[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fdNzx2RI4BLWgOYl8aM2N1QZ6AiZLbYcQH80B1HsMn2Y":3,"$fuLbN5ciQVHcKbctFOh9HCSvb7G4DgPENO0Z1qiEil68":201,"$fglJw1iMaVgkDAnwjJRdT1ykMgVfgFPGmjB1vlwNhJ58":206},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":13,"last_updated":14,"tested_up_to":15,"requires_at_least":16,"requires_php":17,"tags":18,"homepage":17,"download_link":24,"security_score":25,"vuln_count":13,"unpatched_count":13,"last_vuln_date":26,"fetched_at":27,"discovery_status":28,"vulnerabilities":29,"developer":30,"crawl_stats":26,"alternatives":36,"analysis":125,"fingerprints":182},"deploy-trigger-for-github","Deploy Trigger for GitHub","1.4","Facundo","https:\u002F\u002Fprofiles.wordpress.org\u002Ffacudev\u002F","\u003Cp>Easily trigger a GitHub Actions workflow from your WordPress site whenever a post is created, updated, or deleted. Perfect for headless WordPress setups to automate frontend deployments and keep your site in sync.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Triggers a GitHub Actions workflow on post save or delete\u003C\u002Fli>\n\u003Cli>Manual deploy\u002Freset options from the settings page\u003C\u002Fli>\n\u003Cli>Securely stores your GitHub token\u003C\u002Fli>\n\u003Cli>Works with any post type\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>External services\u003C\u002Fh3>\n\u003Cp>This plugin connects to the GitHub API to trigger GitHub Actions workflows. This service is required to automatically deploy your site when content changes.\u003C\u002Fp>\n\u003Cp>The plugin sends the following data to GitHub’s API:\u003Cbr \u002F>\n– Repository information (user\u002Frepo format)\u003Cbr \u002F>\n– Workflow filename\u003Cbr \u002F>\n– Branch reference (default: main)\u003Cbr \u002F>\n– GitHub personal access token for authentication\u003C\u002Fp>\n\u003Cp>This data is sent every time a post is created, updated, or deleted (when the post status is ‘publish’). The GitHub token is stored securely in your WordPress database and is never displayed in plain text.\u003C\u002Fp>\n\u003Cp>This service is provided by GitHub, Inc.:\u003Cbr \u002F>\n– Terms of Service: https:\u002F\u002Fdocs.github.com\u002Fen\u002Fsite-policy\u002Fgithub-terms\u002Fgithub-terms-of-service\u003Cbr \u002F>\n– Privacy Policy: https:\u002F\u002Fdocs.github.com\u002Fen\u002Fsite-policy\u002Fprivacy-policies\u002Fgithub-privacy-statement\u003C\u002Fp>\n","Trigger GitHub Actions workflows from WordPress when content changes. Perfect for headless WordPress setups.",10,565,0,"2025-09-15T18:23:00.000Z","6.8.6","5.0","",[19,20,21,22,23],"actions","deploy","github","headless","workflow","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fdeploy-trigger-for-github.zip",100,null,"2026-07-22T17:31:50.256Z","no_bundle",[],{"slug":31,"display_name":7,"profile_url":8,"plugin_count":32,"total_installs":11,"avg_security_score":25,"avg_patch_time_days":33,"trust_score":34,"computed_at":35},"facudev",1,30,94,"2026-08-29T00:11:22.739Z",[37,56,72,90,108],{"slug":38,"name":39,"version":40,"author":41,"author_profile":42,"description":43,"short_description":44,"active_installs":45,"downloaded":46,"rating":13,"num_ratings":13,"last_updated":47,"tested_up_to":48,"requires_at_least":17,"requires_php":17,"tags":49,"homepage":53,"download_link":54,"security_score":55,"vuln_count":13,"unpatched_count":13,"last_vuln_date":26,"fetched_at":27},"wp-trigger-github","WP Trigger Github","1.3.0","glukmann","https:\u002F\u002Fprofiles.wordpress.org\u002Fglukmann\u002F","\u003Cp>Save or update action triggers Github repository_dispatch action\u003C\u002Fp>\n","Save or update action triggers Github repository_dispatch action",20,2255,"2022-09-20T20:11:00.000Z","5.9.13",[50,51,52],"github-actions","headless-wordpress","trigger-github-actions","https:\u002F\u002Fgithub.com\u002Fgglukmann\u002Fwp-trigger-github","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwp-trigger-github.zip",85,{"slug":57,"name":58,"version":59,"author":60,"author_profile":61,"description":62,"short_description":63,"active_installs":11,"downloaded":64,"rating":13,"num_ratings":13,"last_updated":65,"tested_up_to":66,"requires_at_least":16,"requires_php":67,"tags":68,"homepage":70,"download_link":71,"security_score":55,"vuln_count":13,"unpatched_count":13,"last_vuln_date":26,"fetched_at":27},"deploy-webhook-github-actions","Deploy Webhook Github Actions","1.0.0","nicolasdra","https:\u002F\u002Fprofiles.wordpress.org\u002Fnicolasdra\u002F","\u003Ch3>DEPLOY WEBHOOK GITHUB ACTIONS PLUGIN\u003C\u002Fh3>\n\u003Cp>A WordPress plugin to manually trigger a deploy workflow via the Github Actions REST API after updating content.\u003C\u002Fp>\n\u003Ch3>FEATURE\u003C\u002Fh3>\n\u003Cp>Trigger a deploy workflow via Github Actions after updating content. Users with manage_capabilities are only allowed to perform the action from the the WordPress admin menu.\u003C\u002Fp>\n\u003Ch3>SETTINGS\u003C\u002Fh3>\n\u003Cp>Fill out the form with the data required on the Settings Page. Find a reference below:\u003C\u002Fp>\n\u003Cp>OWNER: The username or organization name that owns the repository.\u003Cbr \u002F>\nREPO: The name of the repository.\u003Cbr \u002F>\nWORKFLOW_ID: You can either write the full name of your .yml file, ie. “manual-trigger-workflow.yml” or the ID of the workflow that you want to trigger. You can find the ID of a workflow by going to the “Actions” tab of your repository on GitHub, clicking on the name of the workflow, and looking at the URL of the page. The ID is the number that appears after the last forward slash in the URL.\u003Cbr \u002F>\nPERSONAL_ACCESS_TOKEN: A personal access token (PAT) with the repo scope. You can create a PAT by going to “Settings” > “Developer settings” > “Personal access tokens” in your GitHub account.\u003Cbr \u002F>\nREF: The name of your repository’s main branch. Important: At the moment the plugin is able to create a webhook for a workflow_dispatch trigger without inputs. This feature is planned for later versions.\u003C\u002Fp>\n\u003Ch3>TO DO\u003C\u002Fh3>\n\u003Cp>Add feature: accept inputs.\u003C\u002Fp>\n\u003Ch3>AUTHOR\u003C\u002Fh3>\n\u003Cp>Created by Nicolás di Rago.\u003Cbr \u002F>\nhttps:\u002F\u002Fwww.nicolasdirago.com\u002F\u003C\u002Fp>\n","DEPLOY WEBHOOK GITHUB ACTIONS PLUGIN",1312,"2023-05-31T08:57:00.000Z","6.1.10","7.0",[20,50,69],"hooks","https:\u002F\u002Fgithub.com\u002FNicolasdRa\u002Fgithub-actions-deploy-webhook","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fdeploy-webhook-github-actions.zip",{"slug":73,"name":74,"version":75,"author":76,"author_profile":77,"description":78,"short_description":79,"active_installs":25,"downloaded":80,"rating":13,"num_ratings":13,"last_updated":81,"tested_up_to":82,"requires_at_least":83,"requires_php":67,"tags":84,"homepage":88,"download_link":89,"security_score":55,"vuln_count":13,"unpatched_count":13,"last_vuln_date":26,"fetched_at":27},"publish-to-netlify","Publish to Netlify","1.0.2","Rogério Moreira","https:\u002F\u002Fprofiles.wordpress.org\u002Frogeriomoreira\u002F","\u003Cp>Easily deploy static sites to Netlify using WordPress as backend. This plugin builds your static website using Netlify webhooks to trigger the deploy process.\u003C\u002Fp>\n","Easily deploy static sites to Netlify using WordPress as backend. This plugin builds your static website using Netlify webhooks to trigger the deploy  &hellip;",3448,"2020-11-29T17:49:00.000Z","5.6.17","4.6",[85,20,86,22,87],"decoupled","gatsby","netlify","https:\u002F\u002Fgithub.com\u002Frgllm\u002Fpublish-to-netlify","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fpublish-to-netlify.zip",{"slug":91,"name":92,"version":93,"author":94,"author_profile":95,"description":96,"short_description":97,"active_installs":13,"downloaded":98,"rating":13,"num_ratings":13,"last_updated":99,"tested_up_to":100,"requires_at_least":101,"requires_php":17,"tags":102,"homepage":106,"download_link":107,"security_score":55,"vuln_count":13,"unpatched_count":13,"last_vuln_date":26,"fetched_at":27},"cc-deploy","CC-Deploy","1.0.1","Clearcode","https:\u002F\u002Fprofiles.wordpress.org\u002Fclearcodehq\u002F","\u003Cp>This plugin allows you to deploy your WordPress site source code from git repository using webhooks.\u003C\u002Fp>\n\u003Cp>Automatically pull from a repository to a web server. You can configure which branch is triggering the pull action.\u003Cbr \u002F>\nAfter each deployment plugin saves the status to logs which are available through wp-admin and also are sent by email.\u003C\u002Fp>\n\u003Cp>Supported git repository hosting services:\u003Cbr \u002F>\n* \u003Ca href=\"https:\u002F\u002Fgithub.com\u002F\" rel=\"nofollow ugc\">Github\u003C\u002Fa>\u003Cbr \u002F>\n* \u003Ca href=\"https:\u002F\u002Fbitbucket.org\u002F\" rel=\"nofollow ugc\">Bitbucket\u003C\u002Fa>\u003Cbr \u002F>\n* Stash\u003C\u002Fp>\n","This plugin allows you to deploy your WordPress site source code from git repository using webhooks.",1625,"2018-03-13T15:32:00.000Z","4.9.29","4.8.2",[20,103,104,21,105],"deployment","git","repository","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fcc-deploy","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcc-deploy.zip",{"slug":109,"name":110,"version":111,"author":112,"author_profile":113,"description":114,"short_description":115,"active_installs":13,"downloaded":116,"rating":13,"num_ratings":13,"last_updated":117,"tested_up_to":118,"requires_at_least":16,"requires_php":17,"tags":119,"homepage":17,"download_link":123,"security_score":25,"vuln_count":13,"unpatched_count":13,"last_vuln_date":26,"fetched_at":124},"job-fetcher","Job Fetcher","2.5.9","mimusjobs","https:\u002F\u002Fprofiles.wordpress.org\u002Fmimusjobs\u002F","\u003Cp>Job Fetcher, developed by Mimus Jobs (https:\u002F\u002Fmimusjobs.com), integrates with the Job Fetcher Service to fetch job and company data, storing it in JSON files or custom post types. The free version limits job data to ID, title, company name, location, and type. A paid license unlocks full job and company data and custom post type storage.\u003C\u002Fp>\n\u003Ch3>External Services\u003C\u002Fh3>\n\u003Cp>This plugin, owned and developed by Mimus Jobs (https:\u002F\u002Fmimusjobs.com), connects to external services to fetch job and company data and manage the fetching process. Below is the detailed information about each service used:\u003C\u002Fp>\n\u003Col>\n\u003Cli>\u003Cstrong>Mimus Jobs License Validation API\u003C\u002Fstrong>\n\u003Cul>\n\u003Cli>\u003Cstrong>Purpose\u003C\u002Fstrong>: Validates the optional license key to unlock premium features, such as full job and company data and custom post type storage.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Data Sent\u003C\u002Fstrong>: The license key entered in the plugin settings.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>When Data is Sent\u003C\u002Fstrong>: When the plugin starts fetching jobs, if a license key is provided.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Service Provider\u003C\u002Fstrong>: Mimus Jobs (https:\u002F\u002Fmimusjobs.com).\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Terms of Service\u003C\u002Fstrong>: https:\u002F\u002Fmimusjobs.com\u002Fterms-fetcher-plugin\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Privacy Policy\u003C\u002Fstrong>: https:\u002F\u002Fmimusjobs.com\u002Fpolicy-fetcher-plugin\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch3>WordPress.org Submission Compliance\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>This plugin complies with all WordPress Plugin Developer Guidelines.\u003C\u002Fli>\n\u003Cli>The plugin is owned and developed by Mimus Jobs, with contact email plugins@mimusjobs.com.\u003C\u002Fli>\n\u003Cli>All included libraries and assets are licensed as GPL or GPL-compatible.\u003C\u002Fli>\n\u003Cli>The plugin has been tested with the Plugin Check plugin, and all indicated issues have been resolved.\u003C\u002Fli>\n\u003Cli>Privacy Policy and Terms of Service are included as \u003Ccode>privacy-policy.txt\u003C\u002Fcode> and \u003Ccode>terms-of-service.txt\u003C\u002Fcode> in the plugin directory and hosted at https:\u002F\u002Fmimusjobs.com\u002Fpolicy-fetcher-plugin and https:\u002F\u002Fmimusjobs.com\u002Fterms-fetcher-plugin.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>License\u003C\u002Fh3>\n\u003Cp>This plugin is licensed under the GPLv2 or later. See the LICENSE file for details. Contact: plugins@mimusjobs.com.\u003C\u002Fp>\n","Job Fetcher, developed by Mimus Jobs (https:\u002F\u002Fmimusjobs.com), integrates with the Job Fetcher Service to fetch job and company data, storing it in JSO &hellip;",181,"2025-11-06T18:02:00.000Z","6.8.5",[120,50,121,122],"api-integration","job-board","job-listings","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fjob-fetcher.zip","2026-04-16T10:56:18.058Z",{"attackSurface":126,"codeSignals":161,"taintFlows":174,"riskAssessment":175,"analyzedAt":181},{"hooks":127,"ajaxHandlers":157,"restRoutes":158,"shortcodes":159,"cronEvents":160,"entryPointCount":13,"unprotectedCount":13},[128,134,138,142,145,149,153],{"type":129,"name":130,"callback":131,"file":132,"line":133},"action","admin_init","depltrfo_register_settings","deploy-trigger-for-github.php",42,{"type":129,"name":135,"callback":136,"file":132,"line":137},"admin_menu","depltrfo_menu",59,{"type":129,"name":139,"callback":140,"file":132,"line":141},"depltrfo_error","closure",122,{"type":129,"name":143,"callback":140,"file":132,"line":144},"depltrfo_success",129,{"type":129,"name":146,"callback":147,"file":132,"line":148},"init","depltrfo_debug_logging",137,{"type":129,"name":150,"callback":151,"priority":11,"file":132,"line":152},"save_post","depltrfo_trigger",189,{"type":129,"name":154,"callback":155,"priority":11,"file":132,"line":156},"before_delete_post","depltrfo_trigger_delete",209,[],[],[],[],{"dangerousFunctions":162,"sqlUsage":163,"outputEscaping":165,"fileOperations":13,"externalRequests":32,"nonceChecks":32,"capabilityChecks":13,"bundledLibraries":173},[],{"prepared":13,"raw":13,"locations":164},[],{"escaped":11,"rawEcho":166,"locations":167},2,[168,171],{"file":132,"line":169,"context":170},78,"raw output",{"file":132,"line":172,"context":170},110,[],[],{"summary":176,"deductions":177},"The \"deploy-trigger-for-github\" plugin v1.4 exhibits a strong security posture based on the provided static analysis and vulnerability history. The absence of any recorded CVEs and the plugin's commitment to secure coding practices like using prepared statements for SQL queries and incorporating nonce checks are significant strengths. Furthermore, the limited attack surface and the high percentage of properly escaped output suggest that the developers have prioritized security in their implementation.  However, a single external HTTP request, while not explicitly flagged as a vulnerability, warrants caution as it represents a potential point of interaction with external systems that could be exploited if not handled with robust validation and sanitization on the receiving end. The lack of any identified taint flows is a positive indicator, suggesting that data handling within the plugin is likely secure. Overall, this plugin appears to be well-secured, with only a minor area for potential scrutiny regarding its external HTTP request.",[178],{"reason":179,"points":180},"External HTTP request present",5,"2026-03-17T06:30:50.984Z",{"wat":183,"direct":188},{"assetPaths":184,"generatorPatterns":185,"scriptPaths":186,"versionParams":187},[],[],[],[],{"cssClasses":189,"htmlComments":190,"htmlAttributes":191,"restEndpoints":198,"jsGlobals":199,"shortcodeOutput":200},[],[],[192,193,194,195,196,197],"name=\"depltrfo_token\"","name=\"depltrfo_repo\"","name=\"depltrfo_workflow\"","name=\"depltrfo_ref\"","name=\"depltrfo_reset\"","name=\"depltrfo_reset_nonce\"",[],[],[],{"error":202,"url":203,"statusCode":204,"statusMessage":205,"message":205},true,"http:\u002F\u002Flocalhost\u002Fapi\u002Fplugins\u002Fdeploy-trigger-for-github\u002Fbundle",404,"no bundle for this plugin yet",{"slug":4,"current_version":6,"total_versions":13,"versions":207},[]]