
Embed Can I Use Security & Risk Analysis
wordpress.org/plugins/embed-can-i-useAdd Can I Use support tables to your WordPress web site thanks to this shortcode. [ciu_embed]
Is Embed Can I Use Safe to Use in 2026?
Generally Safe
Score 92/100Embed Can I Use has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'embed-can-i-use' plugin v1.0.2 exhibits a strong security posture based on the static analysis. The absence of dangerous functions, the exclusive use of prepared statements for SQL queries, and proper output escaping demonstrate good coding practices that mitigate common web vulnerabilities. Furthermore, the plugin has no recorded CVEs, indicating a history of stability and potentially proactive security development.
However, a notable observation is the complete absence of nonce checks. While the current attack surface is small and the single shortcode appears to have a capability check, the lack of nonces on any potential future AJAX or REST API additions represents a potential weakness. If the plugin were to introduce such endpoints without proper nonce protection, it could become susceptible to Cross-Site Request Forgery (CSRF) attacks. The current taint analysis shows no issues, which is positive, but this is based on a limited scope (0 flows analyzed).
In conclusion, the plugin is currently very secure with no known vulnerabilities and good code hygiene. The primary concern lies in the potential future risk associated with the lack of nonce checks. Users can have high confidence in the current version's security, but vigilance is recommended if the plugin's functionality expands to include more interactive features.
Key Concerns
- Missing nonce checks
Embed Can I Use Security Vulnerabilities
Embed Can I Use Release Timeline
Embed Can I Use Code Analysis
Output Escaping
Embed Can I Use Attack Surface
Shortcodes 1
WordPress Hooks 1
Maintenance & Trust
Embed Can I Use Maintenance & Trust
Maintenance Signals
Community Trust
Embed Can I Use Alternatives
Official Twitter and Periscope plugin for WordPress. Embed content and grow your audience. Requires PHP 5.6 or greater.
BSK PDF Manager
bsk-pdf-manager
Manage your PDFs / documents by category, can be display in list, columns and dropdown. Easy to embed a PDF contnet into post / page.
Link Google Calendar
link-google-calendar
A plugin that allows administrator to set Google Calendar embedded link in admin back-end and use shortcode to place on a page, post or sidebar.
WP-TAB Tableau Public Viz Block
wptab-tableau-public-viz-block
An easy way to embed Tableau Public Vizualizations into a WordPress page with basic embed options.
Stylish Google Sheet Reader – Embed Google Sheets as Interactive Tables with Built-in Form Submissions
stylish-google-sheet-reader
Effortlessly create responsive, searchable, auto-refreshable data tables — now with built-in form submissions to receive orders or inquiries directly.
Embed Can I Use Developer Profile
7 plugins · 5K total installs
How We Detect Embed Can I Use
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/embed-can-i-use/languages/wp-content/plugins/embed-can-i-use/caniuse-embed.min.js//cdn.jsdelivr.net/caniuse-embed/1.0.1/caniuse-embed.min.jsembed-can-i-use/languagesembed-can-i-use/caniuse-embed.min.js?ver=1.0.1HTML / DOM Fingerprints
ciu_embeddata-featuredata-periods<div class="ciu_embed" data-feature="" data-periods="