LinkGather Security & Risk Analysis

wordpress.org/plugins/linkgather

Admin utility to gather internal post/page URLs with filters, pagination, and CSV export.

60 active installs v2.0.3 PHP 8.0+ WP 5.6+ Updated Jan 11, 2026
adminexportlinkspage-urlspost-urls
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is LinkGather Safe to Use in 2026?

Generally Safe

Score 100/100

LinkGather has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

Based on the provided static analysis, "linkgather" v2.0.3 exhibits a strong security posture. The absence of any recorded CVEs, critical or high-severity taint flows, and a limited attack surface with no unprotected entry points are significant strengths. The plugin also demonstrates good practices by utilizing prepared statements for all SQL queries and incorporating nonce and capability checks. The high percentage of properly escaped output further contributes to its defensiveness.

However, there are minor areas for improvement. The presence of a file operation without further context could represent a potential risk if not handled securely. While the taint analysis found no issues, the limited number of flows analyzed (2) means that a comprehensive understanding of all potential data handling vulnerabilities may not be captured. The overall security is good, but continued vigilance in secure coding practices, especially around file operations, is recommended.

Key Concerns

  • File operations present without further context
Vulnerabilities
None known

LinkGather Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

LinkGather Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
4 prepared
Unescaped Output
4
19 escaped
Nonce Checks
1
Capability Checks
2
File Operations
1
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared4 total queries

Output Escaping

83% escaped23 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
linkgather_render_admin_page (linkgather.php:17)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

LinkGather Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 2
actionadmin_menulinkgather.php:11
actionadmin_post_linkgather_export_csvlinkgather.php:172
Maintenance & Trust

LinkGather Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedJan 11, 2026
PHP min version8.0
Downloads4K

Community Trust

Rating100/100
Number of ratings2
Active installs60
Developer Profile

LinkGather Developer Profile

techygeekshome

2 plugins · 70 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect LinkGather

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

CSS Classes
linkgather-containerwidefatfixedstripedtablenavtablenav-pages
FAQ

Frequently Asked Questions about LinkGather