
Event Bridge for ActivityPub Security & Risk Analysis
wordpress.org/plugins/event-bridge-for-activitypubIntegrating popular event plugins with the ActivityPub plugin.
Is Event Bridge for ActivityPub Safe to Use in 2026?
Generally Safe
Score 100/100Event Bridge for ActivityPub has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "event-bridge-for-activitypub" plugin v1.2.2 demonstrates a generally good security posture based on the static analysis. The complete absence of identified AJAX handlers, REST API routes, shortcodes, and cron events with unprotected entry points is a significant strength, indicating a limited attack surface. Furthermore, the plugin exclusively uses prepared statements for all SQL queries, a critical best practice that mitigates SQL injection risks. The presence of nonce checks and capability checks, though limited in number, is also positive. However, a notable concern is the relatively low percentage of properly escaped output (68%). This leaves room for potential Cross-Site Scripting (XSS) vulnerabilities if user-supplied data is outputted without adequate sanitization in the remaining 32% of cases.
The plugin's vulnerability history is remarkably clean, with zero recorded CVEs. This, combined with the absence of critical or high-severity taint flows in the static analysis, suggests a developer team that is either highly diligent in their secure coding practices or has not yet encountered significant security issues. The single external HTTP request warrants attention to ensure it is not susceptible to SSRF or other related vulnerabilities, although no specific evidence of such issues is presented in this data.
In conclusion, the plugin exhibits strong foundational security in its input handling and database interactions. The primary area of potential weakness lies in the incomplete output escaping, which should be a focus for improvement. The lack of historical vulnerabilities is a positive indicator, but ongoing vigilance and addressing the output escaping concern are recommended for maintaining a secure profile.
Key Concerns
- Output escaping is not consistently applied
Event Bridge for ActivityPub Security Vulnerabilities
Event Bridge for ActivityPub Code Analysis
SQL Query Safety
Output Escaping
Event Bridge for ActivityPub Attack Surface
WordPress Hooks 5
Maintenance & Trust
Event Bridge for ActivityPub Maintenance & Trust
Maintenance Signals
Community Trust
Event Bridge for ActivityPub Alternatives
The Events Calendar
the-events-calendar
The Events Calendar: #1 calendar plugin for WordPress. Create/manage events (virtual too!) on your site with the free plugin.
LatePoint – Calendar Booking Plugin for Appointments and Events
latepoint
Optimize your appointment scheduling with our plugin. Sync calendars, automate reminders, and keep your bookings organized.
Events Manager – Calendar, Bookings, Tickets, and more!
events-manager
Events calendar with bookings, scheduling, appointments, event registration, tickets, recurring events, and venue management.
Booking Calendar
booking
Original "Booking Calendar" plugin. Easily manage full-day bookings, time-slot appointments, or events in our all-in-one, outstanding booking system.
Simple Calendar – Google Calendar Plugin
google-calendar-events
Add Google Calendar events to your WordPress site in minutes. Beautiful calendar displays. Mobile responsive.
Event Bridge for ActivityPub Developer Profile
1 plugin · 70 total installs
How We Detect Event Bridge for ActivityPub
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/event-bridge-for-activitypub/assets/css/admin.css/wp-content/plugins/event-bridge-for-activitypub/assets/js/admin.js/wp-content/plugins/event-bridge-for-activitypub/assets/js/admin.jsevent-bridge-for-activitypub/assets/css/admin.css?ver=event-bridge-for-activitypub/assets/js/admin.js?ver=HTML / DOM Fingerprints
event-bridge-for-activitypub-settings-tab<!-- Event Bridge for ActivityPub --><!-- Settings page for Event Bridge for ActivityPub -->data-event-bridge-for-activitypub-add-event-sourceEventBridgeForActivityPubAdmin/wp-json/event-bridge-for-activitypub