
GP Google login Security & Risk Analysis
wordpress.org/plugins/gp-google-loginA simple login with google account in WordPress
Is GP Google login Safe to Use in 2026?
Generally Safe
Score 85/100GP Google login has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The gp-google-login plugin version 1.0.1 exhibits a mixed security posture. On the positive side, it demonstrates good practices by having no recorded vulnerabilities (CVEs) and utilizes prepared statements for all SQL queries, indicating a commitment to preventing SQL injection. Furthermore, the absence of external HTTP requests, file operations, and a large attack surface with unprotected entry points is commendable. However, a significant concern arises from the static analysis revealing that 0% of its output is properly escaped. This means that any dynamic content rendered by the plugin could be vulnerable to cross-site scripting (XSS) attacks if that content originates from user input or untrusted sources. The lack of nonce and capability checks on the identified shortcode also presents a potential, albeit less severe, risk if the shortcode's functionality can be exploited without proper authorization or validation. The bundled Guzzle library, while not inherently a vulnerability, could pose a risk if it's an outdated version and contains known exploits; however, the provided data doesn't offer version specifics to confirm this.
Key Concerns
- 0% output properly escaped (XSS risk)
- Missing nonce checks on shortcode
- Missing capability checks on shortcode
GP Google login Security Vulnerabilities
GP Google login Code Analysis
Bundled Libraries
Output Escaping
GP Google login Attack Surface
Shortcodes 1
WordPress Hooks 8
Maintenance & Trust
GP Google login Maintenance & Trust
Maintenance Signals
Community Trust
GP Google login Alternatives
Tim's Nextcloud SSO OAuth2
tims-nextcloud-sso-oauth2
Enables you to login to your WordPress site with your Nextcloud account with OAuth2
Snapplify Single Sign On
snapplify-single-sign-on
WordPress User Single Sign On authentication with a Snapplify User Account.
Login by Auth0
auth0
Login by Auth0 provides improved username/password login, Passwordless login, Social login and Single Sign On for all your sites.
OAuth Single Sign On – SSO (OAuth Client)
miniorange-login-with-eve-online-google-facebook
WordPress SSO (Single Sign On) with Azure, Azure B2C, Cognito, Okta, Classlink, Discord, Clever, Keycloak, OAuth & OpenID Providers [24/7 SUPPORT].
Log in with Google
login-with-google
Minimal plugin that allows WordPress users to log in using Google.
GP Google login Developer Profile
6 plugins · 120 total installs
How We Detect GP Google login
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/gp-google-login/css/gp_google_login_style.cssHTML / DOM Fingerprints
regular-textltrname='Gp_google_login_options[Gp_google_login_client_id]'id='Gp_google_login_client_id'name='Gp_google_login_options[Gp_google_login_client_secret]'id='Gp_google_login_client_secret'name='Gp_google_login_options[Gp_google_login_redirect_uri]'id='Gp_google_login_redirect_uri'