
Full screen ad Security & Risk Analysis
wordpress.org/plugins/full-screen-adThe only plugin that allows you to easily create a timed full-screen ad.
Is Full screen ad Safe to Use in 2026?
Generally Safe
Score 100/100Full screen ad has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'full-screen-ad' plugin version 1.0.1 exhibits a generally strong security posture based on the provided static analysis and vulnerability history. All identified AJAX handlers are protected by nonce checks, indicating a conscious effort to prevent CSRF attacks. Furthermore, the plugin demonstrates excellent code hygiene with 100% of SQL queries utilizing prepared statements and all output being properly escaped, mitigating risks of SQL injection and XSS vulnerabilities respectively. The absence of file operations and external HTTP requests further reduces the potential attack surface.
However, the static analysis does reveal a significant area for concern: the lack of capability checks on its two AJAX handlers. While nonce checks are present, this omission means that any authenticated user, regardless of their role or permissions, could potentially trigger these AJAX actions. This could lead to unintended consequences or privilege escalation if the actions performed by these handlers are sensitive. The plugin's vulnerability history, being completely clear of any past CVEs, is a positive indicator of its development quality, but it does not negate the risks identified in the current code analysis. Overall, while the plugin avoids common pitfalls like raw SQL or unescaped output, the missing capability checks represent a notable weakness that should be addressed.
Key Concerns
- AJAX handlers without capability checks
Full screen ad Security Vulnerabilities
Full screen ad Code Analysis
Output Escaping
Full screen ad Attack Surface
AJAX Handlers 2
WordPress Hooks 6
Maintenance & Trust
Full screen ad Maintenance & Trust
Maintenance Signals
Community Trust
Full screen ad Alternatives
Website Pop-up Builder by BDOW! (formerly Sumo): Pop-ups + forms for email opt-ins and lead generation
sumome
Sumo is trusted by over 600,000 businesses — small and large — in growing their email lists, customer base, and revenue online.
Leadster
leadster-marketing-conversacional
Leadster Marketing Conversacional: O Futuro da Geração de Leads
CallTrackingMetrics
call-tracking-metrics
CallTrackingMetrics integrates with your WordPress site to provide powerful call tracking and attribution.
Dynamic Remarketing for Google Ads and WooCommerce
woocommerce-google-dynamic-retargeting-tag
This plugin integrates the Google Ads Dynamic Remarketing Tracking pixel with customized ecommerce variables in a WooCommerce shop.
Simple ads.txt
simple-ads-txt
Simple ads.txt integration for your WordPress
Full screen ad Developer Profile
4 plugins · 150 total installs
How We Detect Full screen ad
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/full-screen-ad/assets/code-editor.js/wp-content/plugins/full-screen-ad/assets/code-editor.js