
drakkar.one map Security & Risk Analysis
wordpress.org/plugins/drakkar-one-mapA privacy-friendly map widget. No Google, no API keys, no cookies. GDPR-compliant out of the box.
Is drakkar.one map Safe to Use in 2026?
Generally Safe
Score 100/100drakkar.one map has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "drakkar-one-map" plugin version 1.0.0 exhibits a strong security posture based on the provided static analysis. All identified entry points, including the single shortcode, lack direct authorization checks, which is a potential area for concern. However, the absence of dangerous functions, SQL injection vulnerabilities (due to prepared statements), and unescaped output are significant strengths. The plugin also demonstrates good practices by not performing file operations or external HTTP requests, further reducing its attack surface.
Despite the positive aspects, the lack of any nonce checks or capability checks is a notable weakness. While there are no direct indications of taint flows or critical vulnerabilities in this version, the absence of these security mechanisms leaves the shortcode vulnerable to potential abuse if its functionality could be triggered in a malicious manner without proper user verification. The plugin's clean vulnerability history is a positive sign, suggesting a responsible development approach, but it does not negate the need for robust security implementation.
In conclusion, "drakkar-one-map" v1.0.0 is generally well-coded with a focus on preventing common vulnerabilities like SQL injection and XSS. The primary concern lies in the complete absence of input validation and authorization checks on its shortcode, which, combined with the lack of nonce verification, could be exploited. The development team should prioritize implementing these crucial security measures to fortify the plugin against potential attacks.
Key Concerns
- Shortcode without nonce or capability check
- No capability checks on any entry points
- No nonce checks on any entry points
drakkar.one map Security Vulnerabilities
drakkar.one map Release Timeline
drakkar.one map Code Analysis
Output Escaping
drakkar.one map Attack Surface
Shortcodes 1
WordPress Hooks 2
Maintenance & Trust
drakkar.one map Maintenance & Trust
Maintenance Signals
Community Trust
drakkar.one map Alternatives
WP Maps – Store Locator,Google Maps,OpenStreetMap,Mapbox,Listing,Directory & Filters
wp-google-map-plugin
WordPress map plugin for Google Maps, OpenStreetMap & Mapbox with store locator, filterable listings & custom markers.
Maps Widget for Google Maps
google-maps-widget
Are your Google Maps slow? Try Map Widget for Google Maps. You'll have a fast Google Maps widget with a thumbnail & lightbox map in minutes!
Leaflet Maps Marker (Google Maps, OpenStreetMap, Bing Maps)
leaflet-maps-marker
The most comprehensive & user-friendly mapping solution for WordPress
exovia GDPR Google Maps
exactly-gdpr-google-maps
exovia GDPR Google Maps enables you to integrate Google Maps in a privacy compliant manner that respects the privacy of your visitors.
AWEOS Google Maps iframe load per click
aweos-google-maps-iframe-load-per-click
This Plugin prevents the auto loading from Google Map iframes. It will be loaded after the user permits it.
drakkar.one map Developer Profile
1 plugin · 0 total installs
How We Detect drakkar.one map
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/drakkar-one-map/block.js/wp-content/plugins/drakkar-one-map/block.csshttps://cdn.drakkar.one/w.jsdrakkar-one-map/block.js?ver=1.0.0drakkar-one-map/block.css?ver=1.0.0HTML / DOM Fingerprints
<!-- drakkar.one: missing widget ID -->data-iddata-lang<div id="drakkar-map" style="width:100%;height: