
in6ool Security & Risk Analysis
wordpress.org/plugins/in6ool管理画面ダッシュボードや投稿での各ウィジェット、アーカイブページの表示を制御します。
Is in6ool Safe to Use in 2026?
Generally Safe
Score 85/100in6ool has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
Based on the static analysis and vulnerability history provided, the in6ool v1.0.6 plugin appears to have a strong security posture. The absence of any identified attack surface points, dangerous functions, raw SQL queries, file operations, or external HTTP requests is a significant positive indicator. Furthermore, the lack of any recorded vulnerabilities (CVEs) suggests a history of secure development or effective patching. The plugin also demonstrates good practices in utilizing prepared statements for its SQL queries. However, the static analysis does reveal a significant concern regarding output escaping, with only 25% of outputs being properly escaped. This could lead to Cross-Site Scripting (XSS) vulnerabilities if the unescaped data is user-supplied or originates from untrusted sources. The absence of nonce checks and capability checks is also a potential weakness, though the lack of an attack surface mitigates immediate risk. The taint analysis showing zero flows is excellent, indicating no obvious paths for malicious data to reach vulnerable functions. Overall, while the plugin benefits from a minimal attack surface and no known historical vulnerabilities, the poor output escaping practices represent a notable risk that should be addressed.
Key Concerns
- Low output escaping
in6ool Security Vulnerabilities
in6ool Code Analysis
Output Escaping
in6ool Attack Surface
WordPress Hooks 14
Maintenance & Trust
in6ool Maintenance & Trust
Maintenance Signals
Community Trust
in6ool Alternatives
Featured image to All-Posts
add-featuredimage-to-all-posts
Add thumbnails of featured image to a column of admin All Posts page. No complecated settings.
Affilicode-Tag-Setting
affilicode-tag-setting
固定ページと投稿ページにアフィリコード・システムで発行したタグの設定が可能になります。
OS-WPカスタマイズプラグイン
os-wpc
OS-WPカスタマイズプラグインは、次のような機能があります。
in6ool Developer Profile
2 plugins · 70 total installs
How We Detect in6ool
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
switcherswitch-1switch-0id="in6ool"class="switcher"class="switch-1"class="switch-0"