
Google+ Page Badge Security & Risk Analysis
wordpress.org/plugins/google-plus-page-badgeLets you insert a Google+ Page Badge to your site via shortcode. Easy to intall and implement.
Is Google+ Page Badge Safe to Use in 2026?
Generally Safe
Score 85/100Google+ Page Badge has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "google-plus-page-badge" plugin, in its v0.1 version, exhibits a mixed security posture. On the positive side, the static analysis reveals no dangerous functions, no direct SQL queries (all prepared statements), no file operations, and no external HTTP requests, which significantly reduces common attack vectors. The plugin also has a minimal attack surface with only one shortcode and no identified cron events or REST API routes. Furthermore, there is no recorded vulnerability history, which is a strong indicator of good development practices to date.
However, a critical concern arises from the complete lack of output escaping. With 100% of the identified outputs being unescaped, this plugin is highly susceptible to Cross-Site Scripting (XSS) vulnerabilities. Any data processed or displayed by the plugin, if not properly sanitized by the application or user input, could be injected with malicious scripts. Additionally, the absence of nonce checks and capability checks, even for the single shortcode, leaves the plugin vulnerable to unauthorized actions or privilege escalation if an attacker can trick a logged-in user into triggering the shortcode with malicious intent.
In conclusion, while the plugin benefits from a small attack surface and a clean history, the critical flaw in output escaping and the lack of essential security checks like nonces and capability checks present a significant risk. These vulnerabilities, if exploited, could lead to severe security breaches for WordPress sites using this plugin.
Key Concerns
- No output escaping detected
- Missing nonce checks
- Missing capability checks
Google+ Page Badge Security Vulnerabilities
Google+ Page Badge Release Timeline
Google+ Page Badge Code Analysis
Output Escaping
Google+ Page Badge Attack Surface
Shortcodes 1
WordPress Hooks 3
Maintenance & Trust
Google+ Page Badge Maintenance & Trust
Maintenance Signals
Community Trust
Google+ Page Badge Alternatives
KdTips Google Plus badge
kd-google-plus-badge
Anyone tell you that it is very easy to add Google Plus Badge to your wordpress Blog or website damm easy with KD Google Plus Badge plugin.
Google Plus Authorship
google-plus-authorship
Add Google Plus Profile Picture to Google Search Results. Very Easy to implement! Google authorship for multiple authors
Social Comments
social-comments
This plugin adds Google Plus Comments system, Facebook comments and / or Disqus Comments to your site.
Social Media Social Share Icon
add-social-share
Social Media Share Icons to increase social traffic and popularity. Social sharing to Facebook , Twitter, Pinterest,LinkedIn and Google Plus social me …
WP Google Authorship
google-plus-author
Google Plus Profile Picture appear in Google Search. Very Easy to implement. Including Google authorship for multiple authors and multisite.
Google+ Page Badge Developer Profile
13 plugins · 4K total installs
How We Detect Google+ Page Badge
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/google-plus-page-badge/style.csshttps://apis.google.com/js/plusone.jsHTML / DOM Fingerprints
g-plusdata-hrefdata-sizewindow.__gcfg<div class="g-plus" data-href="https://plus.google.com/105796846489429422695" data-size="badge"></div>