RedTools Internal Links Importer Security & Risk Analysis

wordpress.org/plugins/internal-links-importer

Import a CSV file from RedTools to automatically add internal anchor links to your WordPress pages or posts, enhancing SEO and site navigation.

0 active installs v1.0.0 PHP 7.4+ WP 5.0+ Updated May 21, 2025
anchor-linksautomationcsvinternal-linksseo
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is RedTools Internal Links Importer Safe to Use in 2026?

Generally Safe

Score 100/100

RedTools Internal Links Importer has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 12mo ago
Risk Assessment

The "internal-links-importer" v1.0.0 plugin exhibits a strong security posture based on the provided static analysis. There are no identified dangerous functions, all SQL queries utilize prepared statements, and all output is properly escaped. Furthermore, the plugin has a very small attack surface, with only one AJAX handler, and this handler appears to have nonce checks. The absence of file operations, external HTTP requests, and the presence of nonce checks are all positive indicators of secure coding practices. The plugin's vulnerability history is also clean, with no known CVEs, which suggests a history of secure development or consistent patching if vulnerabilities have existed previously. The taint analysis shows no unsanitized flows, further reinforcing its secure state. Overall, this plugin appears to be well-developed from a security perspective. The main area of potential, though not explicitly realized, concern is the lack of capability checks on the single AJAX handler. While nonce checks are present, ensuring that only authorized users can interact with the AJAX endpoint would provide an additional layer of defense against privilege escalation or unauthorized data manipulation.

Key Concerns

  • No capability checks on AJAX handler
Vulnerabilities
None known

RedTools Internal Links Importer Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

RedTools Internal Links Importer Release Timeline

No version history available.
Code Analysis
Analyzed Apr 16, 2026

RedTools Internal Links Importer Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
22 escaped
Nonce Checks
3
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped22 total outputs
Attack Surface

RedTools Internal Links Importer Attack Surface

Entry Points1
Unprotected0

AJAX Handlers 1

authwp_ajax_redtinli_implement_linksinternal-links-importer.php:218
WordPress Hooks 4
actionadmin_menuinternal-links-importer.php:20
actionadmin_initinternal-links-importer.php:35
actionadmin_enqueue_scriptsinternal-links-importer.php:284
actionadmin_noticesinternal-links-importer.php:315
Maintenance & Trust

RedTools Internal Links Importer Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedMay 21, 2025
PHP min version7.4
Downloads288

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

RedTools Internal Links Importer Developer Profile

larrynorris

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect RedTools Internal Links Importer

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about RedTools Internal Links Importer