
Testimonials for Freemius Security & Risk Analysis
wordpress.org/plugins/fs-testimonialsShow featured testimonials for your Plugins/Themes integrated with Freemius.
Is Testimonials for Freemius Safe to Use in 2026?
Generally Safe
Score 85/100Testimonials for Freemius has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'fs-testimonials' plugin v1.1.0 exhibits a mixed security posture. On the positive side, it has a very small attack surface, with only one shortcode identified. The plugin also demonstrates good practice by including a nonce check and a capability check, and importantly, there are no known historical vulnerabilities or CVEs associated with this plugin, suggesting a history of responsible development. However, significant concerns arise from the static code analysis. The plugin uses a single SQL query that is not prepared, posing a risk of SQL injection if user-supplied data is not properly sanitized before being passed to the query. Furthermore, a concerning 0% of output escaping is present, indicating that user-controlled data displayed on the frontend is not being properly sanitized, leading to a high risk of Cross-Site Scripting (XSS) vulnerabilities. The absence of taint analysis results is noted but does not negate the direct code signals of concern.
Key Concerns
- Raw SQL queries without prepared statements
- All outputs are not properly escaped
Testimonials for Freemius Security Vulnerabilities
Testimonials for Freemius Release Timeline
Testimonials for Freemius Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Testimonials for Freemius Attack Surface
Shortcodes 1
WordPress Hooks 2
Maintenance & Trust
Testimonials for Freemius Maintenance & Trust
Maintenance Signals
Community Trust
Testimonials for Freemius Alternatives
Reviews Feed – Add Testimonials and Customer Reviews From Google Reviews, Yelp, TripAdvisor, and More
reviews-feed
No API key required. Display Yelp and Google reviews for any business in a clean, customizable feed on your site.
Rich Showcase for Google Reviews
widget-google-reviews
Display up to 10 Google reviews in less than a minute. Continue collecting new reviews. No limits on connected places, widgets, shortcodes and blocks.
Site Reviews
site-reviews
Site Reviews is a complete review management solution that integrates with WooCommerce and SureCart and works similarly to reviews on Amazon, Tripadvi …
WP Google Review Slider
wp-google-places-review-slider
Display Google reviews on your site and even show user images! No address, no problem! Also works with Service Area Businesses and Products! Lightwei …
WP Customer Reviews
wp-customer-reviews
Allows your visitors to leave business / product reviews. Testimonials are in Microdata / Microformat and may display star ratings in search results.
Testimonials for Freemius Developer Profile
9 plugins · 1K total installs
How We Detect Testimonials for Freemius
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/fs-testimonials/assets/front.cssHTML / DOM Fingerprints
fs-testimonialsfs-testimonials-outer-wrapfs-testimonials-wraptestimonialquote-containerrateprofile-piccompress-toggledata-iddata-moredata-lessjQuery<div id="fs-testimonials"<div class="fs-testimonials-outer-wrap"<div class="fs-testimonials-wrap"<div class="testimonial"