[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$ftyQmkiAyZj8swQl_UB9QXT0e7kHAzz-9ddPMxbOUhI8":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":11,"num_ratings":11,"last_updated":13,"tested_up_to":14,"requires_at_least":15,"requires_php":16,"tags":17,"homepage":20,"download_link":21,"security_score":22,"vuln_count":11,"unpatched_count":11,"last_vuln_date":23,"fetched_at":24,"vulnerabilities":25,"developer":26,"crawl_stats":23,"alternatives":34,"analysis":129,"fingerprints":189},"hivo-library","HIVO Connector","0.0.4","hivo","https:\u002F\u002Fprofiles.wordpress.org\u002Fhivo\u002F","\u003Cp>This plugin allows users of HIVO to add Assets from their HIVO Library to the WordPress Media Library.\u003C\u002Fp>\n","Login to your HIVO Library and add Assets directly to your Wordpress Media tab.",0,1252,"","6.6.5","4.4.0","4.3.0",[18,19,7],"dam","digital-asset-management","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fhivo-connector\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fhivo-library.0.0.4.zip",100,null,"2026-03-15T10:48:56.248Z",[],{"slug":7,"display_name":27,"profile_url":8,"plugin_count":28,"total_installs":29,"avg_security_score":30,"avg_patch_time_days":31,"trust_score":32,"computed_at":33},"congchivo99",2,10,93,30,89,"2026-04-05T01:55:02.039Z",[35,56,73,89,107],{"slug":36,"name":37,"version":38,"author":37,"author_profile":39,"description":40,"short_description":41,"active_installs":22,"downloaded":42,"rating":11,"num_ratings":11,"last_updated":43,"tested_up_to":44,"requires_at_least":45,"requires_php":13,"tags":46,"homepage":49,"download_link":50,"security_score":51,"vuln_count":52,"unpatched_count":53,"last_vuln_date":54,"fetched_at":55},"canto","Canto","3.1.1","https:\u002F\u002Fprofiles.wordpress.org\u002Fflightbycanto\u002F","\u003Cp>Simplify collaboration: Publish media from Canto to WordPress. Browse\u002Fsearch your library directly. Inserted images save to WordPress.\u003C\u002Fp>\n","Find & publish creative assets to WordPress easily, no email or folder search needed, with Canto's digital asset management.",14826,"2025-12-23T05:35:00.000Z","6.8.5","5.0",[36,18,19,47,48],"file-storage","photo-library","https:\u002F\u002Fwww.canto.com\u002Fintegrations\u002Fwordpress\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcanto.3.1.1.zip",46,8,1,"2026-03-20 15:13:52","2026-03-15T15:16:48.613Z",{"slug":57,"name":58,"version":59,"author":60,"author_profile":61,"description":62,"short_description":63,"active_installs":64,"downloaded":65,"rating":11,"num_ratings":11,"last_updated":66,"tested_up_to":44,"requires_at_least":67,"requires_php":68,"tags":69,"homepage":13,"download_link":72,"security_score":22,"vuln_count":11,"unpatched_count":11,"last_vuln_date":23,"fetched_at":55},"pixx-io","pixx.io","2.1.1","pixx.io GmbH","https:\u002F\u002Fprofiles.wordpress.org\u002Fpixxio\u002F","\u003Cp>Integrate pixx.io DAM Digital Asset Management into WordPress. Use files from your pixx.io media pool with WordPress easily and without any detour.\u003C\u002Fp>\n\u003Ch3>Usage\u003C\u002Fh3>\n\u003Cp>You can easily import image files into your WordPress library with our plugin.\u003C\u002Fp>\n\u003Cp>If you use Gutenberg or the Classic Editor, you can import the images directly from pixx.io into your media library and use them from there.\u003C\u002Fp>\n\u003Cp>Otherwise you can just import the images in the media overview.\u003C\u002Fp>\n\u003Cp>When importing into your WordPress library you can choose the file format. Also, there is a preview to choose from where your image will be imported in JPEG format with a maximum width of 1000px.\u003C\u002Fp>\n","Integrate pixx.io DAM Digital Asset Management into WordPress. Use files from your pixx.io media pool with WordPress easily and without any detour.",90,2261,"2025-11-12T09:48:00.000Z","6.0","7.4",[18,19,70,71],"pixx","pixxio","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fpixx-io.2.1.1.zip",{"slug":74,"name":75,"version":76,"author":74,"author_profile":77,"description":78,"short_description":79,"active_installs":29,"downloaded":80,"rating":11,"num_ratings":11,"last_updated":81,"tested_up_to":82,"requires_at_least":67,"requires_php":83,"tags":84,"homepage":13,"download_link":88,"security_score":22,"vuln_count":11,"unpatched_count":11,"last_vuln_date":23,"fetched_at":55},"openasset","OpenAsset","5.0.0","https:\u002F\u002Fprofiles.wordpress.org\u002Fopenasset\u002F","\u003Cp>\u003Cstrong>It is possible to use this plugin to just sync images without integrating data, however, if you are looking to sync Project or Employee data to your website, it requires writing code for frontend integration.  It is therefore advised that you do not install directly on your live website.  Install onto a development environment first.  Ensure your integration is fully tested before you deploy live.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Anyone can download this plugin but in order to install and configure, it requires you to be an OpenAsset customer and have a specific OpenAsset license. If you are interested in the obtaining the license please reach out to your OpenAsset Customer Success Manager or \u003Ca href=\"https:\u002F\u002Fpages.openasset.com\u002Fintegrations-contact-us.html\" rel=\"nofollow ugc\">submit this form\u003C\u002Fa>\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>OpenAsset is a leading provider of Digital Asset Management solutions designed to meet the unique needs of the Architecture, Engineering, and Construction (AEC) industries. Our vision is to supercharge productivity of AEC marketing and business pursuit teams so they can win more business.\u003C\u002Fp>\n\u003Cp>OpenAsset’s Website Connector for WordPress enables AEC companies to sync project and employee profiles with relevant details, experience, and marketing-ready images directly from OpenAsset to their public-facing website.  This eliminates data redundancy, ensuring that high-quality assets are maintained centrally, streamlining workflows and boosting efficiency.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Effortless Project Showcase:\u003C\u002Fstrong> Showcase your AEC projects seamlessly on your website with a few clicks. The connector enables display of approved and consistent project details, enhancing your online presence.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Employee Profiles that Stand Out:\u003C\u002Fstrong> Highlight your team’s expertise by effortlessly publishing employee profiles directly from the DAM. Keep your team information up-to-date and impress your clients with the talent behind your projects.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Marketing-Ready Images:\u003C\u002Fstrong> Present your projects with stunning visuals. The connector enables you to select and publish marketing-ready images directly from your DAM, ensuring consistency and professionalism across your web presence.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Data Consistency and Centralization:\u003C\u002Fstrong> Say goodbye to inconsistency. The connector synchronizes with your OpenAsset instance, ensuring that the information on your website is up-to-date and reflective of your latest projects and team members.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Presentation and web design in your control:\u003C\u002Fstrong>  The connector offers a simple UI template that you are free to modify or your web developer is able to integrate the data into your fully custom website UI.\u003C\u002Fp>\n\u003Ch3>Links\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.openasset.com\" rel=\"nofollow ugc\">openasset.com\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fsuccess.openasset.com\u002Fen\u002Farticles\u002F8970283-using-openasset-s-website-connector-for-wordpress\" rel=\"nofollow ugc\">Using OpenAsset’s Website Connector for WordPress\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fsuccess.openasset.com\u002Fen\u002Farticles\u002F8971102-using-the-templates-bundled-with-openasset-s-website-connector-for-wordpress\" rel=\"nofollow ugc\">Using the templates bundled with OpenAsset’s Website Connector for WordPress\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fsuccess.openasset.com\u002Fen\u002Farticles\u002F8971297-creating-a-fully-custom-ui-with-openasset-s-website-connector-for-wordpress\" rel=\"nofollow ugc\">Creating a fully custom UI with OpenAsset’s Website Connector for WordPress\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Support\u003C\u002Fh3>\n\u003Cp>\u003Cstrong>Support OpenAsset’s Website Connector for WordPress is provided directly from OpenAsset’s support team.\u003C\u002Fstrong>\u003Cbr \u002F>\nIf you have questions pertaining to downloading, installing, configuring and syncing the plugin, please reach out to: \u003Ca href=\"mailto:support@openasset.com\" rel=\"nofollow ugc\">support@openasset.com\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Note:\u003C\u002Fstrong> We do not offer support for modifying or customizing your web pages including issues relating to the presentation of your information or images. Please contact your web developer for this.\u003C\u002Fp>\n\u003Ch3>3rd Party Services\u003C\u002Fh3>\n\u003Cp>OpenAsset’s Website Connector for WordPress makes use of OpenAsset’s API to retrieve and display data from your OpenAsset instance. By using this plugin you agree to OpenAsset’s terms of service and privacy policy.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fopenasset.com\u002Fterms-ltd\" rel=\"nofollow ugc\">OpenAsset Terms & Conditions\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.iubenda.com\u002Fprivacy-policy\u002F69272435\" rel=\"nofollow ugc\">OpenAsset Privacy Policy\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Using this plugin means that you do not need to interact with OpenAsset’s API in code but for reference it is \u003Ca href=\"https:\u002F\u002Fdevelopers.openasset.com\" rel=\"nofollow ugc\">documented here\u003C\u002Fa>\u003C\u002Fp>\n","Sync your AEC Project Portfolio, Employees and Images from OpenAsset to your Wordpress Website.",5977,"2026-01-12T17:16:00.000Z","6.9.4","8.0",[18,19,85,86,87],"images","projects","team","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fopenasset.5.0.0.zip",{"slug":90,"name":91,"version":92,"author":93,"author_profile":94,"description":95,"short_description":96,"active_installs":11,"downloaded":97,"rating":11,"num_ratings":11,"last_updated":98,"tested_up_to":99,"requires_at_least":67,"requires_php":100,"tags":101,"homepage":105,"download_link":106,"security_score":22,"vuln_count":11,"unpatched_count":11,"last_vuln_date":23,"fetched_at":55},"vy-bildbank","Vy Bildbank","1.1.1","vybildbank","https:\u002F\u002Fprofiles.wordpress.org\u002Ftingmediabank\u002F","\u003Cp>Access your media assets from your account at the cloud service Vy Bildbank.\u003C\u002Fp>\n","Access your media assets from your account at the cloud service Vy Bildbank.",756,"2026-02-05T12:23:00.000Z","6.7.5","7.0",[18,19,102,103,104],"image-bank","media","media-library","https:\u002F\u002Fbildbank.se\u002Fsv\u002Fsupport\u002Fwordpress","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fvy-bildbank.zip",{"slug":108,"name":109,"version":110,"author":111,"author_profile":112,"description":113,"short_description":114,"active_installs":115,"downloaded":116,"rating":22,"num_ratings":117,"last_updated":118,"tested_up_to":119,"requires_at_least":120,"requires_php":13,"tags":121,"homepage":126,"download_link":127,"security_score":128,"vuln_count":11,"unpatched_count":11,"last_vuln_date":23,"fetched_at":55},"podamibe-custom-user-gravatar","Podamibe Custom User Gravatar","1.0.8","Podamibe Nepal","https:\u002F\u002Fprofiles.wordpress.org\u002Fpodamibe\u002F","\u003Cp>This is a plugin that allows users to upload their own gravatar in the media gallery and displays that image as gravatar instead of grabbing avatar from gravatar.com based on their registered email.\u003C\u002Fp>\n\u003Cp>You can also use the default gravatar by disabling custom gravatar.\u003C\u002Fp>\n","Replace Gravatar with custom picture in your gallery",3000,78301,5,"2019-05-22T03:28:00.000Z","5.0.25","3.7.0",[122,123,124,125],"change-gravatar","custom-gravatar","gravatar","podamibe","http:\u002F\u002Fpodamibenepal.com\u002Fwordpress-plugins\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fpodamibe-custom-user-gravatar.1.0.8.zip",85,{"attackSurface":130,"codeSignals":172,"taintFlows":181,"riskAssessment":182,"analyzedAt":188},{"hooks":131,"ajaxHandlers":158,"restRoutes":159,"shortcodes":170,"cronEvents":171,"entryPointCount":28,"unprotectedCount":11},[132,138,142,147,151,153,154,156],{"type":133,"name":134,"callback":135,"file":136,"line":137},"action","enqueue_block_editor_assets","enqueue_image_block_extension","includes\\image-block-extension.php",19,{"type":133,"name":139,"callback":140,"file":136,"line":141},"init","register_hivo_assets_block",20,{"type":133,"name":143,"callback":144,"file":145,"line":146},"admin_menu","hivo_add_menu","includes\\plugin-page.php",18,{"type":133,"name":148,"callback":149,"file":150,"line":146},"rest_api_init","init_api","includes\\upload-api.php",{"type":133,"name":134,"callback":135,"file":152,"line":137},"trunk\\includes\\image-block-extension.php",{"type":133,"name":139,"callback":140,"file":152,"line":141},{"type":133,"name":143,"callback":144,"file":155,"line":146},"trunk\\includes\\plugin-page.php",{"type":133,"name":148,"callback":149,"file":157,"line":146},"trunk\\includes\\upload-api.php",[],[160,168],{"namespace":161,"route":162,"methods":163,"callback":165,"permissionCallback":166,"file":150,"line":167},"hivo-connector\u002Fv1","\u002Fadd-assets",[164],"POST","upload_hivo_asset","closure",26,{"namespace":161,"route":162,"methods":169,"callback":165,"permissionCallback":166,"file":157,"line":167},[164],[],[],{"dangerousFunctions":173,"sqlUsage":174,"outputEscaping":176,"fileOperations":178,"externalRequests":11,"nonceChecks":11,"capabilityChecks":179,"bundledLibraries":180},[],{"prepared":11,"raw":11,"locations":175},[],{"escaped":141,"rawEcho":11,"locations":177},[],6,4,[],[],{"summary":183,"deductions":184},"The hivo-library plugin v0.0.4 exhibits a strong security posture based on the provided static analysis. The absence of dangerous functions, use of prepared statements for all SQL queries, and proper output escaping demonstrate a commitment to secure coding practices. Furthermore, the plugin has no recorded vulnerability history, which is a positive indicator. The attack surface is relatively small, consisting of only two REST API routes, and crucially, these routes appear to have permission callbacks, indicating that access is likely being controlled.\n\nHowever, there are a few areas that warrant attention. The presence of 4 capability checks and 6 file operations, while not inherently problematic, represent potential points of failure if not implemented meticulously. The fact that there are no nonce checks on any entry points, including the REST API, is a notable concern. While the REST API routes have permission callbacks, a lack of nonce checks can still expose endpoints to replay attacks or other forms of manipulation if not properly protected against. The taint analysis showing zero flows is excellent, suggesting that no sensitive data is being improperly handled within the analyzed code.\n\nIn conclusion, the plugin demonstrates good practices in critical areas like SQL and output handling. The lack of historical vulnerabilities is a significant strength. The primary areas for improvement lie in implementing nonce checks to further harden the REST API endpoints and ensuring the file operations and capability checks are robust. Despite these minor areas for attention, the plugin's current security standing appears to be good.",[185],{"reason":186,"points":187},"No nonce checks on entry points",7,"2026-03-17T06:03:48.040Z",{"wat":190,"direct":199},{"assetPaths":191,"generatorPatterns":194,"scriptPaths":195,"versionParams":196},[192,193],"\u002Fwp-content\u002Fplugins\u002Fhivo-connector\u002Fbundle\u002Findex.js","\u002Fwp-content\u002Fplugins\u002Fhivo-connector\u002Fbundle\u002Findex.css",[],[],[197,198],"hivo-connector\u002Fbundle\u002Findex.js?ver=","hivo-connector\u002Fbundle\u002Findex.css?ver=",{"cssClasses":200,"htmlComments":202,"htmlAttributes":203,"restEndpoints":205,"jsGlobals":206,"shortcodeOutput":208},[201],"hivo-assets-block",[],[204],"data-hivo-image-block-extension",[],[207],"hivoImageBlockExtension",[209],"\u003C!-- wp:hivo\u002Fassets"]