
Get Author's Comments Security & Risk Analysis
wordpress.org/plugins/get-authors-commentsGet Author's Comments displays or retrieves a list of comments posted by a user.
Is Get Author's Comments Safe to Use in 2026?
Generally Safe
Score 85/100Get Author's Comments has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'get-authors-comments' plugin v1.1.0 exhibits a strong security posture based on the static analysis. The complete absence of AJAX handlers, REST API routes, shortcodes, and cron events significantly limits its attack surface. Furthermore, the code analysis reveals no dangerous functions, file operations, or external HTTP requests. All SQL queries are properly prepared, and the majority of output is escaped, indicating good development practices regarding input validation and output sanitization. The taint analysis also shows no identified vulnerabilities, reinforcing the perception of a secure codebase.
The plugin's vulnerability history is completely clean, with no recorded CVEs of any severity. This lack of past issues, combined with the current static analysis results, suggests that the plugin has been developed with security in mind. However, a notable concern is the complete absence of nonce and capability checks across all identified entry points (even though there are zero). While this might be due to the limited attack surface, it represents a potential weakness if functionality were to be added in the future without these security measures. It is crucial that any future development adheres to WordPress security best practices.
In conclusion, 'get-authors-comments' v1.1.0 appears to be a highly secure plugin. Its minimal attack surface, proper SQL handling, and lack of known vulnerabilities are significant strengths. The only area of potential concern is the absence of nonces and capability checks, which, while not an immediate risk given the current lack of entry points, should be a priority if the plugin's functionality expands. Overall, the plugin presents a low-risk profile.
Key Concerns
- No nonce checks detected
- No capability checks detected
- Some output not properly escaped
Get Author's Comments Security Vulnerabilities
Get Author's Comments Code Analysis
SQL Query Safety
Output Escaping
Get Author's Comments Attack Surface
Maintenance & Trust
Get Author's Comments Maintenance & Trust
Maintenance Signals
Community Trust
Get Author's Comments Alternatives
Custom Base Terms
custom-base-terms
Modifique las estructuras personalizadas en las URLs para autor, búsqueda, comentarios, página y feed.
Rewrite Bases Internationalization
rewrite-bases-internationalization
Internationalize rewrite bases for author, search, comments and page (pagination) slugs in WordPress.
cbnet Multi Author Comment Notification
cbnet-multi-author-comment-notification
Send comment notification and comment moderation emails to multiple users. Select users individually or by user role, or send emails to arbitrary emai …
Comment Email Reply
comment-email-reply
Simply notifies comment-author via email if someone replies to his comment. Zero Configuration.
Admin Commenters Comments Count
admin-commenters-comments-count
Displays a count of each commenter's total number of comments (linked to those comments) next to their name on any admin page.
Get Author's Comments Developer Profile
3 plugins · 720 total installs
How We Detect Get Author's Comments
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.