Font Resize With Post Reading Time [GWE] Security & Risk Analysis

wordpress.org/plugins/font-resizer-with-post-reading-time

With this plugin, you can easily display post reading time and a font resizing option on every single blog page.

80 active installs v2.0.2 PHP 7.0+ WP 4.7+ Updated Unknown
font-resizefont-sizepost-reading-timereading-timetext-resize
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Font Resize With Post Reading Time [GWE] Safe to Use in 2026?

Generally Safe

Score 100/100

Font Resize With Post Reading Time [GWE] has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs
Risk Assessment

The "font-resizer-with-post-reading-time" plugin version 2.0.2 exhibits a strong security posture based on the provided static analysis. The absence of any identified dangerous functions, SQL queries not using prepared statements, file operations, or external HTTP requests is highly commendable. Furthermore, all identified output is properly escaped, and the plugin does not appear to bundle any external libraries that could introduce vulnerabilities. The lack of any reported CVEs, past or present, and the absence of any identified taint flows of critical or high severity contribute to a very low-risk profile.

However, a notable area of concern is the complete lack of nonce checks and capability checks. While the static analysis indicates zero attack surface in terms of AJAX handlers, REST API routes, and shortcodes, this doesn't preclude potential vulnerabilities if the plugin's functionality were to be extended or if future versions introduce such entry points without adequate security controls. The absence of these fundamental WordPress security mechanisms, even in the absence of current exploits, represents a potential weakness. Therefore, while the current version appears secure and well-developed, the lack of built-in authorization checks is a technical debt that could become a risk if the plugin evolves.

In conclusion, the plugin demonstrates excellent adherence to secure coding practices in its current state, with no critical or high-risk findings from the static analysis or vulnerability history. Its clean code and lack of known exploits are significant strengths. The primary weakness lies in the absence of nonce and capability checks, which, while not currently exploitable according to the data, are essential security components that should ideally be present for robust defense against potential future threats or modifications.

Key Concerns

  • Missing nonce checks
  • Missing capability checks
Vulnerabilities
None known

Font Resize With Post Reading Time [GWE] Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Font Resize With Post Reading Time [GWE] Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
6 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped6 total outputs
Attack Surface

Font Resize With Post Reading Time [GWE] Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 7
actionplugins_loadedindex.php:32
actionwp_enqueue_scriptsindex.php:33
actionadmin_enqueue_scriptsindex.php:34
filterthe_contentindex.php:109
actionadmin_menuindex.php:119
actionadmin_initindex.php:120
actionadmin_initindex.php:121
Maintenance & Trust

Font Resize With Post Reading Time [GWE] Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedUnknown
PHP min version7.0
Downloads2K

Community Trust

Rating100/100
Number of ratings1
Active installs80
Developer Profile

Font Resize With Post Reading Time [GWE] Developer Profile

Mukul Hossain

4 plugins · 150 total installs

90
trust score
Avg Security Score
94/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Font Resize With Post Reading Time [GWE]

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/font-resizer-with-post-reading-time/assets/public/css/fscmain.css/wp-content/plugins/font-resizer-with-post-reading-time/assets/public/css/all.min.css/wp-content/plugins/font-resizer-with-post-reading-time/assets/public/css/fontawesome.min.css/wp-content/plugins/font-resizer-with-post-reading-time/assets/admin/css/admin.css/wp-content/plugins/font-resizer-with-post-reading-time/fsc-color-picker-script.js/wp-content/plugins/font-resizer-with-post-reading-time/assets/public/js/fscmain.js
Script Paths
/wp-content/plugins/font-resizer-with-post-reading-time/assets/public/js/fscmain.js/wp-content/plugins/font-resizer-with-post-reading-time/fsc-color-picker-script.js
Version Parameters
font-resizer-with-post-reading-time/assets/public/css/fscmain.css?ver=font-resizer-with-post-reading-time/assets/public/css/all.min.css?ver=font-resizer-with-post-reading-time/assets/public/css/fontawesome.min.css?ver=font-resizer-with-post-reading-time/assets/admin/css/admin.css?ver=font-resizer-with-post-reading-time/fsc-color-picker-script.js?ver=font-resizer-with-post-reading-time/assets/public/js/fscmain.js?ver=

HTML / DOM Fingerprints

CSS Classes
fsc_reading_timefsc_btnfsc_wrapperfsc_textfsc_form
Data Attributes
id="fsc_plus"id="fsc_minus"page="fsc"
JS Globals
window.fsc_disable_options
FAQ

Frequently Asked Questions about Font Resize With Post Reading Time [GWE]