
HT Service – Roofing Service WordPress Plugin Security & Risk Analysis
wordpress.org/plugins/ht-serviceHT Service is a Roofing Service WordPress Plugin.
Is HT Service – Roofing Service WordPress Plugin Safe to Use in 2026?
Generally Safe
Score 100/100HT Service – Roofing Service WordPress Plugin has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "ht-service" v1.1.3 plugin exhibits a generally positive security posture based on the provided static analysis. The absence of dangerous functions, file operations, and external HTTP requests, coupled with 100% of SQL queries utilizing prepared statements, are strong indicators of secure coding practices. The plugin also demonstrates a good understanding of WordPress security by including capability checks. However, the analysis highlights a notable concern: a significant portion of output (31%) is not properly escaped, presenting a potential cross-site scripting (XSS) vulnerability risk if user-supplied data is outputted without sanitization.
The plugin has a very small attack surface with only one entry point, a shortcode, and no unprotected AJAX handlers or REST API routes. Taint analysis shows no identified flows, suggesting no immediately apparent exploitable vulnerabilities in that area. The vulnerability history is clean, with no recorded CVEs, indicating a history of secure development or a lack of past scrutiny. Despite the lack of explicit nonce checks for the identified shortcode, the absence of other critical vulnerabilities and the clean history suggest that the risk, while present, may be mitigated by other factors not visible in this static analysis or by the nature of the shortcode's functionality. The overall security is good, but the unescaped output remains a key area for improvement.
Key Concerns
- Significant portion of output not properly escaped
- No nonce checks on the identified shortcode
HT Service – Roofing Service WordPress Plugin Security Vulnerabilities
HT Service – Roofing Service WordPress Plugin Release Timeline
HT Service – Roofing Service WordPress Plugin Code Analysis
Output Escaping
HT Service – Roofing Service WordPress Plugin Attack Surface
Shortcodes 1
WordPress Hooks 21
Maintenance & Trust
HT Service – Roofing Service WordPress Plugin Maintenance & Trust
Maintenance Signals
Community Trust
HT Service – Roofing Service WordPress Plugin Alternatives
Service Box – Icon Box Showcase
service-box
Service Box plugin is display your service showcase on any WordPress post & page with unlimited color scheme using drag & drop Api
Service Showcase
service-showcase
Service Showcase plugin is display the service box on wordpress website pages and posts. It come with 6 different layouts and create unlimited service …
Service Box Slider
service-box-with-slider
Service Box with slider is a powerful & robust but easy to represent your services with grid and slider. It comes with 50 unique layouts and creat …
Service Box
service-boxs
The Service Box WordPress plugin allows you to easily create visually stunning content boxes with icons and engaging hover effects, making it perfect …
WP Insurance – WordPress Insurance Service Plugin
wp-insurance
WP Insurance is a Service WordPress plugin.
HT Service – Roofing Service WordPress Plugin Developer Profile
13 plugins · 170K total installs
How We Detect HT Service – Roofing Service WordPress Plugin
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/ht-service/admin/css/htservice-admin-style.css/wp-content/plugins/ht-service/admin/js/htservice-admin-script.js/wp-content/plugins/ht-service/assets/css/htservice-public.css/wp-content/plugins/ht-service/assets/js/htservice-public.js/wp-content/plugins/ht-service/includes/single-htservice.php/wp-content/plugins/ht-service/includes/archive-htservice.php/wp-content/plugins/ht-service/admin/js/htservice-admin-script.js/wp-content/plugins/ht-service/assets/js/htservice-public.jshtservice/style.css?ver=htservice/script.js?ver=HTML / DOM Fingerprints
htservice-pagination<!-- Single template by post type --><!-- Archive template by post type --><!-- This notice for Cmb2 is not installed or activated or both. --><!-- Display tabs related to Serives in admin when user -->+9 moredata-post-type="htservice"data-taxonomy="htservice_category"htservice_pagination<div class="htservice-pagination">