
G Structured Data Security & Risk Analysis
wordpress.org/plugins/g-structured-dataG Structured Data (GSD) is a simple and convenient WordPress plug-in developed to help Google understand the content of your site and enable custom s …
Is G Structured Data Safe to Use in 2026?
Generally Safe
Score 85/100G Structured Data has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'g-structured-data' plugin version 1.1.6 exhibits a generally positive security posture based on the provided static analysis. The absence of identified AJAX handlers, REST API routes, shortcodes, and cron events significantly limits the potential attack surface, which is a strong indicator of good security practices in design. Furthermore, the lack of critical or high-severity code signals such as dangerous functions, file operations, external HTTP requests, and the absence of taint analysis findings suggest a well-written codebase with minimal apparent vulnerabilities.
However, several areas warrant caution. The presence of a single SQL query that does not utilize prepared statements is a notable risk, as it could be susceptible to SQL injection if the input feeding this query is not rigorously sanitized. Additionally, a significant portion of output (59%) is not properly escaped, creating a risk of Cross-Site Scripting (XSS) vulnerabilities. The complete lack of nonce and capability checks across all entry points, while currently not exposed due to the limited attack surface, represents a fundamental security oversight that could become problematic if functionality is added or exposed in the future.
The plugin's vulnerability history of zero known CVEs is highly encouraging and suggests a history of robust security. This, combined with the clean taint analysis and absence of dangerous functions, paints a picture of a plugin that has historically been secure and well-maintained. Despite the identified risks in SQL usage and output escaping, the overall low risk profile, particularly given the limited attack surface and zero CVEs, suggests that while not perfect, the plugin is relatively safe for use. Addressing the unescaped output and the raw SQL query should be the priority to further enhance its security.
Key Concerns
- SQL query without prepared statement
- Significant unescaped output (59%)
- No nonce checks
- No capability checks
G Structured Data Security Vulnerabilities
G Structured Data Code Analysis
SQL Query Safety
Output Escaping
G Structured Data Attack Surface
WordPress Hooks 10
Maintenance & Trust
G Structured Data Maintenance & Trust
Maintenance Signals
Community Trust
G Structured Data Alternatives
The SEO Framework – Fast, Automated, Effortless.
autodescription
The fastest feature-complete SEO plugin for professional WordPress websites. Secure, fast, unbranded, and automated SEO. Do less; get better results.
Schema – All In One Schema Rich Snippets
all-in-one-schemaorg-rich-snippets
Improve SEO, elevate rankings and Boost CTR. Supports different types of content and works well with Google, Bing, Yahoo, and Facebook.
Reviews and Rating – Google Reviews
g-business-reviews-rating
Completely restriction-free Google reviews and rating as Shortcode/Widget. Extensive display options; delicious themes; includes Structured Data.
Easy Schema – Structured Data & Rich Snippets
easy-schema-structured-data-rich-snippets
🚀 Easy Schema allows you to add Schema, structured data and rich snippets to your WordPress website, giving the search engines all the information the …
Local Business Schema Generator
local-business-schema-generator
Add Google-friendly LocalBusiness and WebSite schema to your WordPress site—no coding required.
G Structured Data Developer Profile
4 plugins · 10K total installs
How We Detect G Structured Data
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
gsd-hashtagsgsd_site_tracking_codes_activationgsd_site_tracking_codesgsd_show_on_site_activegsd_show_tags_on_sitegsd_category_tags_on_sitegsd_title_appear_the_site+15 more