
Find Tweets Security & Risk Analysis
wordpress.org/plugins/find-tweetsAutomatically converts blog post snippets into less than 140 character tweets. Adds in shortlinks to drive traffic to your website.
Is Find Tweets Safe to Use in 2026?
Generally Safe
Score 100/100Find Tweets has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'find-tweets' plugin v0.11 exhibits a strong security posture based on the provided static analysis and vulnerability history. The absence of any detected dangerous functions, raw SQL queries, file operations, or unsanitized taint flows is highly positive. Furthermore, all outputs are properly escaped, and the plugin demonstrates good practice by utilizing prepared statements for any SQL interactions (though none were found in this analysis). The presence of a capability check is also a strength, indicating some level of access control is considered.
However, the most significant concern stems from the complete lack of nonces and the absence of any authorization checks on the identified entry points. While the attack surface is currently zero (0 AJAX handlers, 0 REST API routes, etc.), this could change with future updates. The single external HTTP request, while not inherently problematic without further context, warrants attention as it could be a potential vector if not handled securely.
Given the plugin's clean vulnerability history with no recorded CVEs, it suggests a development team that is either highly security-conscious or has had limited exposure to complex attack vectors. This is a strength, but the lack of fundamental security checks like nonces leaves room for future exploitation if new entry points are introduced without them. Overall, the plugin appears to be securely coded for its current iteration, but the absence of nonces and the potential for future unprotected entry points are notable weaknesses.
Key Concerns
- No nonce checks found
- External HTTP request without context
Find Tweets Security Vulnerabilities
Find Tweets Code Analysis
Output Escaping
Find Tweets Attack Surface
WordPress Hooks 5
Maintenance & Trust
Find Tweets Maintenance & Trust
Maintenance Signals
Community Trust
Find Tweets Alternatives
Peadig's Twitter Feed: Embedded Timeline WordPress Plugin
wp-twitter-feed
A simple Twitter feed that outputs your latest tweets in HTML into any post, page, template or sidebar widget. Customisable and easy to install!
Curator Studio – Twitter – Show tweets, mentions and more
curator-studio-twitter
Curate Twitter content like never before.
Open Graph and Twitter Card Tags
wonderm00ns-simple-facebook-open-graph-tags
Improve social media sharing by inserting Facebook Open Graph, Twitter Card, and SEO Meta Tags on your WordPress website pages, posts, WooCommerce pro …
Social Media Widget
social-media-widget
Adds links to all of your social media and sharing site profiles. Tons of icons come in 3 sizes, 4 icon styles, and 4 animations.
Social Media Auto Publish
social-media-auto-publish
Publish posts automatically to social media networks like Facebook, Twitter, Instagram, Tumblr, LinkedIn, Threads and Telegram.
Find Tweets Developer Profile
1 plugin · 10 total installs
How We Detect Find Tweets
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/find-tweets/js/ZeroClipboard/ZeroClipboard.js/wp-content/plugins/find-tweets/js/ZeroClipboard/main.jsZeroClipboardZeromainHTML / DOM Fingerprints
data-clipboard-textclass='copy-button'class='tweet-button'<div style='height: 35px; display: inline-table; width: 100%;'><button style='float:right' class='copy-button' title='Click to copy me.'>Copy to Clipboard</button><button style='float:right; margin-right:1em;' class='tweet-button'>Tweet</button>