
Flamingo – Author Box Generator Security & Risk Analysis
wordpress.org/plugins/flamingo-by-mailbirdFlamingo: Generate personalized email signatures and author bios for a professional touch to your brand across email clients and WordPress sites.
Is Flamingo – Author Box Generator Safe to Use in 2026?
Generally Safe
Score 85/100Flamingo – Author Box Generator has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The Flamingo-by-Mailbird plugin v1.0.0 presents a mixed security posture. While it demonstrates good practices in areas like SQL query preparation and output escaping, with very high percentages of both being handled correctly, it has significant security concerns. The most prominent issue is the complete lack of authentication checks on all identified entry points. This includes all 5 AJAX handlers and both REST API routes, creating a large attack surface that is entirely open to unauthenticated access. Furthermore, the taint analysis revealed 2 flows with unsanitized paths, classified as high severity, indicating potential for code injection or data manipulation vulnerabilities through these paths. The plugin's vulnerability history is clean, with no recorded CVEs, which is a positive indicator of its past security. However, the current code analysis findings, particularly the lack of authorization and the high-severity taint flows, overshadow this history and suggest a high immediate risk.
Key Concerns
- All AJAX handlers lack authentication checks
- All REST API routes lack permission callbacks
- High severity taint flows with unsanitized paths
- No capability checks on entry points
Flamingo – Author Box Generator Security Vulnerabilities
Flamingo – Author Box Generator Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Flamingo – Author Box Generator Attack Surface
AJAX Handlers 5
REST API Routes 2
WordPress Hooks 7
Maintenance & Trust
Flamingo – Author Box Generator Maintenance & Trust
Maintenance Signals
Community Trust
Flamingo – Author Box Generator Alternatives
No alternatives data available yet.
Flamingo – Author Box Generator Developer Profile
1 plugin · 10 total installs
How We Detect Flamingo – Author Box Generator
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/flamingo-by-mailbird/admin/css/flamingo-by-mailbird-admin.css/wp-content/plugins/flamingo-by-mailbird/admin/js/flamingo-by-mailbird-admin.js/wp-content/plugins/flamingo-by-mailbird/admin/js/flamingo-by-mailbird-settings.js/wp-content/plugins/flamingo-by-mailbird/admin/js/flamingo-by-mailbird-templates.js/wp-content/plugins/flamingo-by-mailbird/includes/css/flamingo-by-mailbird-public.css/wp-content/plugins/flamingo-by-mailbird/includes/js/flamingo-by-mailbird-public.jsFlamingo - Author Box Generator 1.0.0/wp-content/plugins/flamingo-by-mailbird/admin/js/flamingo-by-mailbird-admin.js/wp-content/plugins/flamingo-by-mailbird/admin/js/flamingo-by-mailbird-settings.js/wp-content/plugins/flamingo-by-mailbird/admin/js/flamingo-by-mailbird-templates.js/wp-content/plugins/flamingo-by-mailbird/includes/js/flamingo-by-mailbird-public.jsflamingo-by-mailbird/admin/css/flamingo-by-mailbird-admin.css?ver=flamingo-by-mailbird/admin/js/flamingo-by-mailbird-admin.js?ver=flamingo-by-mailbird/admin/js/flamingo-by-mailbird-settings.js?ver=flamingo-by-mailbird/admin/js/flamingo-by-mailbird-templates.js?ver=flamingo-by-mailbird/includes/css/flamingo-by-mailbird-public.css?ver=flamingo-by-mailbird/includes/js/flamingo-by-mailbird-public.js?ver=HTML / DOM Fingerprints
flamingo-by-mailbird-admin-wrapflamingo-by-mailbird-template-editorflamingo-by-mailbird-signature-preview<!-- The following is a WordPress framework. --><!-- Nonce verification is not required, using param for routing purposes. -->data-flamingo-template-typeflamingo_by_mailbird_settingsflamingo_by_mailbird_templates/wp-json/flamingo-by-mailbird/v1/template