
GitHub Badge Security & Risk Analysis
wordpress.org/plugins/github-badgeThis plug-in allows you to create and place a GitHub css3 badge to your webpage on wordpress. With the help of this plug-in you create a css3 badge fo …
Is GitHub Badge Safe to Use in 2026?
Generally Safe
Score 85/100GitHub Badge has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The github-badge plugin v1.0.1 exhibits a strong security posture based on the provided static analysis and vulnerability history. The code demonstrates excellent adherence to secure coding practices, with no detected dangerous functions, all SQL queries utilizing prepared statements, and all outputs properly escaped. The absence of file operations and external HTTP requests further reduces the potential attack surface.
While the static analysis revealed a single shortcode entry point, it is categorized as having no unprotected access. The taint analysis shows no flows with unsanitized paths, indicating a lack of exploitable data manipulation vulnerabilities. The plugin's vulnerability history is also clear, with zero known CVEs, suggesting a well-maintained and secure codebase. The plugin's strengths lie in its clean code and lack of historical security incidents.
However, the absence of capability checks and nonce checks across all entry points, even if currently classified as 'unprotected: 0', represents a potential area for future risk. Should any new functionality be introduced or existing code be modified without careful consideration of these security mechanisms, it could open the door to vulnerabilities. Nevertheless, as it stands, the plugin appears very secure with a minimal risk profile.
Key Concerns
- Missing capability checks
- Missing nonce checks
GitHub Badge Security Vulnerabilities
GitHub Badge Code Analysis
GitHub Badge Attack Surface
Shortcodes 1
WordPress Hooks 1
Maintenance & Trust
GitHub Badge Maintenance & Trust
Maintenance Signals
Community Trust
GitHub Badge Alternatives
End Page Slide Box
end-page-slide-box
End Page Slide Box is to have an element in the page last paragraph that triggers End Page Slide Box to appear.
Posts map
posts-map
This plugin adds into a blog post an image where you can put icons that link other blog posts.
Duplicate Post
copy-delete-posts
Duplicate post
Display Posts – Easy lists, grids, navigation, and more
display-posts-shortcode
Add a listing of content on your website using a simple shortcode. Filter the results by category, author, and more.
CMS Tree Page View
cms-tree-page-view
Adds a tree view of all pages & custom posts. Get a great overview + options to drag & drop to reorder & option to add multiple pages.
GitHub Badge Developer Profile
7 plugins · 610 total installs
How We Detect GitHub Badge
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/github-badge/github-badge.cssHTML / DOM Fingerprints
followgithubfollowgithubimg<a href="" title="Follow me on Github" class="followgithub"><img class="followgithubimg" src="https://github.com/favicon.ico" /> Follow me on Github</a>