
Live Crypto Prices Security & Risk Analysis
wordpress.org/plugins/live-crypto-pricesLive cryptocurrency prices using the CoinGecko API with ticker, tables, lists, and shortcode-based display options.
Is Live Crypto Prices Safe to Use in 2026?
Generally Safe
Score 100/100Live Crypto Prices has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "live-crypto-prices" v1.0.4 exhibits a strong security posture based on the provided static analysis. The complete absence of dangerous functions, raw SQL queries, unsanitized paths in taint analysis, and unescaped output demonstrates a commitment to secure coding practices. The fact that all SQL queries utilize prepared statements is a significant strength, mitigating the risk of SQL injection vulnerabilities.
However, there are a few areas that warrant attention. The plugin makes an external HTTP request, and while a nonce check is present, there are no explicit capability checks associated with any of the entry points. While the attack surface itself is small and all entry points appear to be protected against unauthorized access (0 unprotected entry points), the lack of capability checks on the shortcodes could be a potential oversight if the plugin's functionality requires specific user roles to access or manage. The vulnerability history being entirely clear is a positive indicator, suggesting the developers are either proactive in patching or have not historically introduced significant flaws.
In conclusion, the plugin is generally well-secured with a solid foundation of good coding practices. The primary area for potential improvement lies in the explicit use of capability checks for its shortcodes to ensure a more robust access control mechanism. Given the absence of critical vulnerabilities in its history and the secure coding patterns observed, the overall risk is low.
Key Concerns
- No explicit capability checks on entry points
Live Crypto Prices Security Vulnerabilities
Live Crypto Prices Release Timeline
Live Crypto Prices Code Analysis
Output Escaping
Data Flow Analysis
Live Crypto Prices Attack Surface
Shortcodes 4
WordPress Hooks 2
Maintenance & Trust
Live Crypto Prices Maintenance & Trust
Maintenance Signals
Community Trust
Live Crypto Prices Alternatives
Cryptocurrency Widgets – Price Ticker & Coins List
cryptocurrency-price-ticker-widget
Display cryptocurrency price ticker widget, coins live price list, table, labels & coin marketcap via shortcodes.
Crypto Price Widgets – CryptoWP
cryptowp
A lightweight plugin to show the latest Bitcoin, Ethereum, and other cryptocurrency widgets on your website.
Crypto Coin Market Prices
cryptocurrency-coin-prices
Easy to use option for setting up a bitcoin and altcoin exchange rate.
Ultimate Crypto Widget
ultimate-crypto-widget
Display real-time cryptocurrency prices with customizable widgets on your WordPress site. Easy setup, no coding required.
Crypto Price Widgets – Live Cryptocurrency Prices by CoinLore
crypto-price-ticker-coinlore
Crypto Price Widgets by CoinLore allows you to display live cryptocurrency prices, market capitalization, and coin data directly on your WordPress web …
Live Crypto Prices Developer Profile
2 plugins · 0 total installs
How We Detect Live Crypto Prices
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/live-crypto-prices/assets/css/wlcp-style.css/wp-content/plugins/live-crypto-prices/assets/js/wlcp-script.js/wp-content/plugins/live-crypto-prices/assets/js/wlcp-script.jslive-crypto-prices/assets/css/wlcp-style.css?ver=live-crypto-prices/assets/js/wlcp-script.js?ver=HTML / DOM Fingerprints
wlcp-price-listwlcp-price-tablewlcp-dark-modewlcp-light-modepositivenegativedata-mode<ul class="wlcp-price-list"><table class="wlcp-price-table"><thead><tr><th>Coin</th><th>Symbol</th><th>Price (USD)</th><th>24h Change</th></tr></thead><tbody>