
Post Word Counter – Content Insights Dashboard Security & Risk Analysis
wordpress.org/plugins/doubledome-wordcount-details-dashboardThe Word Counter plugin offers a dedicated dashboard view that tracks the word count, post count, pages wordcount, and custom post types across your e …
Is Post Word Counter – Content Insights Dashboard Safe to Use in 2026?
Generally Safe
Score 100/100Post Word Counter – Content Insights Dashboard has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "doubledome-wordcount-details-dashboard" v2.1 plugin exhibits a mixed security posture. On the positive side, the absence of known vulnerabilities in its history and the secure handling of SQL queries via prepared statements are commendable. The plugin also shows a good effort in output escaping, with a high percentage of outputs being properly sanitized, and no detected file operations or external HTTP requests. This suggests a development team that is generally aware of security best practices.
However, the static analysis reveals a significant concern: a single AJAX handler that lacks any authentication checks. This represents an unprotected entry point into the plugin's functionality, creating a potential attack vector. While there are no reported critical taint flows or dangerous function uses, the presence of an unauthenticated AJAX endpoint is a critical oversight that could be exploited by attackers to trigger unintended actions or reveal sensitive information, depending on what the AJAX handler performs.
In conclusion, while the plugin demonstrates good practices in several areas, the unprotected AJAX handler significantly elevates the risk. The clean vulnerability history is a positive sign, but it doesn't negate the immediate risk posed by the identified unprotected entry point. Developers should prioritize implementing proper authentication and authorization checks for this AJAX handler to mitigate the identified security weakness.
Key Concerns
- Unprotected AJAX handler
- Missing nonce checks on AJAX
- Low percentage of properly escaped outputs
Post Word Counter – Content Insights Dashboard Security Vulnerabilities
Post Word Counter – Content Insights Dashboard Code Analysis
Output Escaping
Post Word Counter – Content Insights Dashboard Attack Surface
AJAX Handlers 1
WordPress Hooks 11
Maintenance & Trust
Post Word Counter – Content Insights Dashboard Maintenance & Trust
Maintenance Signals
Community Trust
Post Word Counter – Content Insights Dashboard Alternatives
Name: Word Counter
word-and-character-counter
Wordcounter replaces wordpress's built in word counter feature and adds a character count as well.
Reading Time WP
reading-time-wp
Reading Time WP creates an estimated reading time of your posts that is inserted above the content or by using a shortcode.
Post Admin Word Count
post-admin-word-count
Adds a sortable word count column to the admin post list for all public post types. Efficient, lightweight and built with modern best practices.
Article Word Count
article-word-count-column
Displays the word count for each post and page in the WordPress admin panel.
Sortable Word Count Reloaded
sortable-word-count-reloaded
Adds a sortable column to the posts and pages admin list with the word count of each page/post.
Post Word Counter – Content Insights Dashboard Developer Profile
6 plugins · 620 total installs
How We Detect Post Word Counter – Content Insights Dashboard
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/doubledome-wordcount-details-dashboard/css/styles.css/wp-content/plugins/doubledome-wordcount-details-dashboard/js/counter.js/wp-content/plugins/doubledome-wordcount-details-dashboard/js/settings.js/wp-content/plugins/doubledome-wordcount-details-dashboard/js/settings.js/wp-content/plugins/doubledome-wordcount-details-dashboard/js/counter.jsdoubledome-wordcount-details-dashboard/js/counter.js?ver=2.0HTML / DOM Fingerprints
wc_dd_dashboard_widgetddWordCounterSettings