Lazy Load Clarity Security & Risk Analysis

wordpress.org/plugins/lazy-load-clarity

Place your Microsoft Clarity script without affecting your website page speed.

300 active installs v1.1.1 PHP 7.0+ WP 5.0.1+ Updated Dec 12, 2023
claritylazy-load-microsoft-claritymicrosoft-clarityspeed-up-microsoft-clarity
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Lazy Load Clarity Safe to Use in 2026?

Generally Safe

Score 85/100

Lazy Load Clarity has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2yr ago
Risk Assessment

The 'lazy-load-clarity' plugin, version 1.1.1, exhibits an exceptionally strong security posture based on the provided static analysis. The absence of any identified dangerous functions, raw SQL queries, file operations, external HTTP requests, or taint flows is highly commendable and indicates diligent secure coding practices. Furthermore, all identified output is properly escaped, and the plugin adheres to best practices by not bundling external libraries that could become outdated and introduce vulnerabilities. The vulnerability history is also clean, with no recorded CVEs, suggesting a history of security-conscious development.

While the lack of external entry points like AJAX handlers, REST API routes, shortcodes, or cron events significantly reduces the potential attack surface, it also means there are no explicit capability checks or nonce checks implemented. This isn't necessarily a vulnerability in itself given the current lack of entry points, but it's a point to consider should the plugin's functionality expand in the future to include user-facing interactions. Overall, the plugin is very secure in its current state, with no immediate exploitable risks identified in the provided data.

Vulnerabilities
None known

Lazy Load Clarity Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Lazy Load Clarity Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
4 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped4 total outputs
Attack Surface

Lazy Load Clarity Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 4
actionadmin_menuadmin\class-lazyload_clarity-admin.php:61
actionadmin_initadmin\class-lazyload_clarity-admin.php:68
actionwp_enqueue_scriptsincludes\class-lazyload_clarity.php:143
actionwp_footerpublic\class-lazyload_clarity-public.php:63
Maintenance & Trust

Lazy Load Clarity Maintenance & Trust

Maintenance Signals

WordPress version tested6.4.8
Last updatedDec 12, 2023
PHP min version7.0
Downloads2K

Community Trust

Rating100/100
Number of ratings2
Active installs300
Developer Profile

Lazy Load Clarity Developer Profile

-

3 plugins · 610 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Lazy Load Clarity

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/lazy-load-clarity/public/js/lazyload_clarity-public.js
Script Paths
https://www.clarity.ms/tag/
Version Parameters
lazyload_clarity-public.js?ver=

HTML / DOM Fingerprints

JS Globals
clarity
FAQ

Frequently Asked Questions about Lazy Load Clarity