
Freshtag – Last Modified Info & Timestamp, Detect Old Content, Boost SEO Security & Risk Analysis
wordpress.org/plugins/freshtagDisplay the “Last Modified” date on posts, pages, and products to signal freshness, boost SEO, and increase visitor trust
Is Freshtag – Last Modified Info & Timestamp, Detect Old Content, Boost SEO Safe to Use in 2026?
Generally Safe
Score 100/100Freshtag – Last Modified Info & Timestamp, Detect Old Content, Boost SEO has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "freshtag" plugin v1.1.2 demonstrates a generally good security posture with several positive indicators. The static analysis reveals a very small attack surface, with no AJAX handlers or REST API routes, and the single shortcode entry point is not explicitly mentioned as unprotected. All SQL queries utilize prepared statements, and there are no file operations or external HTTP requests, significantly reducing common vulnerability vectors. The presence of nonce and capability checks, although limited in number, is a good practice.
However, a notable concern is the output escaping. With 65% of outputs properly escaped, it indicates that a significant portion (35%) of output may be unescaped. This could lead to Cross-Site Scripting (XSS) vulnerabilities if user-supplied data is not handled securely before being displayed. The taint analysis shows no detected flows, which is positive, but this may be due to the limited scope of the analysis or the absence of complex data manipulation within the plugin.
The vulnerability history is clean, with no recorded CVEs, which is a strong positive indicator. This suggests a history of relatively secure development. In conclusion, while the plugin benefits from a limited attack surface and good practices in handling database queries and external requests, the moderate rate of unescaped output presents a potential risk that should be addressed. The lack of historical vulnerabilities is reassuring, but the identified code signal weakness warrants attention.
Key Concerns
- Unescaped output detected
Freshtag – Last Modified Info & Timestamp, Detect Old Content, Boost SEO Security Vulnerabilities
Freshtag – Last Modified Info & Timestamp, Detect Old Content, Boost SEO Release Timeline
Freshtag – Last Modified Info & Timestamp, Detect Old Content, Boost SEO Code Analysis
Output Escaping
Freshtag – Last Modified Info & Timestamp, Detect Old Content, Boost SEO Attack Surface
Shortcodes 1
WordPress Hooks 13
Maintenance & Trust
Freshtag – Last Modified Info & Timestamp, Detect Old Content, Boost SEO Maintenance & Trust
Maintenance Signals
Community Trust
Freshtag – Last Modified Info & Timestamp, Detect Old Content, Boost SEO Alternatives
WP Last Modified Info
wp-last-modified-info
Ultimate Last Modified Plugin for WordPress with Gutenberg support. Use shortcodes to show last modified info on WP 4.7+ sites.
Last Modified Timestamp
last-modified-timestamp
Adds the last modified time to the admin interface as well as a [last-modified] shortcode to use on the front-end.
Post Updated Date
post-updated-date
Use Post Updated Date Plugin to display the Last Updated Date in WordPress Posts.
Show modified Date in admin lists
show-modified-date-in-admin-lists
Show modified date column in the lists of pages and posts in the WordPress admin panel.
WP Last Modified
wp-open-last-modified
This plugins adds the last modified date, current revision and the publication date of your post/page. Simply use the shortcode [last_modified_date]
Freshtag – Last Modified Info & Timestamp, Detect Old Content, Boost SEO Developer Profile
5 plugins · 3K total installs
How We Detect Freshtag – Last Modified Info & Timestamp, Detect Old Content, Boost SEO
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/freshtag/assets/css/admin.css/wp-content/plugins/freshtag/assets/js/admin.js/wp-content/plugins/freshtag/assets/js/admin.jsfreshtag/assets/css/admin.css?ver=freshtag/assets/js/admin.js?ver=HTML / DOM Fingerprints
lmmvp-meta-boxlmmvp-date-pickerlmmvp-modification-logid="lmmvp_last_modified"name="lmmvp_manual_date"id="lmmvp_manual_date"name="lmmvp_meta_box_nonce"name="lmmvp_quick_edit_nonce"