Token / NFT / Blockchain Page Gating Security & Risk Analysis

wordpress.org/plugins/litprotocol-wp-lit-gated

Gate your content based on blockchain conditions like NFT ownership.

20 active installs v0.0.5 PHP 5.6.40+ WP 4.7+ Updated Sep 15, 2022
access-controlblockchaindaoethereumnft
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Token / NFT / Blockchain Page Gating Safe to Use in 2026?

Generally Safe

Score 85/100

Token / NFT / Blockchain Page Gating has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3yr ago
Risk Assessment

The static analysis of the "litprotocol-wp-lit-gated" v0.0.5 plugin reveals a generally good security posture, with no critical vulnerabilities identified in terms of attack surface, dangerous functions, or taint analysis. The complete absence of direct SQL queries, reliance on prepared statements, and lack of file operations are strong indicators of secure coding practices. However, the plugin exhibits a concerning lack of input validation and authorization checks. With 60% of output potentially unescaped and zero nonce or capability checks, there is a significant risk of Cross-Site Scripting (XSS) and potential privilege escalation vulnerabilities, especially if the single external HTTP request is not handled securely. The vulnerability history is a positive sign, indicating a lack of previously discovered issues. Despite the absence of known CVEs and critical findings in taint analysis, the significant gaps in output escaping and authorization checks introduce notable risks that require immediate attention.

Key Concerns

  • Significant portion of output not properly escaped
  • No nonce checks implemented
  • No capability checks implemented
  • External HTTP request without clear validation
Vulnerabilities
None known

Token / NFT / Blockchain Page Gating Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Token / NFT / Blockchain Page Gating Release Timeline

v0.0.1
Code Analysis
Analyzed Mar 16, 2026

Token / NFT / Blockchain Page Gating Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
9
6 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
1
Bundled Libraries
0

Output Escaping

40% escaped15 total outputs
Attack Surface

Token / NFT / Blockchain Page Gating Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 11
actionadmin_menusetup\Setup.php:26
actionadmin_initsetup\Setup.php:27
actionadmin_enqueue_scriptswp-lit-gated.php:67
actionadmin_enqueue_scriptswp-lit-gated.php:68
actionadmin_enqueue_scriptswp-lit-gated.php:69
actionadmin_enqueue_scriptswp-lit-gated.php:70
actionwp_enqueue_scriptswp-lit-gated.php:73
actionwp_enqueue_scriptswp-lit-gated.php:74
actionwp_headwp-lit-gated.php:156
actionwp_footerwp-lit-gated.php:162
filterhttp_request_timeoutwp-lit-gated.php:292
Maintenance & Trust

Token / NFT / Blockchain Page Gating Maintenance & Trust

Maintenance Signals

WordPress version tested5.9.13
Last updatedSep 15, 2022
PHP min version5.6.40
Downloads5K

Community Trust

Rating0/100
Number of ratings0
Active installs20
Developer Profile

Token / NFT / Blockchain Page Gating Developer Profile

litprotocol

1 plugin · 20 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Token / NFT / Blockchain Page Gating

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/litprotocol-wp-lit-gated/resources/lit-access-control-conditions-modal-vanilla-js.css/wp-content/plugins/litprotocol-wp-lit-gated/resources/lit-access-control-conditions-modal-vanilla-js.js/wp-content/plugins/litprotocol-wp-lit-gated/resources/lit-js-sdk-jalapeno.js/wp-content/plugins/litprotocol-wp-lit-gated/wp-lit-gated-admin.css/wp-content/plugins/litprotocol-wp-lit-gated/wp-lit-gated-app.css
Script Paths
/wp-content/plugins/litprotocol-wp-lit-gated/resources/lit-access-control-conditions-modal-vanilla-js.js/wp-content/plugins/litprotocol-wp-lit-gated/resources/lit-js-sdk-jalapeno.js
Version Parameters
/wp-content/plugins/litprotocol-wp-lit-gated/resources/lit-access-control-conditions-modal-vanilla-js.css?ver=/wp-content/plugins/litprotocol-wp-lit-gated/resources/lit-access-control-conditions-modal-vanilla-js.js?ver=/wp-content/plugins/litprotocol-wp-lit-gated/resources/lit-js-sdk-jalapeno.js?ver=/wp-content/plugins/litprotocol-wp-lit-gated/wp-lit-gated-admin.css?ver=/wp-content/plugins/litprotocol-wp-lit-gated/wp-lit-gated-app.css?ver=

HTML / DOM Fingerprints

CSS Classes
lit-debug
JS Globals
lit_decoded_settings
FAQ

Frequently Asked Questions about Token / NFT / Blockchain Page Gating