Geo Targetly Geo Popup Security & Risk Analysis

wordpress.org/plugins/geo-targetly-geo-popup

Show custom popups by location. Deliver the right message to the right visitor, based on geolocation.

0 active installs v2.0.1 PHP + WP 3.0+ Updated Dec 2, 2025
geo-popuphtml-popuplocal-offerslocation-targetingpopup-scheduling
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Geo Targetly Geo Popup Safe to Use in 2026?

Generally Safe

Score 100/100

Geo Targetly Geo Popup has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5mo ago
Risk Assessment

The static analysis of "geo-targetly-geo-popup" v2.0.1 reveals a generally strong security posture based on the provided data. There are no identified dangerous functions, all SQL queries utilize prepared statements, and all output is properly escaped. Furthermore, the plugin exhibits no file operations, no reported vulnerabilities in its history, and no identified taint flows, which are all positive indicators of secure coding practices.

However, the analysis highlights a significant concern regarding the complete absence of capability checks and nonce checks. This means that none of the plugin's potential entry points, even if they were to exist, are protected by WordPress's built-in authorization mechanisms. While the current analysis shows zero entry points, this could change with future updates or if the analysis did not capture all potential interaction vectors. The presence of two external HTTP requests also warrants attention, as these could be potential vectors for attack if not handled securely, although no specific issues are detailed in the provided data.

In conclusion, the plugin demonstrates good practices in fundamental areas like SQL and output sanitization. The lack of reported vulnerabilities is a positive sign. The primary weakness lies in the complete absence of authorization checks (capability and nonce), which represents a latent risk that could become critical if any entry points are introduced or overlooked. The external HTTP requests should also be monitored for security implications.

Key Concerns

  • Missing capability checks
  • Missing nonce checks
  • External HTTP requests without context
Vulnerabilities
None known

Geo Targetly Geo Popup Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Geo Targetly Geo Popup Release Timeline

v2.0.1Current
v2.0.0
v1.0.0
Code Analysis
Analyzed Mar 17, 2026

Geo Targetly Geo Popup Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
8 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
2
Bundled Libraries
0

Output Escaping

100% escaped8 total outputs
Attack Surface

Geo Targetly Geo Popup Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 4
actionadmin_menuphp\wordpress\admin_builder.php:11
actionadmin_initphp\wordpress\admin_builder.php:31
actioninitphp\wordpress\script_injector.php:6
actionwp_enqueue_scriptsphp\wordpress\script_injector.php:24
Maintenance & Trust

Geo Targetly Geo Popup Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedDec 2, 2025
PHP min version
Downloads2K

Community Trust

Rating100/100
Number of ratings2
Active installs0
Alternatives

Geo Targetly Geo Popup Alternatives

No alternatives data available yet.

Developer Profile

Geo Targetly Geo Popup Developer Profile

geotargetly

10 plugins · 1K total installs

79
trust score
Avg Security Score
100/100
Avg Patch Time
185 days
View full developer profile
Detection Fingerprints

How We Detect Geo Targetly Geo Popup

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/geo-targetly-geo-popup/shared/templates/script.js.php

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Geo Targetly Geo Popup