
Igreen Alexa Site Rank Security & Risk Analysis
wordpress.org/plugins/igreen-alexa-site-rankGet your updated ALEXA RANK in widgets or integrate in theme using plugin API/ shortcode.You can display your page rank anywhere in your blog
Is Igreen Alexa Site Rank Safe to Use in 2026?
Generally Safe
Score 85/100Igreen Alexa Site Rank has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The igreen-alexa-site-rank v4.0.0 plugin exhibits a mixed security posture. On the positive side, it demonstrates excellent practices in handling database queries, with 100% of SQL queries using prepared statements, and it does not appear to make any external HTTP requests or bundle external libraries, which reduces the attack surface from third-party code. The lack of recorded CVEs and common vulnerability types in its history suggests a reasonably secure past, implying developers have addressed issues promptly or that the plugin hasn't been a significant target.
However, several concerns arise from the static analysis. The presence of the `create_function` function is a significant red flag, as it is deprecated and can lead to security vulnerabilities if used with user-supplied input due to its eval-like behavior. Furthermore, the plugin shows a very low rate of output escaping (17%), which is a critical weakness. This means user-controlled data displayed on the frontend is highly susceptible to Cross-Site Scripting (XSS) attacks. The taint analysis revealing unsanitized paths in all analyzed flows, even if not rated as critical or high severity in this specific instance, highlights a systemic issue in how data is handled, making it easier for an attacker to exploit the unescaped output.
In conclusion, while the plugin has strengths in its database interaction and a clean vulnerability history, the identified issues with `create_function` and particularly the widespread lack of output escaping pose significant risks, especially for XSS vulnerabilities. The taint analysis, though not yielding critical findings here, reinforces the concern about data sanitization.
Key Concerns
- Unsanitized path taint flows
- Low output escaping rate
- Dangerous function create_function used
- No nonce checks
- No capability checks
Igreen Alexa Site Rank Security Vulnerabilities
Igreen Alexa Site Rank Code Analysis
Dangerous Functions Found
Output Escaping
Data Flow Analysis
Igreen Alexa Site Rank Attack Surface
Shortcodes 1
WordPress Hooks 2
Maintenance & Trust
Igreen Alexa Site Rank Maintenance & Trust
Maintenance Signals
Community Trust
Igreen Alexa Site Rank Alternatives
Web Rank Get
web-rank-get
This plugin will collect Google Page Rank and Alexa Rank and display it in the footer of your blog.
Yoast SEO – Advanced SEO with real-time guidance and built-in AI
wordpress-seo
Improve your SEO with real-time feedback, schema, and clear guidance. Upgrade for AI tools, Google Docs integration, and 24/7 support, no hidden fees.
LiteSpeed Cache
litespeed-cache
All-in-one unbeatable acceleration & PageSpeed improvement: caching, image/CSS/JS optimization...
All in One SEO – Powerful SEO Plugin to Boost SEO Rankings & Increase Traffic
all-in-one-seo-pack
AIOSEO is the most powerful WordPress SEO plugin. Improve SEO rankings and traffic with comprehensive SEO tools and smart AI SEO optimizations!
Rank Math SEO – AI SEO Tools to Dominate SEO Rankings
seo-by-rank-math
Rank Math SEO is the best WordPress SEO plugin with the features of many SEO and AI SEO tools in a single package to help multiply your SEO traffic.
Igreen Alexa Site Rank Developer Profile
14 plugins · 40 total installs
How We Detect Igreen Alexa Site Rank
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
Alexa Rank of