
Custom Adobe Fonts (Typekit) Security & Risk Analysis
wordpress.org/plugins/custom-typekit-fontsCustom Adobe Fonts allows you to extends the fonts supports from the Abobe Fonts.
Is Custom Adobe Fonts (Typekit) Safe to Use in 2026?
Generally Safe
Score 100/100Custom Adobe Fonts (Typekit) has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "custom-typekit-fonts" plugin version 2.1.1 exhibits a strong security posture based on the provided static analysis. There are no identified AJAX handlers, REST API routes, shortcodes, or cron events, meaning the plugin has a minimal attack surface with no direct entry points that lack authentication checks. The code signals are also largely positive, with a complete absence of dangerous functions and SQL queries utilizing prepared statements. Output escaping is performed on 90% of outputs, which is a good practice. Nonce and capability checks are present, further reinforcing secure operations. The vulnerability history shows zero known CVEs, which is an excellent indicator of the plugin's stability and past security diligence. The lack of recorded vulnerabilities suggests a mature and well-maintained codebase.
While the static analysis reveals a generally secure plugin, the presence of one file operation and two external HTTP requests, even if seemingly benign in this context, represent potential, albeit low, areas for concern if not handled with utmost care. The taint analysis showing zero flows with unsanitized paths is reassuring, indicating no immediate critical or high severity issues were detected in that regard. The plugin's strengths lie in its lack of exploitable entry points and its clean vulnerability history. The minimal attack surface and robust use of security checks are commendable.
Key Concerns
- File operations found
- External HTTP requests found
Custom Adobe Fonts (Typekit) Security Vulnerabilities
Custom Adobe Fonts (Typekit) Code Analysis
Output Escaping
Custom Adobe Fonts (Typekit) Attack Surface
WordPress Hooks 28
Maintenance & Trust
Custom Adobe Fonts (Typekit) Maintenance & Trust
Maintenance Signals
Community Trust
Custom Adobe Fonts (Typekit) Alternatives
No alternatives data available yet.
Custom Adobe Fonts (Typekit) Developer Profile
32 plugins · 8.6M total installs
How We Detect Custom Adobe Fonts (Typekit)
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/custom-typekit-fonts/classes/class-custom-typekit-fonts.php/wp-content/plugins/custom-typekit-fonts/lib/notices/class-astra-notices.php/wp-content/plugins/custom-typekit-fonts/admin/bsf-analytics/class-bsf-analytics-loader.php/wp-content/plugins/custom-typekit-fonts/admin/bsf-analytics/class-bsf-analytics.php/wp-content/plugins/custom-typekit-fonts/templates/white-label.php/wp-content/plugins/custom-typekit-fonts/admin/bsf-analytics/assets/css/minified/style.min.csscustom-typekit-fonts/style.css?ver=custom-typekit-fonts/admin/bsf-analytics/assets/css/minified/style.min.css?ver=HTML / DOM Fingerprints
custom-typekit-fontsast_white_label[custom-typekit-fonts][name]ast_white_label[custom-typekit-fonts][description]BSF_Analytics_LoaderBSF_ANALYTICS_VERSIONBSF_ANALYTICS_URI