
TechGasp Link Master Security & Risk Analysis
wordpress.org/plugins/linkedin-masterTechGasp Link Master, if you are serious about your linkedin connections and want to integrate your personal linkedin page, company follow button and …
Is TechGasp Link Master Safe to Use in 2026?
Generally Safe
Score 85/100TechGasp Link Master has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'linkedin-master' plugin v5.1.4 exhibits a generally good security posture from static analysis, with no obvious critical vulnerabilities like dangerous functions, SQL injection risks, or unprotected entry points. The plugin demonstrates good practice by utilizing prepared statements for all SQL queries and includes a nonce check, indicating some awareness of security best practices.
However, there are significant concerns regarding output escaping, with only 6% of outputs being properly escaped. This leaves a substantial risk of Cross-Site Scripting (XSS) vulnerabilities where unsanitized data could be injected and rendered by the browser. The taint analysis also revealed two flows with unsanitized paths, which, while not rated as critical or high severity in this report, represent potential avenues for data leakage or unexpected behavior if exploited.
Given the absence of any recorded vulnerability history, the plugin appears to have a good track record. Nonetheless, the low percentage of properly escaped output is a serious weakness that requires immediate attention. The strengths lie in its minimal attack surface and the use of prepared statements, but the identified output escaping issues and unsanitized taint flows are concerning.
Key Concerns
- Low percentage of properly escaped output
- Flows with unsanitized paths found
TechGasp Link Master Security Vulnerabilities
TechGasp Link Master Code Analysis
Output Escaping
Data Flow Analysis
TechGasp Link Master Attack Surface
WordPress Hooks 12
Maintenance & Trust
TechGasp Link Master Maintenance & Trust
Maintenance Signals
Community Trust
TechGasp Link Master Alternatives
Linkedin Profile Badge
linkedin-profile-badge
This plugin lets you easily add the Linkedin Profile badge to your WordPress blog via a shortcode.
WP LinkedIn Auto Publish
wp-linkedin-auto-publish
WP LinkedIn Auto Publish automatically publishes posts, custom posts and pages to your LinkedIn profile and/or company pages.
FP LinkedIn Profile
fp-linkedin-profile
Bring your LinkedIn profiles to your site to help users discover common professional connections. This plugin embed Profile summary card directly on y …
FP LinkedIn Company Profile
fp-linkedin-company-profile
Bring your Company LinkedIn profile to your site to help users to follow your company in Linkedin. This plugin embed Company Profile summary card dire …
Google+ Badge Widget
google-badge-widget
Google+ Badge Widget integrated with Official Google Plus API. Google+ Widget enable users to adds beautiful widget on your Wordpress Blog.
TechGasp Link Master Developer Profile
19 plugins · 3K total installs
How We Detect TechGasp Link Master
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/linkedin-master/includes/linkedin-master-admin.php/wp-content/plugins/linkedin-master/includes/linkedin-master-admin-addons.php/wp-content/plugins/linkedin-master/includes/linkedin-master-admin-settings-wide.php/wp-content/plugins/linkedin-master/includes/linkedin-master-settings-wide.php/wp-content/plugins/linkedin-master/includes/linkedin-master-widget-buttons.php/wp-content/plugins/linkedin-master/includes/linkedin-master-widget-profile-member.phphttps://platform.linkedin.com/in.jshttps://platform.linkedin.com/badges/js/badge.jsHTML / DOM Fingerprints
data-id="linkedin-member-profile-widget"IN