
Gwirydd Sillafu Cymraeg Security & Risk Analysis
wordpress.org/plugins/gwiryddGwirio sillafu a gramadeg gydag adnodd Cysill Prifysgol Bangor. Welsh-language spelling and grammar checker.
Is Gwirydd Sillafu Cymraeg Safe to Use in 2026?
Generally Safe
Score 85/100Gwirydd Sillafu Cymraeg has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "gwirydd" plugin v1.3 exhibits a generally good security posture with several positive attributes. The absence of known CVEs and a clean vulnerability history suggest a well-maintained codebase or a lack of prior exploitation. Notably, the plugin avoids dangerous functions, performs all SQL queries using prepared statements, and has no file operations or external HTTP requests, significantly reducing common attack vectors. The presence of nonce and capability checks on most entry points also indicates an awareness of security best practices.
However, the plugin does present a notable security concern due to a single unprotected AJAX handler. This represents a direct entry point into the plugin's functionality that is not protected by any authentication or authorization checks. While the static analysis shows no critical or high severity taint flows and a majority of output is properly escaped, this single unprotected handler poses a risk. An attacker could potentially exploit this handler to perform unintended actions or gain unauthorized access to sensitive data if the handler's functionality is sensitive, even if the static analysis didn't flag specific taint issues for it.
In conclusion, "gwirydd" v1.3 is strong in many areas of security, particularly regarding data handling and external interactions. Its lack of historical vulnerabilities is a positive sign. The primary weakness lies in the single AJAX endpoint that lacks authentication. Addressing this specific unprotected entry point should be the highest priority to fully secure the plugin.
Key Concerns
- Unprotected AJAX handler
Gwirydd Sillafu Cymraeg Security Vulnerabilities
Gwirydd Sillafu Cymraeg Release Timeline
Gwirydd Sillafu Cymraeg Code Analysis
Output Escaping
Gwirydd Sillafu Cymraeg Attack Surface
AJAX Handlers 1
WordPress Hooks 10
Maintenance & Trust
Gwirydd Sillafu Cymraeg Maintenance & Trust
Maintenance Signals
Community Trust
Gwirydd Sillafu Cymraeg Alternatives
TinyMCE Spellcheck
tinymce-spellcheck
TinyMCE Spellcheck adds the spellcheck button back to the editor in WordPress 3.6 and up.
Webmaster Spelling Notifications
gourl-spelling-notifications
Plugin allows site visitors to send reports to the webmaster/owner about any spelling or grammatical errors. Spelling checker on your website.
Perfect Tense – Spelling and Grammar Checker
perfect-tense
Perfect Tense is an AI-powered, spelling and grammar corrector. Perfect Tense will automatically detect and fix mistakes, proofread entire blog posts, …
FLiP – Portuguese Proofing Tools
flip
IMPORTANT: The free version of the plugin only checks the spelling of the texts in the pre 1990 Spelling Reform and doesn’t present any suggestions fo …
Qalam Arabic AI Writing Assistant Plugin | Qalam
qalam
Qalam plugin for WordPress adds AI based grammar, spell check, and Tashkeel "Diacritization" capabilities to your website content in Arabic Language.
Gwirydd Sillafu Cymraeg Developer Profile
1 plugin · 10 total installs
How We Detect Gwirydd Sillafu Cymraeg
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/gwirydd/gwirydd.js/wp-content/plugins/gwirydd/plugin.jsgwirydd/plugin.js?v=HTML / DOM Fingerprints
Rhyngwyneb HTML i’r API Cysill a ddarperir gan Brifysgol Bangor.Manylion, a sut i gael allwedd API, yma: https://api.techiaith.org/cy/Datblygwyd gan Iwan Standley ar gyfer cynllun cyhoeddi cymunedol Bro360.Hawlfraint: Golwg Cyf <gwefan@golwg.com> https://golwg.cymru+1 moreid="gwirydd_api"name="gwirydd_api"id="gwirydd-geiriadur"window.gwirydd