Custom Profile Filters for BuddyPress Security & Risk Analysis

wordpress.org/plugins/custom-profile-filters-for-buddypress

Allows users to take control of the way that the links in their Buddypress profiles are handled.

100 active installs v0.3.1 PHP + WP + Updated May 29, 2015
buddypressfilterprofile
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Custom Profile Filters for BuddyPress Safe to Use in 2026?

Generally Safe

Score 85/100

Custom Profile Filters for BuddyPress has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 10yr ago
Risk Assessment

Based on the provided static analysis and vulnerability history, the 'custom-profile-filters-for-buddypress' plugin v0.3.1 appears to have a strong security posture with no identified vulnerabilities in its current state. The absence of dangerous functions, SQL injection risks due to prepared statements, and properly escaped output are all positive indicators. Furthermore, the lack of any reported CVEs, historical or current, suggests a commitment to security or simply a lack of past issues being discovered, which is a positive sign.

However, the analysis reveals a complete lack of entry points such as AJAX handlers, REST API routes, shortcodes, or cron events. While this might seem like a strength, it's also a significant weakness. A plugin that offers no functionality or interaction points is essentially useless, and the analysis shows zero capability checks or nonce checks. This suggests the plugin may not be actively maintained or its functionality is extremely limited and potentially non-existent, making its current security state somewhat of a theoretical one. It's highly unusual for a plugin to have zero entry points if it's intended to provide any user-facing features.

In conclusion, the plugin demonstrates good coding practices regarding input sanitization and output escaping for the code that does exist. The vulnerability history is clean. The major concern is the absence of any discernable attack surface or interaction points, which, while preventing immediate exploitation, also raises questions about the plugin's functionality and ongoing maintenance. This lack of features might mean it's safe for now, but it also means it's not contributing anything and its future security is uncertain.

Key Concerns

  • No capability checks detected
  • No nonce checks detected
  • Zero detected entry points (AJAX, REST, shortcodes, cron)
Vulnerabilities
None known

Custom Profile Filters for BuddyPress Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Custom Profile Filters for BuddyPress Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

Custom Profile Filters for BuddyPress Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 4
filterbp_get_the_profile_field_valuecustom-profile-filters-for-buddypress-bp-functions.php:16
filterbp_get_the_profile_field_valuecustom-profile-filters-for-buddypress-bp-functions.php:34
filterbp_get_the_profile_field_valuecustom-profile-filters-for-buddypress-bp-functions.php:47
actionbp_initcustom-profile-filters-for-buddypress.php:35
Maintenance & Trust

Custom Profile Filters for BuddyPress Maintenance & Trust

Maintenance Signals

WordPress version tested
Last updatedMay 29, 2015
PHP min version
Downloads27K

Community Trust

Rating66/100
Number of ratings3
Active installs100
Developer Profile

Custom Profile Filters for BuddyPress Developer Profile

Boone Gorges

27 plugins · 12K total installs

71
trust score
Avg Security Score
88/100
Avg Patch Time
1864 days
View full developer profile
Detection Fingerprints

How We Detect Custom Profile Filters for BuddyPress

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Custom Profile Filters for BuddyPress