
LiveVisi – Live Visitors Activity Tracker for WP Website Security & Risk Analysis
wordpress.org/plugins/livevisiLiveVisi is a real-time WordPress analytics plugin that tracks website visitors, page views, how much time they are spending on the site.
Is LiveVisi – Live Visitors Activity Tracker for WP Website Safe to Use in 2026?
Generally Safe
Score 100/100LiveVisi – Live Visitors Activity Tracker for WP Website has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "livevisi" v1.0.1 plugin exhibits a mixed security posture. While it shows good practices in avoiding dangerous functions, performing file operations, and a relatively high percentage of prepared statements and output escaping, several areas raise concerns. The presence of REST API routes without permission callbacks represents a significant attack surface that could lead to unauthorized access or actions if exploited. The taint analysis also indicates a potential issue with unsanitized paths, even though it's not classified as critical. The plugin's clean vulnerability history is a positive sign, suggesting a history of secure development or diligent patching by developers. However, the identified entry points without proper authentication checks are a direct risk that needs immediate attention. Overall, the plugin has strengths in its core development practices, but the lack of robust access control on certain REST API endpoints is a notable weakness that warrants caution.
Key Concerns
- REST API routes without permission callbacks
- Taint flow with unsanitized paths (High severity)
LiveVisi – Live Visitors Activity Tracker for WP Website Security Vulnerabilities
LiveVisi – Live Visitors Activity Tracker for WP Website Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
LiveVisi – Live Visitors Activity Tracker for WP Website Attack Surface
REST API Routes 4
WordPress Hooks 8
Maintenance & Trust
LiveVisi – Live Visitors Activity Tracker for WP Website Maintenance & Trust
Maintenance Signals
Community Trust
LiveVisi – Live Visitors Activity Tracker for WP Website Alternatives
No alternatives data available yet.
LiveVisi – Live Visitors Activity Tracker for WP Website Developer Profile
1 plugin · 50 total installs
How We Detect LiveVisi – Live Visitors Activity Tracker for WP Website
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/livevisi/assets/css/admin.css/wp-content/plugins/livevisi/assets/js/admin.js/wp-content/plugins/livevisi/assets/js/chart.js/wp-content/plugins/livevisi/assets/js/admin.js/wp-content/plugins/livevisi/assets/js/chart.jslivevisi/assets/css/admin.css?ver=livevisi/assets/js/admin.js?ver=livevisi/assets/js/chart.js?ver=HTML / DOM Fingerprints
livevisi-dark-modelivevisi-pro-lock-icondata-livevisi-urldata-livevisi-noncelivevisiApiSettingslivevisiChartData/livevisi/v1/