
Custom Taxonomies for Blocks Security & Risk Analysis
wordpress.org/plugins/custom-taxonomies-for-blocksWordPress plugin to convert older custom taxonomies so they can be used in the WordPress blocks interface (a.k.a. Gutenberg).
Is Custom Taxonomies for Blocks Safe to Use in 2026?
Generally Safe
Score 85/100Custom Taxonomies for Blocks has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "custom-taxonomies-for-blocks" plugin version 1.0.0 exhibits an excellent security posture based on the provided static analysis and vulnerability history. The static analysis reveals no identified attack surface through AJAX handlers, REST API routes, shortcodes, or cron events, indicating a well-secured design. Furthermore, the absence of dangerous functions, SQL queries, file operations, and external HTTP requests, coupled with 100% adherence to prepared statements and output escaping, signifies robust coding practices that prevent common vulnerabilities. The taint analysis also shows zero flows with unsanitized paths, reinforcing the plugin's secure coding.
The vulnerability history is equally positive, with no recorded CVEs of any severity. This lack of past vulnerabilities suggests a stable and well-maintained codebase. The plugin's strengths lie in its minimal attack surface and diligent implementation of secure coding principles like prepared statements and output escaping. The primary weakness, if one can be identified from this data alone, is the absence of any capability or nonce checks across all analyzed entry points. While the current analysis shows zero unprotected entry points, this could be a blind spot if the plugin were to introduce new features in the future without proper authentication checks.
In conclusion, version 1.0.0 of "custom-taxonomies-for-blocks" appears to be highly secure, demonstrating a commitment to safe development practices. The lack of identified vulnerabilities and attack vectors is commendable. However, the absence of explicit capability and nonce checks across its limited entry points warrants a minor note of caution for future development, as this is a standard security measure to prevent unauthorized actions.
Key Concerns
- No Nonce checks found
- No Capability checks found
Custom Taxonomies for Blocks Security Vulnerabilities
Custom Taxonomies for Blocks Release Timeline
Custom Taxonomies for Blocks Code Analysis
Custom Taxonomies for Blocks Attack Surface
WordPress Hooks 1
Maintenance & Trust
Custom Taxonomies for Blocks Maintenance & Trust
Maintenance Signals
Community Trust
Custom Taxonomies for Blocks Alternatives
Classic Editor
classic-editor
Enables the previous "classic" editor and the old-style Edit Post screen with TinyMCE, Meta Boxes, etc. Supports all plugins that extend this screen.
Starter Templates – AI-Powered Templates for Elementor & Gutenberg
astra-sites
The growing library of 300+ ready-to-use templates that work with all WordPress themes including Astra, Hello, OceanWP, GeneratePress and more
Advanced Editor Tools
tinymce-advanced
Extends and enhances the block editor (Gutenberg) and the classic editor (TinyMCE).
Disable Gutenberg
disable-gutenberg
Disable Gutenberg Block Editor and restore the Classic Editor and original Edit Post screen (TinyMCE, meta boxes, etc.).
Gutenberg Essential Blocks – Page Builder for Gutenberg Blocks & Patterns
essential-blocks
Gutenberg block editor with AI. 70+ Gutenberg blocks, patterns, WooCommerce blocks, post grid, gallery, menu with Gutenberg block library.
Custom Taxonomies for Blocks Developer Profile
1 plugin · 0 total installs
How We Detect Custom Taxonomies for Blocks
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.