[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fEY_iu-o92Mib6RxcP40eVsev18ArCrYyp9fvDMdhk3I":3},{"slug":4,"name":5,"version":6,"author":5,"author_profile":7,"description":8,"short_description":9,"active_installs":10,"downloaded":11,"rating":12,"num_ratings":13,"last_updated":14,"tested_up_to":15,"requires_at_least":16,"requires_php":17,"tags":18,"homepage":22,"download_link":23,"security_score":24,"vuln_count":25,"unpatched_count":26,"last_vuln_date":27,"fetched_at":28,"vulnerabilities":29,"developer":44,"crawl_stats":35,"alternatives":51,"analysis":143,"fingerprints":284},"indieweb","IndieWeb","5.0.0","https:\u002F\u002Fprofiles.wordpress.org\u002Findieweb\u002F","\u003Cp>The IndieWeb Plugin for WordPress helps you establish your IndieWeb identity by extending the user profile to provide \u003Ca href=\"https:\u002F\u002Findieweb.org\u002Frel-me\" rel=\"nofollow ugc\">rel-me\u003C\u002Fa> and\u003Cbr \u002F>\n\u003Ca href=\"https:\u002F\u002Findieweb.org\u002Fh-card\" rel=\"nofollow ugc\">h-card\u003C\u002Fa> fields and optionally adding widgets to display this. It also includes a bundled installer for a core set of IndieWeb-related plugins. It’s\u003Cbr \u002F>\nmeant to be a one-stop shop to help WordPress users quickly and easily join the growing \u003Ca href=\"https:\u002F\u002Findieweb.org\" rel=\"nofollow ugc\">IndieWeb\u003C\u002Fa> movement (see below).\u003C\u002Fp>\n\u003Cp>Some of these plugins allow you to:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>send and receive comments, likes, reposts, and other kinds of post responses using your own site\u003C\u002Fli>\n\u003Cli>allow comments on others’ sites to show up as comments on your posts\u003C\u002Fli>\n\u003Cli>help make IndieWeb comments and mentions look better on your site\u003C\u002Fli>\n\u003Cli>allow support for webmentions\u003C\u002Fli>\n\u003Cli>add location support to your posts\u003C\u002Fli>\n\u003Cli>more easily syndicate your content to other sites to take advantage of network effects and other communities while still owning all of your original content\u003C\u002Fli>\n\u003Cli>link to syndicated versions of a post so that comments on your content in silos like Facebook, Twitter, Instagram can come back to your original post as comments there\u003C\u002Fli>\n\u003Cli>set up a MicroPub Server to use other posting interfaces. (You could potentially use services like Instagram, Foursquare, and others to post to your WordPress site.)\u003C\u002Fli>\n\u003Cli>Use your site to log into other services with \u003Ca href=\"https:\u002F\u002Findieweb.org\u002Findieauth\" rel=\"nofollow ugc\">IndieAuth\u003C\u002Fa>.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>The IndieWeb\u003C\u002Fh3>\n\u003Cp>\u003Cstrong>The \u003Ca href=\"https:\u002F\u002Findieweb.org\u002F\" rel=\"nofollow ugc\">IndieWeb\u003C\u002Fa> is a people-focused alternative to the ‘corporate web’ that allows you to be the hub of your own web presence.\u003C\u002Fstrong> It’s been written about in \u003Ca href=\"http:\u002F\u002Fwww.wired.com\u002F2013\u002F08\u002Findie-web\u002F\" rel=\"nofollow ugc\">Wired\u003C\u002Fa>, \u003Ca href=\"http:\u002F\u002Fwww.theatlantic.com\u002Ftechnology\u002Farchive\u002F2014\u002F08\u002Fthe-new-editors-of-the-internet\u002F378983\u002F\" rel=\"nofollow ugc\">The Atlantic\u003C\u002Fa>, \u003Ca href=\"http:\u002F\u002Fwww.slate.com\u002Fblogs\u002Ffuture_tense\u002F2014\u002F04\u002F25\u002Findiewebcamps_create_tools_for_a_new_internet.html\" rel=\"nofollow ugc\">Slate\u003C\u002Fa>, and \u003Ca href=\"https:\u002F\u002Fgigaom.com\u002F2014\u002F09\u002F03\u002Fdont-like-facebook-owning-and-controlling-your-content-use-tools-that-support-the-open-web\u002F\" rel=\"nofollow ugc\">Gigaom\u003C\u002Fa> amongst others.\u003C\u002Fp>\n\u003Ch3>The IndieWeb, like WordPress, feels that your content is yours\u003C\u002Fh3>\n\u003Cp>When you post something on the web, it should belong to you, not a corporation. Too many companies have gone out of business and lost all of their users’ data. By joining the IndieWeb, your content stays yours and in your control.\u003C\u002Fp>\n\u003Ch3>The IndieWeb is here to help you be better connected\u003C\u002Fh3>\n\u003Cp>Your articles and status messages can be syndicated to all services, not just one, allowing you to engage with everyone in your social network\u002Fsocial graph. Even replies and likes on other services can come back to your site so they’re all in one place.\u003C\u002Fp>\n\u003Cp>Interested in connecting your WordPress site to the \u003Ca href=\"https:\u002F\u002Findieweb.org\u002F\" rel=\"nofollow ugc\">IndieWeb\u003C\u002Fa>? Let us help you get started.\u003C\u002Fp>\n","IndieWeb for WordPress!",600,30949,100,6,"2025-12-19T21:31:00.000Z","6.9.4","4.7","7.4",[19,4,20,21],"indieauth","posse","webmention","https:\u002F\u002Fgithub.com\u002Findieweb\u002Fwordpress-indieweb","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Findieweb.5.0.0.zip",99,1,0,"2026-01-08 17:50:29","2026-03-15T15:16:48.613Z",[30],{"id":31,"url_slug":32,"title":33,"description":34,"plugin_slug":4,"theme_slug":35,"affected_versions":36,"patched_in_version":6,"severity":37,"cvss_score":38,"cvss_vector":39,"vuln_type":40,"published_date":27,"updated_date":41,"references":42,"days_to_patch":25},"CVE-2025-14893","indieweb-authenticated-author-stored-cross-site-scripting-via-telephone-parameter","IndieWeb \u003C= 4.0.5 - Authenticated (Author+) Stored Cross-Site Scripting via 'Telephone' Parameter","The IndieWeb plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'Telephone' parameter in all versions up to, and including, 4.0.5 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with author level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.",null,"\u003C=4.0.5","medium",6.4,"CVSS:3.1\u002FAV:N\u002FAC:L\u002FPR:L\u002FUI:N\u002FS:C\u002FC:L\u002FI:L\u002FA:N","Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","2026-01-09 06:34:55",[43],"https:\u002F\u002Fwww.wordfence.com\u002Fthreat-intel\u002Fvulnerabilities\u002Fid\u002Fb29f0fea-a2db-4b2e-b7b8-d15b2395e9e6?source=api-prod",{"slug":4,"display_name":5,"profile_url":7,"plugin_count":45,"total_installs":46,"avg_security_score":47,"avg_patch_time_days":48,"trust_score":49,"computed_at":50},5,1420,92,4,94,"2026-04-04T13:06:14.896Z",[52,67,89,105,125],{"slug":53,"name":54,"version":55,"author":5,"author_profile":7,"description":56,"short_description":57,"active_installs":58,"downloaded":59,"rating":26,"num_ratings":26,"last_updated":60,"tested_up_to":61,"requires_at_least":16,"requires_php":62,"tags":63,"homepage":64,"download_link":65,"security_score":66,"vuln_count":26,"unpatched_count":26,"last_vuln_date":35,"fetched_at":28},"indieweb-press-this","IndieWeb Press This","1.3","\u003Cp>This plugin is based on the idea and code of \u003Ca href=\"https:\u002F\u002Fsnarfed.org\u002Findieweb-press-this-bookmarklets-for-wordpress\" rel=\"nofollow ugc\">@snarfed\u003C\u002Fa>:\u003C\u002Fp>\n\u003Cp>It requires the Press This plugin for WordPress with Bookmarklet support as of WordPress 4.9, when Press This was removed from WordPress.\u003C\u002Fp>\n\u003Cp>One big \u003Ca href=\"https:\u002F\u002Findieweb.org\u002F\" rel=\"nofollow ugc\">IndieWeb\u003C\u002Fa> \u003Cem>raison d’être\u003C\u002Fem> is using your own web site to \u003Ca href=\"https:\u002F\u002Findieweb.org\u002Freply\" rel=\"nofollow ugc\">reply\u003C\u002Fa>,\u003Cbr \u002F>\n\u003Ca href=\"https:\u002F\u002Findieweb.org\u002Flike\" rel=\"nofollow ugc\">like\u003C\u002Fa>, \u003Ca href=\"https:\u002F\u002Findieweb.org\u002Frepost\" rel=\"nofollow ugc\">repost\u003C\u002Fa>, \u003Ca href=\"https:\u002F\u002Findieweb.org\u002Ffollow\" rel=\"nofollow ugc\">follow\u003C\u002Fa>,\u003Cbr \u002F>\nand \u003Ca href=\"https:\u002F\u002Findieweb.org\u002Frsvp\" rel=\"nofollow ugc\">RSVP\u003C\u002Fa> to posts and events. You do this by annotating links on your site with simple \u003Ca href=\"http:\u002F\u002Fmicroformats.org\u002Fwiki\u002Fmicroformats2\" rel=\"nofollow ugc\">microformats2\u003C\u002Fa> HTML.\u003C\u002Fp>\n\u003Cp>Having said that, most people don’t want to write HTML to like or reply to something. WordPress’s \u003Ca href=\"https:\u002F\u002Fcodex.wordpress.org\u002FPress_This\" rel=\"nofollow ugc\">Press This bookmarklets\u003C\u002Fa> can already start a new post with a link to the page you’re currently viewing. This code adds IndieWeb microformats2 markup to that link. Combined the \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fpfefferle\u002Fwordpress-webmention\" rel=\"nofollow ugc\">wordpress-webmention\u003C\u002Fa> plugin, you can use this to respond to the current page with just two clicks.\u003C\u002Fp>\n\u003Cp>What’s more, if you’re currently on a Facebook post or Twitter tweet, this adds the \u003Ca href=\"https:\u002F\u002Fwww.brid.gy\u002Fabout#publish\" rel=\"nofollow ugc\">Bridgy Publish\u003C\u002Fa> link that will reply, like, favorite, retweet, or even RSVP \u003Cem>inside\u003C\u002Fem> those social networks.\u003C\u002Fp>\n","IndieWebified Press This bookmarklets.",20,2747,"2023-01-04T21:40:00.000Z","6.1.10","",[4,20,21],"http:\u002F\u002Fgithub.com\u002Findieweb\u002Fwordpress-indieweb-press-this","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Findieweb-press-this.1.3.zip",85,{"slug":21,"name":68,"version":69,"author":70,"author_profile":71,"description":72,"short_description":73,"active_installs":74,"downloaded":75,"rating":12,"num_ratings":76,"last_updated":77,"tested_up_to":15,"requires_at_least":78,"requires_php":79,"tags":80,"homepage":84,"download_link":85,"security_score":86,"vuln_count":87,"unpatched_count":26,"last_vuln_date":88,"fetched_at":28},"Webmention","5.6.2","Matthias Pfefferle","https:\u002F\u002Fprofiles.wordpress.org\u002Fpfefferle\u002F","\u003Cp>When you link to a website you can send it a Webmention to notify it and then that website may display your post as a comment, like, or other response, and presto, you’re having a conversation from one site to another!\u003C\u002Fp>\n\u003Cp>A \u003Ca href=\"https:\u002F\u002Fwww.w3.org\u002FTR\u002Fwebmention\u002F\" rel=\"nofollow ugc\">Webmention\u003C\u002Fa> is a notification that one URL links to another. Sending a Webmention is not limited to blog posts, and can be used for additional kinds of content and responses as well.\u003C\u002Fp>\n\u003Cp>For example, a response can be an RSVP to an event, an indication that someone “likes” another post, a “bookmark” of another post, and many others. Webmention enables these interactions to happen across different websites, enabling a distributed social web.\u003C\u002Fp>\n\u003Cp>The Webmention plugin supports the Webmention protocol, giving you support for sending and receiving Webmentions. It offers a simple built in presentation.\u003C\u002Fp>\n","Enable conversation across the web.",900,59493,8,"2026-01-01T12:43:00.000Z","6.2","7.2",[4,81,82,83,21],"linkback","pingback","trackback","https:\u002F\u002Fgithub.com\u002Fpfefferle\u002Fwordpress-webmention","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwebmention.5.6.2.zip",95,3,"2026-04-01 19:17:16",{"slug":19,"name":90,"version":91,"author":5,"author_profile":7,"description":92,"short_description":93,"active_installs":94,"downloaded":95,"rating":12,"num_ratings":48,"last_updated":96,"tested_up_to":97,"requires_at_least":78,"requires_php":17,"tags":98,"homepage":101,"download_link":102,"security_score":103,"vuln_count":25,"unpatched_count":26,"last_vuln_date":104,"fetched_at":28},"IndieAuth","4.5.5","\u003Cp>The plugin turns WordPress into an IndieAuth endpoint. This can be used to act as an authentication mechanism for WordPress and its REST API, as well as an identity mechanism for other sites. It uses the URL from the profile page to identify the blog user or your author url. We recommend your site be served over https to use this.\u003Cbr \u002F>\n measure then updates must be made.You can also install this plugin to enable web sign-in for your site using your domain.\u003C\u002Fp>\n","IndieAuth is a way to allow users to use their own domain to sign into other websites and services.",400,30207,"2025-10-25T19:49:00.000Z","6.7.5",[19,4,99,100],"login","oauth","https:\u002F\u002Fgithub.com\u002Findieweb\u002Fwordpress-indieauth\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Findieauth.4.5.5.zip",97,"2025-10-23 19:57:03",{"slug":106,"name":107,"version":108,"author":109,"author_profile":110,"description":111,"short_description":112,"active_installs":113,"downloaded":114,"rating":12,"num_ratings":45,"last_updated":115,"tested_up_to":116,"requires_at_least":117,"requires_php":118,"tags":119,"homepage":122,"download_link":123,"security_score":12,"vuln_count":25,"unpatched_count":26,"last_vuln_date":124,"fetched_at":28},"syndication-links","Syndication Links","4.5.3","David Shanske","https:\u002F\u002Fprofiles.wordpress.org\u002Fdshanske\u002F","\u003Cp>It supports adding links to your WordPress posts, pages, and comments, indicating where a syndicated copy is, in the form of a text or icon link. You can do this\u003Cbr \u002F>\nmanually or with supported plugins. Also contains a generic UI for syndicating to other sites through your site or a Micropub Client.\u003C\u002Fp>\n\u003Ch3>Privacy and Data Storage Information\u003C\u002Fh3>\n\u003Cp>This plugin stores syndication links, which can be attached to any post, page, or comment. They can be added to custom post types by filter.\u003C\u002Fp>\n\u003Cp>For webmention initiated comments, this information will be added by parsing the source of the webmention.\u003Cbr \u002F>\nIt is assumed if you send a webmention, you consent to share this information if it is publicly shared on your page. Our recommendation\u003Cbr \u002F>\nis that site owners should take down information on request.\u003C\u002Fp>\n\u003Cp>For comments initiated on the site, there is built-in way to add these links. For posts, they are typically added by retrieving information stored by other plugins for display. It is assumed\u003Cbr \u002F>\nthat by installing this plugin, as its intent is to display these links, that you wish to display them.\u003C\u002Fp>\n\u003Ch3>Settings\u003C\u002Fh3>\n\u003Cp>Settings for the Syndication Links plugin can be found in the main WordPress “Settings” tab in the\u003Cbr \u002F>\nadmin dashboard, or if the \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Findieweb\" rel=\"ugc\">Indieweb plugin\u003C\u002Fa> is installed, under the Indieweb tab. The options provided allow for various ways of presenting the syndication links in posts. Syndication Links by default will add links to the content. You can remove this in your plugin if you wish to call the display function directly.\u003C\u002Fp>\n\u003Cp>The settings include the following options as follows with either a set of buttons, a check box (with a check indicating that the feature is “on”) or an optional text field:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Display Text\u003C\u002Fstrong> –  Offers options to display text only, icons only, icons and text, and no display(hidden icons).\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Size\u003C\u002Fstrong> – Choice of small, medium, or large size icons.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Black Icons\u003C\u002Fstrong> – Checking the box defaults to a “black” social media icon set.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Show on Front Page, Archive Page, and Search Results\u003C\u002Fstrong> – If checked the icons will show on pages other than a single view. If not checked, the icons will be hidden by the links will remain.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Show on Feed\u003C\u002Fstrong> – If checked the icons will show in your RSS feed as well\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Text Before Links\u003C\u002Fstrong> – This is the text that appears before the Display Text\u002FIcons (as indicated above). The default text is “Syndicated to:” but can be modified if desired.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Cstrong>Note\u003C\u002Fstrong>: The particular CSS of your theme may change the display and output of the text and some of the icons.\u003C\u002Fp>\n\u003Ch3>Supported POSSE plugins and implementations\u003C\u002Fh3>\n\u003Cp>The plugin supports automatically pulling data from plugins that syndicate your content so you don’t need to do it manually. For anything not built in, integation is easy with a simple filter for potential use with any other plugin.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fsocial-networks-auto-poster-facebook-twitter-g\u002F\" rel=\"ugc\">Social Networks Autoposter\u003C\u002Fa> – Syndication Links supports Twitter, Facebook, and Tumblr since version 1.0.0\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Ftumblr-crosspostr\" rel=\"ugc\">Tumblr Crosspostr\u003C\u002Fa> – Supports Syndication Links since version 0.8.1\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fwp-crosspost\" rel=\"ugc\">WordPress Crossposter\u003C\u002Fa> – Supports Syndication Links since version 0.3.2\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fdiasposter\u002F\" rel=\"ugc\">Diasposter\u003C\u002Fa> – Supports Syndication Links since version 0.1.8\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fwp-to-twitter\u002F\" rel=\"ugc\">WP-To_Twitter\u003C\u002Fa> – Supported by the plugin since version 4.2.3\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Using the optional Syndication feature(disabled by default) you can syndicate your posts to:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fbrid.gy\" rel=\"nofollow ugc\">Bridgy\u003C\u002Fa> – Bridgy is a service that allows you to post to various sites. Signup is required. It currently supports Github, Mastodon and Flickr. The plugin supports Bridgy Publish via Micropub by default.\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Ffed.brid.gy\" rel=\"nofollow ugc\">Bridgy Fed\u003C\u002Fa> – Bridgy Fed is a service that allows you to interact with federated social networks using webmentions.\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fmicro.blog\" rel=\"nofollow ugc\">Micro.blog\u003C\u002Fa> – Micro.blog is a social network and publishing platform for independent microblogs, created by Manton Reece. It uses a custom feed you can add to Micro.blog to support this.\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fpinboard.in\" rel=\"nofollow ugc\">Pinboard\u003C\u002Fa> – Pinboard is a bookmarking site. The support for this is currently only enabled if you have Post Kinds enabled, due to the difficulty in getting a URL. It will bookmark the URL of any object you are citing.\u003C\u002Fli>\n\u003Cli>Custom Webmention Syndication – Add any site that supports publishing by sending a webmention by configuring it in the settings page\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Will be looking to integrate with other plugins to add more options and invite developers to add support if they wish as the interface is simple.\u003Cbr \u002F>\nThe goal of the interface is not only can you syndicate via Micropub, but in the editor using a simple checkbox.\u003C\u002Fp>\n\u003Ch3>Credits\u003C\u002Fh3>\n\u003Cp>In no particular order…\u003C\u002Fp>\n\u003Col>\n\u003Cli>The \u003Ca href=\"https:\u002F\u002Findieweb.org\" rel=\"nofollow ugc\">Indieweb\u003C\u002Fa> community of users and all users of this plugin\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fmeitar\" rel=\"nofollow ugc\">Meitar Moscovitz\u003C\u002Fa> for fixes and code contributions related to support of the plugin in his various plugins.\u003C\u002Fli>\n\u003Cli>Justin Tadlock for the initial \u003Ca href=\"http:\u002F\u002Fjustintadlock.com\u002Farchives\u002F2013\u002F08\u002F14\u002Fsocial-nav-menus-part-2\" rel=\"nofollow ugc\">Social Icons\u003C\u002Fa> design.\u003C\u002Fli>\n\u003Cli>Jihaisse and Peter Molnar for the \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fsocial-networks-auto-poster-facebook-twitter-g\u002F\" rel=\"ugc\">SNAP\u003C\u002Fa>, courtesy of \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fjihaisse\u002Fwordpress-syndication\" rel=\"nofollow ugc\">WordPress Syndication\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fhttps:\u002F\u002Fsimpleicons.org\u002F\" rel=\"nofollow ugc\">Simple-Icons\u003C\u002Fa> for their icon packs for logos. Simple Icons is licensed under CC0 v1.0 Universal.\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"http:\u002F\u002Fgenericons.com\u002F\" rel=\"nofollow ugc\">Genericons Neue\u003C\u002Fa> for their generic icon packs. Genericons Neue is licensed under the GPLv2.\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"http:\u002F\u002Fstream.boffosocko.com\" rel=\"nofollow ugc\">Chris Aldrich\u003C\u002Fa> for many suggestions on improving the display and for screenshots.\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fsquizlabs\u002FPHP_CodeSniffer\" rel=\"nofollow ugc\">PHPCS\u003C\u002Fa> is used with the \u003Ca href=\"https:\u002F\u002Fgithub.com\u002FWordPress-Coding-Standards\u002FWordPress-Coding-Standards\" rel=\"nofollow ugc\">WordPress\u003C\u002Fa> and \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fwimg\u002FPHPCompatibility\" rel=\"nofollow ugc\">PHP Compatibility\u003C\u002Fa> Standards in order to ensure compatibility with supported versions of PHP and enact WordPress Coding Standards.\u003C\u002Fli>\n\u003Cli>GitHub Actions is used to actively test against various PHP versions\u003C\u002Fli>\n\u003C\u002Fol>\n","Link to copies of your cross-posted content in other social networks or websites.",300,35545,"2025-07-05T20:18:00.000Z","6.8.5","4.9.9","7.0",[4,20,120,121],"sharing","syndication","http:\u002F\u002Fwordpress.org\u002Fplugins\u002Fsyndication-links","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsyndication-links.4.5.3.zip","2015-05-13 00:00:00",{"slug":126,"name":127,"version":128,"author":129,"author_profile":130,"description":131,"short_description":132,"active_installs":12,"downloaded":133,"rating":12,"num_ratings":87,"last_updated":134,"tested_up_to":116,"requires_at_least":78,"requires_php":62,"tags":135,"homepage":139,"download_link":140,"security_score":103,"vuln_count":141,"unpatched_count":26,"last_vuln_date":142,"fetched_at":28},"indieblocks","IndieBlocks","0.13.3","Jan Boddez","https:\u002F\u002Fprofiles.wordpress.org\u002Fjanboddez\u002F","\u003Cp>Use blocks, and, optionally, “short-form” post types to easily “IndieWebify” your WordPress site.\u003C\u002Fp>\n\u003Cp>IndieBlocks registers several blocks (Bookmark, Like, Reply, and Repost, as well as the older Context block) that take a URL and output corresponding \u003Cem>microformatted\u003C\u002Fem> HTML.\u003C\u002Fp>\n\u003Cp>In combination with a microformats-compatible theme, these help ensure microformats clients are able to determine a post’s type.\u003C\u002Fp>\n\u003Cp>It also comes with “short-form” (Note and Like) custom post types, and a (somewhat experimental) option to add microformats to (all!) \u003Cem>block-based\u003C\u002Fem> themes.\u003C\u002Fp>\n\u003Cp>These microformats, in combination with the Webmention protocol, allow for rich \u003Cem>cross-site\u003C\u002Fem> conversations. IndieBlocks comes with its own Webmention implementation, but a separate plugin can be used, too.\u003C\u002Fp>\n\u003Cp>IndieBlocks also registers several “theme” blocks (Facepile, Location, Syndication, and Link Preview), to be used in “block theme” templates.\u003C\u002Fp>\n","Use blocks, and, optionally, \"short-form\" post types to easily \"IndieWebify\" your WordPress site.",6440,"2025-06-14T07:34:00.000Z",[136,4,137,138,21],"blocks","microblog","notes","https:\u002F\u002Findieblocks.xyz\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Findieblocks.0.13.3.zip",2,"2025-06-12 13:09:56",{"attackSurface":144,"codeSignals":237,"taintFlows":275,"riskAssessment":276,"analyzedAt":283},{"hooks":145,"ajaxHandlers":226,"restRoutes":234,"shortcodes":235,"cronEvents":236,"entryPointCount":141,"unprotectedCount":26},[146,150,154,158,162,164,166,170,173,177,180,184,187,191,195,197,201,205,208,212,216,219,222],{"type":147,"name":148,"callback":148,"file":149,"line":76},"action","admin_menu","includes\\class-general-settings.php",{"type":147,"name":151,"callback":152,"file":149,"line":153},"init","register_settings",9,{"type":147,"name":148,"callback":155,"priority":156,"file":149,"line":157},"admin_settings",11,10,{"type":147,"name":159,"callback":160,"file":161,"line":157},"widgets_init","indieweb_register_hcard","includes\\class-hcard-author-widget.php",{"type":147,"name":151,"callback":151,"file":163,"line":76},"includes\\class-hcard-user.php",{"type":147,"name":159,"callback":165,"file":163,"line":153},"init_widgets",{"type":167,"name":168,"callback":168,"priority":157,"file":163,"line":169},"filter","author_link",22,{"type":167,"name":171,"callback":171,"file":163,"line":172},"user_contactmethods",24,{"type":147,"name":174,"callback":175,"file":163,"line":176},"show_user_profile","extended_user_profile",26,{"type":147,"name":178,"callback":175,"file":163,"line":179},"edit_user_profile",27,{"type":147,"name":181,"callback":182,"priority":156,"file":163,"line":183},"personal_options_update","save_profile",29,{"type":147,"name":185,"callback":182,"priority":156,"file":163,"line":186},"edit_user_profile_update",30,{"type":167,"name":188,"callback":189,"priority":156,"file":163,"line":190},"wp_head","pgp",31,{"type":147,"name":192,"callback":193,"file":163,"line":194},"rest_api_init","rest_fields",32,{"type":147,"name":151,"callback":151,"file":196,"line":76},"includes\\class-integrations.php",{"type":167,"name":198,"callback":199,"file":196,"line":200},"pubsubhubbub_feed_urls","add_pubsubhubbub_feeds",19,{"type":147,"name":202,"callback":203,"file":204,"line":190},"admin_enqueue_scripts","enqueue_scripts","includes\\class-plugin-installer.php",{"type":147,"name":188,"callback":206,"file":207,"line":176},"relme_head","includes\\class-relme-widget.php",{"type":147,"name":209,"callback":151,"file":210,"line":211},"plugins_loaded","indieweb.php",18,{"type":147,"name":213,"callback":214,"file":210,"line":215},"wp_enqueue_scripts","enqueue_style",61,{"type":147,"name":202,"callback":217,"file":210,"line":218},"enqueue_admin_style",63,{"type":147,"name":148,"callback":220,"priority":153,"file":210,"line":221},"add_menu_item",72,{"type":147,"name":223,"callback":224,"file":210,"line":225},"admin_init","privacy_declaration",75,[227,231],{"action":228,"nopriv":229,"callback":228,"hasNonce":230,"hasCapCheck":230,"file":204,"line":194},"cnkt_plugin_installer",false,true,{"action":232,"nopriv":229,"callback":232,"hasNonce":230,"hasCapCheck":230,"file":204,"line":233},"cnkt_plugin_activation",33,[],[],[],{"dangerousFunctions":238,"sqlUsage":239,"outputEscaping":241,"fileOperations":25,"externalRequests":26,"nonceChecks":141,"capabilityChecks":48,"bundledLibraries":271},[],{"prepared":25,"raw":26,"locations":240},[],{"escaped":242,"rawEcho":243,"locations":244},171,13,[245,248,250,252,254,256,258,260,261,263,265,267,269],{"file":149,"line":246,"context":247},203,"raw output",{"file":161,"line":249,"context":247},59,{"file":161,"line":251,"context":247},65,{"file":161,"line":253,"context":247},71,{"file":163,"line":255,"context":247},194,{"file":163,"line":257,"context":247},195,{"file":163,"line":259,"context":247},202,{"file":163,"line":246,"context":247},{"file":163,"line":262,"context":247},404,{"file":163,"line":264,"context":247},495,{"file":207,"line":266,"context":247},57,{"file":210,"line":268,"context":247},159,{"file":210,"line":270,"context":247},160,[272],{"name":273,"version":35,"knownCves":274},"Lodash",[],[],{"summary":277,"deductions":278},"The \"indieweb\" plugin version 5.0.0 exhibits a generally good security posture based on the static analysis provided.  It demonstrates strong adherence to best practices such as using prepared statements for all SQL queries and a high percentage of properly escaped output.  Furthermore, it incorporates nonce and capability checks on its entry points, limiting the attack surface that could be exploited without proper authorization. The absence of any critical or high-severity taint flows suggests that user-supplied data is being handled with care.\n\nDespite these strengths, there are minor areas for improvement. The presence of a past medium-severity Cross-Site Scripting (XSS) vulnerability, even though currently patched, warrants continued vigilance. While the static analysis shows no immediate exploitable XSS, the history suggests a potential area where developer attention might be needed in future audits. The fact that the last vulnerability was recorded in 2026 indicates that the plugin might not be actively maintained or that there's a lag in vulnerability reporting, which could be a concern for long-term security.\n\nIn conclusion, \"indieweb\" v5.0.0 appears to be a relatively secure plugin, with robust handling of database queries and output. The primary concern stems from its historical vulnerability to XSS, highlighting the need for ongoing security scrutiny. The plugin's low number of entry points and their proper authentication are positive indicators. However, the dated vulnerability history might suggest a need for more frequent updates or a review of its maintenance cycle to ensure continued security.",[279,281],{"reason":280,"points":157},"Past medium CVE (XSS)",{"reason":282,"points":87},"Bundled library (Lodash)","2026-03-16T19:30:35.323Z",{"wat":285,"direct":296},{"assetPaths":286,"generatorPatterns":290,"scriptPaths":291,"versionParams":292},[287,288,289],"\u002Fwp-content\u002Fplugins\u002Findieweb\u002Fstatic\u002Fcss\u002Findieweb-bw.css","\u002Fwp-content\u002Fplugins\u002Findieweb\u002Fstatic\u002Fcss\u002Findieweb.css","\u002Fwp-content\u002Fplugins\u002Findieweb\u002Fstatic\u002Fcss\u002Findieweb-admin.css",[],[],[293,294,295],"indieweb-bw.css?ver=","indieweb.css?ver=","indieweb-admin.css?ver=",{"cssClasses":297,"htmlComments":299,"htmlAttributes":300,"restEndpoints":309,"jsGlobals":310,"shortcodeOutput":311},[298],"cnkt-plugin-installer",[],[301,302,303,304,305,306,307,308],"data-slug=\"webmention\"","data-slug=\"micropub\"","data-slug=\"indieweb-post-kinds\"","data-slug=\"syndication-links\"","data-slug=\"indieauth\"","data-slug=\"simple-location\"","data-slug=\"pubsubhubbub\"","data-slug=\"indieblocks\"",[],[],[]]