
Insert Video with Schema.org (IVS) Security & Risk Analysis
wordpress.org/plugins/insert-video-with-schemaorg-ivwsPlugin created shortcode to insert YouTube videos with microdate on Schema.org for rich snippet
Is Insert Video with Schema.org (IVS) Safe to Use in 2026?
Generally Safe
Score 85/100Insert Video with Schema.org (IVS) has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin 'insert-video-with-schemaorg-ivws' v3.1.7 demonstrates a strong security posture based on the provided static analysis. The code adheres to excellent security practices, evidenced by the absence of dangerous functions, 100% use of prepared statements for SQL queries, and complete output escaping. Crucially, there are no observed taint flows or unsanitized paths, indicating a low risk of common injection vulnerabilities. The plugin also correctly implements capability checks and avoids file operations or external HTTP requests, further reducing its attack surface. The vulnerability history is also clear, with no recorded CVEs, which suggests a history of secure development and maintenance.
However, a notable area for improvement is the absence of nonce checks. While the current data indicates no unprotected entry points and robust capability checks are present, the lack of nonces on any potential entry points, even if currently secured by capability checks, represents a potential weakness. In scenarios where capability checks might be bypassed or misconfigured in the future, the absence of nonces could leave the plugin vulnerable to CSRF attacks. The presence of a shortcode as an entry point, while currently protected, could be a point of future concern if not carefully managed.
In conclusion, the plugin is fundamentally secure with robust coding practices, particularly around data handling and output. The primary concern is the missing nonce checks, which is a standard security measure for protecting against CSRF. Addressing this would significantly enhance the plugin's overall security. The lack of past vulnerabilities is a very positive sign, but it's important to maintain vigilance and implement all best practices.
Key Concerns
- Missing nonce checks
Insert Video with Schema.org (IVS) Security Vulnerabilities
Insert Video with Schema.org (IVS) Code Analysis
Bundled Libraries
Output Escaping
Insert Video with Schema.org (IVS) Attack Surface
Shortcodes 1
WordPress Hooks 7
Maintenance & Trust
Insert Video with Schema.org (IVS) Maintenance & Trust
Maintenance Signals
Community Trust
Insert Video with Schema.org (IVS) Alternatives
Column Shortcodes
column-shortcodes
Adds shortcodes to easily create columns in your posts or pages.
Apollo13 Framework Extensions
apollo13-framework-extensions
Adds custom post types, shortcodes and some features that are used in themes built on Apollo13 Framework.
Futurio Extra
futurio-extra
Futurio Extra add extra features to Futurio theme like widgets, WooCommerce options, Elementor widgets, one click demo import and much more.
ND Shortcodes
nd-shortcodes
The plugin adds some useful components to your page builder ( Elementor or WP Bakery Page Builder ). All components are full responsive and retina rea …
Contact Form 7 Shortcode Enabler
contact-form-7-shortcode-enabler
This plugin enables the usage of external shortcodes inside Contact Form 7 Forms.
Insert Video with Schema.org (IVS) Developer Profile
3 plugins · 5K total installs
How We Detect Insert Video with Schema.org (IVS)
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/insert-video-with-schemaorg-ivws/assets/css/style.css/wp-content/plugins/insert-video-with-schemaorg-ivws/assets/css/admin-style.cssinsert-video-with-schemaorg-ivws/assets/css/style.css?ver=jqueryui?ver=insert-video-with-schemaorg-ivws/assets/css/admin-style.css?ver=HTML / DOM Fingerprints
art_ytitemscopeitemiditemtypeitempropcontent<div class="art_yt itemscope itemtype="http://schema.org/VideoObject"><link itemprop="url"<meta itemprop="name"