
Create Stellar Toml Security & Risk Analysis
wordpress.org/plugins/create-stellar-toml"Well-Known URIs" for WordPress!
Is Create Stellar Toml Safe to Use in 2026?
Generally Safe
Score 85/100Create Stellar Toml has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'create-stellar-toml' v1.0.4 plugin exhibits a strong security posture based on the provided static analysis. The absence of any identified entry points such as AJAX handlers, REST API routes, shortcodes, or cron events significantly limits the plugin's attack surface. Furthermore, the code analysis reveals a complete absence of dangerous functions, direct SQL queries, file operations, and external HTTP requests, which are common vectors for vulnerabilities. The fact that all identified SQL queries utilize prepared statements is a positive indicator of secure database interaction.
However, there are minor areas for improvement. The output escaping is not fully comprehensive, with 30% of outputs not being properly escaped. While there are no identified taint flows or known CVEs, the absence of capability checks and nonce checks on any potential entry points (even though none are currently exposed) could become a concern if new functionalities are added in the future that introduce such points without proper security measures. The plugin's vulnerability history being entirely clear is a positive sign, suggesting a proactive approach to security from its developers or a lack of targeted attacks.
In conclusion, 'create-stellar-toml' v1.0.4 is currently a very secure plugin. Its limited attack surface and secure coding practices for database interactions are commendable. The primary area for enhancement is ensuring consistent and proper output escaping for all user-facing data. While the lack of known vulnerabilities is excellent, future development should prioritize the inclusion of appropriate authorization and nonce checks if any new entry points are introduced to maintain this high level of security.
Key Concerns
- Improper output escaping
Create Stellar Toml Security Vulnerabilities
Create Stellar Toml Release Timeline
Create Stellar Toml Code Analysis
Output Escaping
Create Stellar Toml Attack Surface
WordPress Hooks 7
Maintenance & Trust
Create Stellar Toml Maintenance & Trust
Maintenance Signals
Community Trust
Create Stellar Toml Alternatives
/well-known-uris/
well-known-uris
"Well-Known URIs" for WordPress!
Nofollow External Links (SEO)
nofollow-external-links-seo
It automatically set all external links to "nofollow" in website content.
Well-Known File Manager
well-known-file-manager
Manage files in the .well-known directory with ease.
Nostr Verify
nostr-verify
Verify yourself with Nostr, using NIP-05
SatoshiPay
satoshipay
Adds SatoshiPay to your site, allowing you to charge small amounts for posts, images, audios, videos or downloads using micropayments.
Create Stellar Toml Developer Profile
1 plugin · 10 total installs
How We Detect Create Stellar Toml
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/create-stellar-toml/stellar_icon_300px.pngHTML / DOM Fingerprints
name="create-stellar-toml-settings-submit"