
Heat Map Graph Security & Risk Analysis
wordpress.org/plugins/heat-map-graphCreate and display heat maps from custom SQL queries. Define row, column, and value fields, select color ranges, and render via shortcode.
Is Heat Map Graph Safe to Use in 2026?
Generally Safe
Score 100/100Heat Map Graph has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "heat-map-graph" v1.0.0 plugin exhibits a generally good security posture, with strong adherence to secure coding practices. The absence of dangerous functions, 100% use of prepared statements for SQL queries, and complete output escaping are commendable. Furthermore, the plugin demonstrates a low attack surface with no AJAX handlers or REST API routes directly exposed without proper checks. The presence of nonce and capability checks further strengthens its security. However, the taint analysis reveals two flows with unsanitized paths, which, while not classified as critical or high severity in the provided data, represent a potential area of concern that warrants further investigation. The plugin's complete lack of recorded vulnerabilities in its history is a significant positive indicator, suggesting a well-developed and maintained codebase. Overall, while the plugin has a strong foundation, the identified unsanitized paths are the primary weakness that could be exploited if not addressed. The absence of past vulnerabilities is encouraging, but the taint analysis highlights a need for vigilance.
Key Concerns
- Flows with unsanitized paths found
Heat Map Graph Security Vulnerabilities
Heat Map Graph Release Timeline
Heat Map Graph Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Heat Map Graph Attack Surface
Shortcodes 1
WordPress Hooks 3
Maintenance & Trust
Heat Map Graph Maintenance & Trust
Maintenance Signals
Community Trust
Heat Map Graph Alternatives
Aurora Heatmap
aurora-heatmap
Beautiful like an aurora! A simple WordPress heatmap that can be completed with just a plugin.
Mouseflow for WordPress
mouseflow-for-wordpress
Mouseflow gives you free and easy-to-use conversion and user experience analytics for your website. Analyze conversion funnels, heatmaps and even sess …
UserHeat Plugin
userheat
Free heatmaps plugin for web analytics, on both PC and smartphone.
Lucky Orange
lucky-orange
Less time crunching numbers, more time growing your business.
QA Assistants – Driven by data
qa-heatmap-analytics
Let your data speak — assistants with different perspectives help you understand your site, alongside heatmaps and replays.
Heat Map Graph Developer Profile
3 plugins · 30 total installs
How We Detect Heat Map Graph
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/heat-map-graph/assets/css/heatmap.cssheat-map-graph/assets/css/heatmap.css?ver=1.0.0HTML / DOM Fingerprints
exaig-color-fielddata-default-colorjQuery