Embed Can I Use Security & Risk Analysis

wordpress.org/plugins/embed-can-i-use

Add Can I Use support tables to your WordPress web site thanks to this shortcode. [ciu_embed]

10 active installs v1.0.2 PHP + WP 4.0+ Updated Dec 28, 2024
can-i-useciuembedembeddedtable
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Embed Can I Use Safe to Use in 2026?

Generally Safe

Score 92/100

Embed Can I Use has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The 'embed-can-i-use' plugin v1.0.2 exhibits a strong security posture based on the static analysis. The absence of dangerous functions, the exclusive use of prepared statements for SQL queries, and proper output escaping demonstrate good coding practices that mitigate common web vulnerabilities. Furthermore, the plugin has no recorded CVEs, indicating a history of stability and potentially proactive security development.

However, a notable observation is the complete absence of nonce checks. While the current attack surface is small and the single shortcode appears to have a capability check, the lack of nonces on any potential future AJAX or REST API additions represents a potential weakness. If the plugin were to introduce such endpoints without proper nonce protection, it could become susceptible to Cross-Site Request Forgery (CSRF) attacks. The current taint analysis shows no issues, which is positive, but this is based on a limited scope (0 flows analyzed).

In conclusion, the plugin is currently very secure with no known vulnerabilities and good code hygiene. The primary concern lies in the potential future risk associated with the lack of nonce checks. Users can have high confidence in the current version's security, but vigilance is recommended if the plugin's functionality expands to include more interactive features.

Key Concerns

  • Missing nonce checks
Vulnerabilities
None known

Embed Can I Use Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Embed Can I Use Release Timeline

No version history available.
Code Analysis
Analyzed Apr 16, 2026

Embed Can I Use Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
4 escaped
Nonce Checks
0
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped4 total outputs
Attack Surface

Embed Can I Use Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[ciu_embed] embed-can-i-use.php:52
WordPress Hooks 1
actioninitembed-can-i-use.php:40
Maintenance & Trust

Embed Can I Use Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedDec 28, 2024
PHP min version
Downloads2K

Community Trust

Rating100/100
Number of ratings2
Active installs10
Developer Profile

Embed Can I Use Developer Profile

Geoffrey

7 plugins · 5K total installs

89
trust score
Avg Security Score
93/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Embed Can I Use

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/embed-can-i-use/languages/wp-content/plugins/embed-can-i-use/caniuse-embed.min.js
Script Paths
//cdn.jsdelivr.net/caniuse-embed/1.0.1/caniuse-embed.min.js
Version Parameters
embed-can-i-use/languagesembed-can-i-use/caniuse-embed.min.js?ver=1.0.1

HTML / DOM Fingerprints

CSS Classes
ciu_embed
Data Attributes
data-featuredata-periods
Shortcode Output
<div class="ciu_embed" data-feature="" data-periods="
FAQ

Frequently Asked Questions about Embed Can I Use