
Kenzap Features Security & Risk Analysis
wordpress.org/plugins/kenzap-featuresA beautiful and easy customizable set of Gutenberg blocks to create features section for the new editor. Easily adjust the following parameters:
Is Kenzap Features Safe to Use in 2026?
Generally Safe
Score 85/100Kenzap Features has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "kenzap-features" v1.2.1 plugin exhibits a strong security posture based on the provided static analysis. The absence of any detected AJAX handlers, REST API routes, shortcodes, or cron events significantly limits its attack surface. Furthermore, the code signals are overwhelmingly positive, with no dangerous functions, file operations, or external HTTP requests. The complete reliance on prepared statements for SQL queries and proper output escaping demonstrates good secure coding practices. The plugin also appears to be mindful of permissions, with one capability check identified. The lack of any recorded vulnerabilities in its history further bolsters this assessment, indicating a history of stable and secure development.
While the static analysis reveals no immediate or critical security risks, the data also points to some areas that, while not explicitly problematic, could be improved. The absence of any nonce checks, while not a direct vulnerability given the limited attack surface, means that if new entry points were introduced in the future, they might be susceptible to CSRF attacks if not properly secured. Similarly, the single capability check suggests that while some authorization is in place, a broader implementation might be beneficial for future extensibility. The taint analysis reporting zero flows, while ideal, could also be due to the limited scope or nature of the analyzed code, and doesn't necessarily guarantee the absence of all potential taint issues in more complex scenarios. The overall conclusion is that the plugin is currently very secure, but the minimal attack surface and absence of certain security mechanisms (like nonces) mean that careful development practices would be crucial for any future updates or additions to its functionality.
Key Concerns
- No nonce checks implemented
- Limited observable authorization checks
Kenzap Features Security Vulnerabilities
Kenzap Features Code Analysis
Kenzap Features Attack Surface
WordPress Hooks 7
Maintenance & Trust
Kenzap Features Maintenance & Trust
Maintenance Signals
Community Trust
Kenzap Features Alternatives
Service Box – Icon Box Showcase
service-box
Service Box plugin is display your service showcase on any WordPress post & page with unlimited color scheme using drag & drop Api
Service Showcase
service-showcase
Service Showcase plugin is display the service box on wordpress website pages and posts. It come with 6 different layouts and create unlimited service …
About the Author Advanced
about-the-author-advanced
This plugin creates a sidebar widget which displays the post/page author's information.
Web4pro About me
web4pro-about-me
This plugin creates widget with information about the author of the site. You can also add social links, it will be displayed under the general inform …
WP_Places
wp-places
WP_Places populates up-to-the-minute information about almost any location or business. Display address, phone number, hours of operation, and website …
Kenzap Features Developer Profile
7 plugins · 260 total installs
How We Detect Kenzap Features
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/kenzap-features/dist/blocks.style.build.css/wp-content/plugins/kenzap-features/dist/assets/owl.carousel.min.js/wp-content/plugins/kenzap-features/dist/assets/owl.carousel.min.css/wp-content/plugins/kenzap-features/feature-list-2/script.js/wp-content/plugins/kenzap-features/dist/blocks.build.js/wp-content/plugins/kenzap-features/dist/blocks.editor.build.css/wp-content/plugins/kenzap-features/dist/blocks.build.js/wp-content/plugins/kenzap-features/dist/blocks.editor.build.css/wp-content/plugins/kenzap-features/dist/assets/owl.carousel.min.js/wp-content/plugins/kenzap-features/feature-list-2/script.jsHTML / DOM Fingerprints
kenzapkenzap_features_gutenberg_pathkenzap_features_gutenberg_path