
ElPlan Kuchikomi Wall Security & Risk Analysis
wordpress.org/plugins/elplan-kuchikomi-wallDisplay Google Business Profile reviews on your site. Pro: your business appears with ★ star ratings in Google Search results — boosting local SEO and …
Is ElPlan Kuchikomi Wall Safe to Use in 2026?
Generally Safe
Score 100/100ElPlan Kuchikomi Wall has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The elplan-kuchikomi-wall plugin exhibits a generally good security posture based on the provided static analysis and vulnerability history. The plugin utilizes prepared statements for all SQL queries and has a very high percentage of properly escaped output, which are crucial security best practices. The presence of numerous nonce and capability checks further strengthens its defenses against common attack vectors. Its attack surface, though featuring several AJAX handlers, is fully protected with authentication checks, and there are no unauthenticated REST API routes or cron events to exploit.
However, a single flow with an unsanitized path identified during taint analysis is a notable concern. While rated as not critical or high severity, such flows can still lead to vulnerabilities like path traversal if not properly handled. The plugin also makes external HTTP requests, which, while not inherently insecure, can become a vector if the target endpoints are compromised or if sensitive data is sent without proper encryption. The bundled Freemius library, if outdated, could also introduce risks, although its specific version (v1.0) is not immediately indicative of a problem without further context on known vulnerabilities for that version.
Given the lack of any recorded vulnerabilities (CVEs) and the robust implementation of secure coding practices observed in the static analysis, the overall risk profile appears low. The plugin demonstrates a commitment to security by employing secure database operations and output handling. The primary area for attention is the identified unsanitized path flow, which warrants investigation and remediation to ensure complete security.
Key Concerns
- Flow with unsanitized path identified
- Bundled library (Freemius v1.0) may be outdated
ElPlan Kuchikomi Wall Security Vulnerabilities
ElPlan Kuchikomi Wall Release Timeline
ElPlan Kuchikomi Wall Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
ElPlan Kuchikomi Wall Attack Surface
AJAX Handlers 3
Shortcodes 2
WordPress Hooks 12
Maintenance & Trust
ElPlan Kuchikomi Wall Maintenance & Trust
Maintenance Signals
Community Trust
ElPlan Kuchikomi Wall Alternatives
Reviews Showcase for Google
reviews-showcase-for-google
A simple plugin to display Google Reviews using a shortcode and a floating badge. Now with SEO Schema Markup.
Schema
schema
Get the next generation of Schema Structured Data to enhance your WordPress site presentation in Google search results.
Reviews and Rating – Google Reviews
g-business-reviews-rating
Completely restriction-free Google reviews and rating as Shortcode/Widget. Extensive display options; delicious themes; includes Structured Data.
Review Schema – Review & Structure Data Schema Plugin
review-schema
WordPress Review Plugin with Schema adds Google Rich Snippets markup according to Schema.org guidelines to structure your website for SEO.
Schema App Structured Data
schema-app-structured-data-for-schemaorg
Get Schema.org structured data for all pages, posts, categories and profile pages on activation. Use Schema App to customize any Schema Markup.
ElPlan Kuchikomi Wall Developer Profile
3 plugins · 70 total installs
How We Detect ElPlan Kuchikomi Wall
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/elplan-kuchikomi-wall/assets/css/tmnl-card.css/wp-content/plugins/elplan-kuchikomi-wall/assets/css/tmnl-list.css/wp-content/plugins/elplan-kuchikomi-wall/assets/css/tmnl-slider.css/wp-content/plugins/elplan-kuchikomi-wall/assets/icons/icon-m1.png/wp-content/plugins/elplan-kuchikomi-wall/assets/icons/icon-m2.png/wp-content/plugins/elplan-kuchikomi-wall/assets/icons/icon-m3.png/wp-content/plugins/elplan-kuchikomi-wall/assets/icons/icon-w1.png/wp-content/plugins/elplan-kuchikomi-wall/assets/icons/icon-w2.png+2 more/wp-content/plugins/elplan-kuchikomi-wall/assets/js/tmnl-slider.jselplan-kuchikomi-wall/assets/css/tmnl-card.css?ver=elplan-kuchikomi-wall/assets/css/tmnl-list.css?ver=elplan-kuchikomi-wall/assets/css/tmnl-slider.css?ver=elplan-kuchikomi-wall/assets/js/tmnl-slider.js?ver=HTML / DOM Fingerprints
tmnl-testimonial-cardtmnl-testimonial-listtmnl-testimonial-slider<!-- testimonial card --><!-- testimonial list --><!-- testimonial slider -->data-templatedata-columnsdata-colordata-min-ratingdata-sourcedata-limittmnl_slider_params[tmnl_kuchikomi_wall][tmnl_testimonials]