Known Plugin Dependencies Security & Risk Analysis

wordpress.org/plugins/known-plugin-dependencies

Add-on plugin for the WordPress Plugin Dependencies plugin, injecting additional information about known dependencies between plugins.

10 active installs v0.1 PHP + WP 3.1+ Updated Dec 7, 2015
composerdependency
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Known Plugin Dependencies Safe to Use in 2026?

Generally Safe

Score 85/100

Known Plugin Dependencies has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 10yr ago
Risk Assessment

The plugin 'known-plugin-dependencies' v0.1 exhibits an exceptionally strong security posture based on the provided static analysis. The absence of any identified attack surface, dangerous functions, direct SQL queries, unescaped output, file operations, or external HTTP requests is highly commendable. Furthermore, the plugin demonstrates excellent security practices by having no unpatched CVEs and a clean vulnerability history. This indicates a developer who is either highly skilled in secure coding or has developed a plugin with a minimal functional footprint, thus inherently reducing risk.

While the current analysis reveals no immediate threats, the complete lack of any entry points or identifiable code signals, particularly the absence of nonce and capability checks, could be interpreted in two ways. It might signify an extremely well-secured, non-interactive plugin, or it could indicate that the static analysis tools were unable to find any such elements, which is less likely for a functional plugin. However, given the overwhelmingly positive code signals and vulnerability history, the former interpretation is more probable. The plugin appears to be secure by design and practice.

In conclusion, 'known-plugin-dependencies' v0.1 presents a very low-risk profile. Its strengths lie in its minimal attack surface, lack of dangerous code patterns, and clean vulnerability record. The only potential area for deeper scrutiny would be to understand the plugin's exact functionality and how it achieves its low profile, but based solely on the provided data, it's a model of secure development.

Vulnerabilities
None known

Known Plugin Dependencies Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Known Plugin Dependencies Release Timeline

v0.1Current
Code Analysis
Analyzed Apr 16, 2026

Known Plugin Dependencies Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

Known Plugin Dependencies Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 2
filterplugin_dependencies_all_pluginsknown-plugin-dependencies.php:594
actionplugins_loadedknown-plugin-dependencies.php:708
Maintenance & Trust

Known Plugin Dependencies Maintenance & Trust

Maintenance Signals

WordPress version tested4.4.34
Last updatedDec 7, 2015
PHP min version
Downloads2K

Community Trust

Rating100/100
Number of ratings1
Active installs10
Developer Profile

Known Plugin Dependencies Developer Profile

Juliette Reinders Folmer

10 plugins · 220 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Known Plugin Dependencies

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/known-plugin-dependencies/

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Known Plugin Dependencies