{eac}SoftwareRegistry Software Taxonomy Security & Risk Analysis

wordpress.org/plugins/eacsoftwareregistry-software-taxonomy

Software Product Taxonomy - Customize {eac}SoftwareRegistry with options, licensing, client messaging, and Github hosting for each software product.

0 active installs v2.0.12 PHP 7.4+ WP 5.8+ Updated Jul 21, 2025
github-hostingsoftware-licensesoftware-productsoftware-registrationsoftware-registry
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is {eac}SoftwareRegistry Software Taxonomy Safe to Use in 2026?

Generally Safe

Score 100/100

{eac}SoftwareRegistry Software Taxonomy has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 9mo ago
Risk Assessment

The plugin "eacsoftwareregistry-software-taxonomy" v2.0.12 exhibits a generally strong security posture based on the provided static analysis. The absence of any known CVEs, coupled with a clean vulnerability history, suggests a well-maintained and security-conscious development approach. The code analysis reveals an extremely limited attack surface with no exposed AJAX handlers, REST API routes, shortcodes, or cron events, and importantly, no unprotected entry points. The plugin also demonstrates good practices regarding SQL queries, with 100% using prepared statements, and a very high rate of proper output escaping (96%).

However, a few areas warrant attention. The presence of the `set_time_limit` function, while not inherently a vulnerability, can sometimes be abused in specific scenarios to extend script execution time, potentially facilitating denial-of-service attacks if not carefully managed or if there are other exploitable weaknesses. The lack of nonce checks and capability checks, while less concerning given the minimal attack surface, means that if any entry points were to be discovered or added in the future, they would be immediately unprotected. The limited number of file operations (15) is good, but the absence of external HTTP requests is also noted as a potentially positive indicator of reduced external attack vectors.

Overall, this plugin appears to be securely developed with a focus on minimizing attack vectors. The lack of historical vulnerabilities is a significant strength. The main areas for improvement or consideration are the potential misuse of `set_time_limit` and the absence of broader authentication/authorization checks on any potential future entry points, although the current design mitigates this risk significantly. The plugin's strengths outweigh its current weaknesses.

Key Concerns

  • Dangerous function detected (set_time_limit)
  • No nonce checks implemented
  • No capability checks implemented
Vulnerabilities
None known

{eac}SoftwareRegistry Software Taxonomy Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

{eac}SoftwareRegistry Software Taxonomy Release Timeline

v2.0.12Current
v2.0.10
v2.0.9
v2.0.8
v2.0.7
v2.0.5
v2.0.4
v2.0.3
v2.0.2
v2.0.1
v2.0.0
v1.1.0
Code Analysis
Analyzed Apr 16, 2026

{eac}SoftwareRegistry Software Taxonomy Code Analysis

Dangerous Functions
1
Raw SQL Queries
0
0 prepared
Unescaped Output
2
46 escaped
Nonce Checks
0
Capability Checks
1
File Operations
15
External Requests
0
Bundled Libraries
0

Dangerous Functions Found

set_time_limitset_time_limit(120);Extensions/class.software_taxonomy.github_hosting.php:504

Output Escaping

96% escaped48 total outputs
Attack Surface

{eac}SoftwareRegistry Software Taxonomy Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 10
actioncurrent_screenExtensions/class.software_taxonomy.extension.php:72
actionadmin_enqueue_scriptsExtensions/class.software_taxonomy.extension.php:76
actionadmin_noticesExtensions/class.software_taxonomy.extension.php:77
actionoptions_settings_pageExtensions/class.software_taxonomy.extension.php:114
filterregistry_api_defaultsExtensions/class.software_taxonomy.extension.php:117
filterapi_request_parametersExtensions/class.software_taxonomy.extension.php:119
filterapi_license_limitationsExtensions/class.software_taxonomy.extension.php:121
filtersoftware_optionsExtensions/class.software_taxonomy.extension.php:154
actionrest_api_initExtensions/class.software_taxonomy.github_hosting.php:157
filtereacSoftwareRegistry_load_extensionseacSoftwareRegistry_Software_Taxonomy.php:54
Maintenance & Trust

{eac}SoftwareRegistry Software Taxonomy Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedJul 21, 2025
PHP min version7.4
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

{eac}SoftwareRegistry Software Taxonomy Developer Profile

Kevin Burkholder

11 plugins · 60 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect {eac}SoftwareRegistry Software Taxonomy

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/eacsoftwareregistry-software-taxonomy/eacsoftwareregistry-software-taxonomy.php/wp-content/plugins/eacsoftwareregistry-software-taxonomy/css/eac-software-taxonomy-admin.css/wp-content/plugins/eacsoftwareregistry-software-taxonomy/css/eac-software-taxonomy.css/wp-content/plugins/eacsoftwareregistry-software-taxonomy/js/eac-software-taxonomy-admin.js/wp-content/plugins/eacsoftwareregistry-software-taxonomy/js/eac-software-taxonomy.js/wp-content/plugins/eacsoftwareregistry-software-taxonomy/js/eac-software-taxonomy-admin-settings.js
Script Paths
/wp-content/plugins/eacsoftwareregistry-software-taxonomy/js/eac-software-taxonomy.js/wp-content/plugins/eacsoftwareregistry-software-taxonomy/js/eac-software-taxonomy-admin.js/wp-content/plugins/eacsoftwareregistry-software-taxonomy/js/eac-software-taxonomy-admin-settings.js
Version Parameters
eacsoftwareregistry-software-taxonomy/css/eac-software-taxonomy.css?ver=eacsoftwareregistry-software-taxonomy/css/eac-software-taxonomy-admin.css?ver=eacsoftwareregistry-software-taxonomy/js/eac-software-taxonomy.js?ver=eacsoftwareregistry-software-taxonomy/js/eac-software-taxonomy-admin.js?ver=eacsoftwareregistry-software-taxonomy/js/eac-software-taxonomy-admin-settings.js?ver=

HTML / DOM Fingerprints

CSS Classes
eac-software-taxonomyeac-software-taxonomy-admin
HTML Comments
<!-- EarthAsylum Consulting {eac} Software Registration Server - Software Product Taxonomy --><!-- This simple plugin file responds to the 'eacSoftwareRegistry_load_extensions' filter to load additional extensions. --><!-- Using this method prevents overwriting extensions when the plugin is updated or reinstalled. --><!-- eacSoftwareRegistry_load_extensions - get the extensions directory to load -->+12 more
Data Attributes
data-taxonomy-name="software_product"data-plugin-slug="eacSoftwareRegistry"
JS Globals
eacSoftwareRegistry
REST Endpoints
/wp-json/softwareregistry/v1/swupdate
FAQ

Frequently Asked Questions about {eac}SoftwareRegistry Software Taxonomy