WP Google Authorship Security & Risk Analysis

wordpress.org/plugins/google-plus-author

Google Plus Profile Picture appear in Google Search. Very Easy to implement. Including Google authorship for multiple authors and multisite.

200 active installs v2.1 PHP + WP 3.0+ Updated Nov 8, 2025
authorauthorshipgooglegoogle-plusseo
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is WP Google Authorship Safe to Use in 2026?

Generally Safe

Score 100/100

WP Google Authorship has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4mo ago
Risk Assessment

The 'google-plus-author' v2.1 plugin exhibits a strong security posture based on the provided static analysis. The absence of dangerous functions, file operations, and external HTTP requests is highly positive. The plugin also demonstrates good practices by utilizing prepared statements for all SQL queries and performing proper output escaping on a majority of outputs. Crucially, the presence of nonce and capability checks indicates an effort to protect against common WordPress vulnerabilities. The plugin's vulnerability history is also clean, with no known CVEs recorded, further reinforcing its apparent security.

While the static analysis reveals a very small attack surface with no immediately apparent unprotected entry points, the taint analysis showing zero flows analyzed is a minor concern. It's possible that if the plugin were to evolve or introduce new functionality, the lack of thorough taint analysis in this assessment might leave potential vulnerabilities undiscovered. However, based strictly on the provided data, the plugin appears secure, with no significant weaknesses identified.

Vulnerabilities
None known

WP Google Authorship Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

WP Google Authorship Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
1
14 escaped
Nonce Checks
1
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

93% escaped15 total outputs
Attack Surface

WP Google Authorship Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[googleplusauthor] google-plus-author.php:64
WordPress Hooks 3
actionshow_user_profilegoogle-plus-author.php:65
actionedit_user_profilegoogle-plus-author.php:66
actionpersonal_options_updategoogle-plus-author.php:101
Maintenance & Trust

WP Google Authorship Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedNov 8, 2025
PHP min version
Downloads22K

Community Trust

Rating100/100
Number of ratings1
Active installs200
Developer Profile

WP Google Authorship Developer Profile

Mervin Praison

7 plugins · 3K total installs

79
trust score
Avg Security Score
100/100
Avg Patch Time
266 days
View full developer profile
Detection Fingerprints

How We Detect WP Google Authorship

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/google-plus-author/google-plus-author.php

HTML / DOM Fingerprints

HTML Comments
<!-- Google Plus profile information --><!-- Please enter your Google Plus Profile URL. (with "https://plus.google.com/1234567890987654321") --><!-- Enter Your Preferred Name -->
Data Attributes
name="gplusauthor"id="gplusauthor"name="prefname"id="prefname"name="gplus_author_nonce"
Shortcode Output
<a href=
FAQ

Frequently Asked Questions about WP Google Authorship