Font Type Tester Security & Risk Analysis

wordpress.org/plugins/font-type-tester

A comprehensive font testing tool with real-time typography controls and font source obfuscation for secure font preview.

10 active installs v1.1.12 PHP 7.4+ WP 5.0+ Updated Jul 30, 2025
font-previewfont-testerfontsstatic-fontstypography-tools
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Font Type Tester Safe to Use in 2026?

Generally Safe

Score 100/100

Font Type Tester has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 8mo ago
Risk Assessment

The "font-type-tester" plugin version 1.1.12 exhibits a strong security posture based on the provided static analysis and vulnerability history. The code demonstrates excellent adherence to security best practices, with all identified outputs being properly escaped and a significant majority of SQL queries utilizing prepared statements. Crucially, the plugin has no known critical or high-severity vulnerabilities, and its vulnerability history is clean, suggesting a proactive approach to security by the developers. The absence of any taint analysis findings with unsanitized paths further reinforces this positive assessment.

While the plugin has a total of 3 entry points (2 AJAX handlers and 1 shortcode), all are reportedly protected by nonce and capability checks, eliminating potential direct attack vectors. The absence of dangerous functions, external HTTP requests, and bundled libraries also reduces the potential for common security issues. The plugin's low overall attack surface, coupled with robust security implementation, positions it as a secure choice.

In conclusion, "font-type-tester" v1.1.12 appears to be a well-secured plugin. The developers have implemented strong security measures, including comprehensive output escaping, prepared statements for SQL, and proper authorization checks on all entry points. The lack of any historical vulnerabilities further instills confidence in its safety. The minimal attack surface and absence of problematic code signals contribute to a very low-risk profile.

Vulnerabilities
None known

Font Type Tester Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Font Type Tester Code Analysis

Dangerous Functions
0
Raw SQL Queries
1
2 prepared
Unescaped Output
0
35 escaped
Nonce Checks
3
Capability Checks
3
File Operations
2
External Requests
0
Bundled Libraries
0

SQL Query Safety

67% prepared3 total queries

Output Escaping

100% escaped35 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
fotyte_handle_font_upload (font-type-tester.php:79)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Font Type Tester Attack Surface

Entry Points3
Unprotected0

AJAX Handlers 2

authwp_ajax_fotyte_upload_fontfont-type-tester.php:29
authwp_ajax_fotyte_delete_fontfont-type-tester.php:30

Shortcodes 1

[fotyte_font_tester] font-type-tester.php:32
WordPress Hooks 4
filterupload_mimesfont-type-tester.php:25
actionadmin_menufont-type-tester.php:26
actionadmin_enqueue_scriptsfont-type-tester.php:27
actionwp_enqueue_scriptsfont-type-tester.php:28
Maintenance & Trust

Font Type Tester Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedJul 30, 2025
PHP min version7.4
Downloads287

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Font Type Tester Developer Profile

DR ANIRBAN MITRA

2 plugins · 20 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Font Type Tester

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/font-type-tester/css/fotyte-admin.css/wp-content/plugins/font-type-tester/js/fotyte-admin.js/wp-content/plugins/font-type-tester/css/fotyte-frontend.css/wp-content/plugins/font-type-tester/js/fotyte-frontend.js
Script Paths
/wp-content/plugins/font-type-tester/js/fotyte-admin.js/wp-content/plugins/font-type-tester/js/fotyte-frontend.js
Version Parameters
font-type-tester/css/fotyte-admin.css?ver=font-type-tester/js/fotyte-admin.js?ver=font-type-tester/css/fotyte-frontend.css?ver=font-type-tester/js/fotyte-frontend.js?ver=

HTML / DOM Fingerprints

CSS Classes
fotyte-admin-containerfotyte-font-listfotyte-font-itemfotyte-font-namefotyte-upload-form-wrapperfotyte-font-tester-frontend
Data Attributes
data-font-id
JS Globals
fotyte_font_tester_ajax_object
Shortcode Output
[fotyte_font_tester]
FAQ

Frequently Asked Questions about Font Type Tester