Knights of Columbus – State Security & Risk Analysis

wordpress.org/plugins/kofc-state

Display the status of trails on your website.

0 active installs v2.5.2 PHP 5.6+ WP 4.0+ Updated Unknown
knights-of-columbuskofcshortcodewidget
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Knights of Columbus – State Safe to Use in 2026?

Generally Safe

Score 100/100

Knights of Columbus – State has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs
Risk Assessment

The kofc-state plugin version 2.5.2 presents a generally good security posture based on the provided static analysis. A significant strength is the extensive use of prepared statements for SQL queries, with 92% of them utilizing this security best practice. Furthermore, the plugin incorporates a substantial number of nonce and capability checks, demonstrating an effort to validate user actions and permissions. The absence of known CVEs and recorded vulnerabilities further contributes to its positive security standing. However, a notable area of concern is the very low percentage of properly escaped output (1%). With 192 total outputs, only 1% being properly escaped indicates a high risk of cross-site scripting (XSS) vulnerabilities, which could be exploited by an attacker to inject malicious scripts into the website. While the attack surface, consisting of 8 shortcodes, is not inherently large and has no unprotected entry points, the lack of output escaping overshadows these positive aspects.

Key Concerns

  • Low output escaping percentage (1%)
  • Bundled library (DataTables)
Vulnerabilities
None known

Knights of Columbus – State Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Knights of Columbus – State Code Analysis

Dangerous Functions
0
Raw SQL Queries
1
12 prepared
Unescaped Output
191
1 escaped
Nonce Checks
17
Capability Checks
11
File Operations
0
External Requests
2
Bundled Libraries
1

Bundled Libraries

DataTables

SQL Query Safety

92% prepared13 total queries

Output Escaping

1% escaped192 total outputs
Attack Surface

Knights of Columbus – State Attack Surface

Entry Points8
Unprotected0

Shortcodes 8

[otgkofcs] kofc-state.php:40
[otgkofcs_scoreboard] kofc-state.php:41
[otgkofcs_star_reqs] kofc-state.php:42
[otgkofcs_council_directory] kofc-state.php:43
[otgkofcs_council_table] kofc-state.php:44
[otgkofcs_assembly_table] kofc-state.php:45
[otgkofcs_council_box_list] kofc-state.php:46
[otgkofcs_assembly_box_list] kofc-state.php:47
WordPress Hooks 31
filterplugin_action_links_kofc-state/kofc-state.phpadmin.php:439
actionwp_loadedkofc-state.php:27
filtersingle_templatekofc-state.php:36
actionadmin_menukofc-state.php:52
actionadmin_enqueue_scriptskofc-state.php:53
actioninittype-assembly.php:13
actionadd_meta_boxes_assemblytype-assembly.php:14
actionsave_post_assemblytype-assembly.php:15
actionload-edit.phptype-assembly.php:16
filtermanage_assembly_posts_columnstype-assembly.php:198
filtermanage_edit-assembly_sortable_columnstype-assembly.php:199
filterrequesttype-assembly.php:200
actionmanage_assembly_posts_custom_columntype-assembly.php:201
filterposts_orderbytype-assembly.php:241
actioninittype-council.php:13
actionadd_meta_boxes_counciltype-council.php:14
actionsave_post_counciltype-council.php:15
actionload-edit.phptype-council.php:16
filtermanage_council_posts_columnstype-council.php:213
filtermanage_edit-council_sortable_columnstype-council.php:214
filterrequesttype-council.php:215
actionmanage_council_posts_custom_columntype-council.php:216
filterposts_orderbytype-council.php:258
actioninittype-knight.php:13
actionadd_meta_boxes_knighttype-knight.php:14
actionsave_post_knighttype-knight.php:15
actionload-edit.phptype-knight.php:16
filtermanage_knight_posts_columnstype-knight.php:179
filtermanage_edit-knight_sortable_columnstype-knight.php:180
filterrequesttype-knight.php:181
actionmanage_knight_posts_custom_columntype-knight.php:182
Maintenance & Trust

Knights of Columbus – State Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedUnknown
PHP min version5.6
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Knights of Columbus – State Developer Profile

Chris - On the Grid Web Design LLC

3 plugins · 10 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Knights of Columbus – State

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/kofc-state/kofc-state.min.css/wp-content/plugins/kofc-state/kofc-state.min.js
Script Paths
/wp-content/plugins/kofc-state/kofc-state.min.js

HTML / DOM Fingerprints

CSS Classes
otgkofcs_scoreboard_container
HTML Comments
<!-- Shortcodes -->
Data Attributes
data-council-iddata-assembly-id
JS Globals
otgkofcs_vars
Shortcode Output
[otgkofcs_scoreboard][otgkofcs_star_reqs][otgkofcs_council_directory][otgkofcs_council_table]
FAQ

Frequently Asked Questions about Knights of Columbus – State