
hRecipe Security & Risk Analysis
wordpress.org/plugins/hrecipeUse hRecipe for creating Google Rich Snippets, for leveraging SEO results, and for attractively displaying your recipes.
Is hRecipe Safe to Use in 2026?
Generally Safe
Score 85/100hRecipe has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "hrecipe" plugin v0.6.1 presents a mixed security profile. On one hand, the static analysis reveals an extremely small attack surface with no apparent AJAX handlers, REST API routes, shortcodes, or cron events exposed. Furthermore, there are no detected dangerous functions, file operations, external HTTP requests, or taint flows, which are all positive indicators. The plugin also demonstrates good practices by exclusively using prepared statements for its SQL queries. However, a significant concern is the alarmingly low percentage (4%) of properly escaped output. This indicates a high risk of Cross-Site Scripting (XSS) vulnerabilities, where malicious scripts could be injected and executed within the WordPress site. The absence of capability checks and nonce checks on its (zero) entry points, while seemingly benign due to the lack of entry points, leaves a potential gap if any entry points were to be introduced or discovered later without these security measures.
Key Concerns
- Low output escaping percentage
- No capability checks
- No nonce checks
hRecipe Security Vulnerabilities
hRecipe Release Timeline
hRecipe Code Analysis
Bundled Libraries
Output Escaping
hRecipe Attack Surface
WordPress Hooks 9
Maintenance & Trust
hRecipe Maintenance & Trust
Maintenance Signals
Community Trust
hRecipe Alternatives
SEO, Nutrition and Print for Recipes by Edamam
seo-nutrition-and-print-for-recipes-by-edamam
The recipe plugin does all formating for you and makes recipes Google friendly with Schema.org. It also adds recipe's nutrition!
hRecipe Support for Editor
hrecipe-plugin-for-wordpress
This is a plugin to allow the easy entry of microformat content for recipes (i.e. the hRecipe microformat) in WordPress pages and posts.
RecipeSEO
recipeseo
Recipe SEO made simple. Formats your recipes with the appropriate microformats, so they are more likely to appear in Google's Recipe View.
WP Recipe Maker
wp-recipe-maker
The easy and user-friendly recipe plugin for everyone. Automatic JSON-LD metadata for food AND how-to recipes will improve your SEO!
Recipe Card Blocks Lite
recipe-card-blocks-by-wpzoom
Recipe Card Blocks with Schema Markup — create SEO-optimized recipes with Gutenberg, Elementor & AMP support
hRecipe Developer Profile
3 plugins · 90 total installs
How We Detect hRecipe
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/hrecipe/css/hrecipe.css/wp-content/plugins/hrecipe/css/hrecipe-editor.css/wp-content/plugins/hrecipe/css/hrecipe-options.css/wp-content/plugins/hrecipe/js/hrecipe_format.js/wp-content/plugins/hrecipe/js/hrecipe_launch.js/wp-content/plugins/hrecipe/js/hrecipescript.jshttp://www.recip.ly/static/js/jquery-reciply.jsHTML / DOM Fingerprints
hrecipehrecipe-editorhrecipe-optionshrecipe-bodyhrecipe-ingredientshrecipe-instructionshrecipe-preamblehrecipe-nutrition<!-- Testing...!!!! -->data-hrecipe-jsonhRecipehRecipe_JSON_data[hrecipe][/hrecipe][hrecipe-ingredients][/hrecipe-ingredients]