Force Protocol-less Links Security & Risk Analysis

wordpress.org/plugins/force-protocol-less-links

This plugin modify the protocol of all links by its protocol-less counterparts.

0 active installs v1.1.1 PHP + WP 2.8+ Updated Mar 4, 2018
httphttpsprotocol-lessssl
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Force Protocol-less Links Safe to Use in 2026?

Generally Safe

Score 85/100

Force Protocol-less Links has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 8yr ago
Risk Assessment

The 'force-protocol-less-links' plugin v1.1.1 exhibits an exceptionally strong security posture based on the provided static analysis and vulnerability history. The absence of any identified dangerous functions, file operations, external HTTP requests, or SQL queries that don't use prepared statements is commendable. Furthermore, the complete lack of unsanitized taint flows and 100% output escaping indicate robust coding practices that prevent common vulnerabilities like cross-site scripting (XSS) and SQL injection. The plugin's vulnerability history is also clean, with no known CVEs recorded, reinforcing its current security soundness. The complete lack of an attack surface through AJAX, REST API, shortcodes, or cron events means there are no direct entry points for attackers to exploit. This plugin demonstrates a very low-risk profile, adhering to best practices in secure WordPress development. The plugin's sole function appears to be protocol manipulation, and it achieves this without introducing any discernible security weaknesses.

Vulnerabilities
None known

Force Protocol-less Links Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Force Protocol-less Links Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

Force Protocol-less Links Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 1
actioninitindex.php:15
Maintenance & Trust

Force Protocol-less Links Maintenance & Trust

Maintenance Signals

WordPress version tested4.9.29
Last updatedMar 4, 2018
PHP min version
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Force Protocol-less Links Developer Profile

David Garcia

11 plugins · 90 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Force Protocol-less Links

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/force-protocol-less-links/css/style.css/wp-content/plugins/force-protocol-less-links/js/script.js
Script Paths
/wp-content/plugins/force-protocol-less-links/js/script.js
Version Parameters
force-protocol-less-links/css/style.css?ver=force-protocol-less-links/js/script.js?ver=

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Force Protocol-less Links