
JSON REST API Subscriptions Security & Risk Analysis
wordpress.org/plugins/json-rest-api-subscriptionsEnable subscriptions to posts, pages, and custom post types. Users can securely subscribe via simple API routes to created/updated/deleted content.
Is JSON REST API Subscriptions Safe to Use in 2026?
Generally Safe
Score 100/100JSON REST API Subscriptions has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'json-rest-api-subscriptions' plugin v1.0 exhibits a strong security posture based on the provided static analysis. The absence of any AJAX handlers, REST API routes, shortcodes, or cron events significantly minimizes the attack surface. Furthermore, the code demonstrates good practices with 100% of SQL queries utilizing prepared statements and 100% of outputs being properly escaped. The lack of identified dangerous functions, file operations, external HTTP requests, and taint analysis flows all contribute to a low-risk profile from a code perspective. The plugin's vulnerability history is also clean, with no recorded CVEs, further bolstering confidence in its security. While the lack of nonce and capability checks might seem like a concern, it's mitigated by the fact that there are no entry points that would require such checks. The plugin's strength lies in its minimal functionality and lack of exposed endpoints, which inherently reduces potential vulnerabilities. However, the lack of any detected entry points (0 total, 0 unprotected) and associated checks means it's difficult to definitively assess how it would handle authenticated and unauthenticated access if it were to be expanded in the future. The current version appears secure due to its limited scope and robust internal coding standards.
JSON REST API Subscriptions Security Vulnerabilities
JSON REST API Subscriptions Code Analysis
JSON REST API Subscriptions Attack Surface
WordPress Hooks 1
Maintenance & Trust
JSON REST API Subscriptions Maintenance & Trust
Maintenance Signals
Community Trust
JSON REST API Subscriptions Alternatives
WP API Menus
wp-api-menus
Extends WordPress WP REST API with new routes pointing to WordPress menus.
WP-REST-API Menus
wp-rest-api-menus
Adds menu endpoints to core WP REST API.
WP API (V2) WooCommerce endpoints
wp-api-v2-woocommerce-endpoints
Extends WordPress WP REST API (V2) with new endpoints pointing to WooCommerce page functions (is_shop, is_cart, is_checkout, is_account_page).
WP API Options
wp-rest-api-options
Extends WordPress WP REST API with new routes pointing to WordPress options.
WP API (V2) isFront
wp-rest-api-v2-isfront
Extends WordPress WP REST API (V2) with new endpoints pointing to WordPress isFront function.
JSON REST API Subscriptions Developer Profile
9 plugins · 8K total installs
How We Detect JSON REST API Subscriptions
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
/wp/v2/posts/wp/v2/pages