
Footer Logo Security & Risk Analysis
wordpress.org/plugins/footer-logoFooter Logo
Is Footer Logo Safe to Use in 2026?
Generally Safe
Score 85/100Footer Logo has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'footer-logo' plugin v1.0 presents a generally good security posture based on the provided static analysis. The absence of any identified attack surface entry points, dangerous functions, raw SQL queries, file operations, external HTTP requests, and importantly, the lack of taint flows, suggests a well-contained and secure codebase at first glance. The plugin also has no recorded vulnerability history, further contributing to this positive initial assessment. However, a significant concern emerges from the output escaping analysis, where 100% of the single total output is not properly escaped. This indicates a potential for Cross-Site Scripting (XSS) vulnerabilities, especially if the output is derived from user-controlled input, even if the static analysis didn't explicitly flag it as a taint flow. While the plugin exhibits strengths in its limited attack surface and absence of historical vulnerabilities, the unescaped output is a critical weakness that requires immediate attention.
Key Concerns
- 100% of outputs are not properly escaped
Footer Logo Security Vulnerabilities
Footer Logo Release Timeline
Footer Logo Code Analysis
Output Escaping
Footer Logo Attack Surface
WordPress Hooks 1
Maintenance & Trust
Footer Logo Maintenance & Trust
Maintenance Signals
Community Trust
Footer Logo Developer Profile
2 plugins · 50 total installs
How We Detect Footer Logo
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
get_footer_image()