
Create my Apps Maintenance & Trust
Maintenance Signals
Community Trust
Create my Apps Alternatives
WappPress – Convert Site to App Fast – WordPress to Mobile App Builder
wapppress-builds-android-app-for-website
Short Description:Convert your website into Mobile App in just one click – no coding needed. Instantly generate an APK or AAB.
MStore API – Create Native Android & iOS Apps On The Cloud
mstore-api
Take your WordPress store mobile with MStore API! This plugin bridges the gap between your WordPress website and the powerful FluxBuilder app builder.
Mobile App Editor – WordPress to Android App Builder
mobile-app-editor
Native Android App Builder for wordpress and woocommerce.
My FastAPP
my-fastapp
Create your native Android/iOS app using a wordpress admin console.
WP Data Access – App Builder for Tables, Forms, Charts, Maps & Dashboards
wp-data-access
Turn your data into WordPress apps with tables, forms, charts & maps — no code required, with optional hooks for developers. Supports 35+ languages.
Create my Apps Developer Profile
1 plugin · 10 total installs
How We Detect Create my Apps
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/create-my-apps/models/default.php/wp-content/plugins/create-my-apps/models/connector.phpHTML / DOM Fingerprints
app-creator-warning