
Load Video On Click Security & Risk Analysis
wordpress.org/plugins/load-video-on-clickVideos will not worse anymore the performance if they load only after clicking on the play button.
Is Load Video On Click Safe to Use in 2026?
Generally Safe
Score 100/100Load Video On Click has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "load-video-on-click" plugin, version 0.0.5, exhibits a generally strong security posture based on the provided static analysis. The code adheres to several key security best practices, including the exclusive use of prepared statements for all SQL queries and proper escaping of all output. There are no identified dangerous functions, file operations, or external HTTP requests, which significantly reduces the attack surface. Furthermore, the absence of any recorded CVEs or historical vulnerabilities suggests a history of secure development or a lack of public scrutiny.
However, the plugin does present a notable concern: the complete lack of nonce checks and capability checks. While the static analysis indicates no unprotected entry points currently, this absence of authentication and authorization mechanisms for any potential future entry points or even the identified shortcode is a significant weakness. If new AJAX handlers, REST API routes, or other entry points were to be introduced without these checks, the plugin would become highly vulnerable to various attacks, including CSRF. The lack of taint analysis results also limits the understanding of potential data flow vulnerabilities that might not be immediately apparent from function calls.
In conclusion, while "load-video-on-click" v0.0.5 demonstrates good coding practices regarding data handling and output sanitization, the omission of critical security checks like nonces and capability checks is a substantial risk. This oversight leaves the plugin potentially exposed to future vulnerabilities should its attack surface expand or be exploited in ways not immediately evident from the current limited analysis. The plugin's strength lies in its current minimal complexity and adherence to basic secure coding principles, but its weakness lies in its incomplete implementation of fundamental WordPress security measures.
Key Concerns
- Missing nonce checks
- Missing capability checks
Load Video On Click Security Vulnerabilities
Load Video On Click Code Analysis
Output Escaping
Load Video On Click Attack Surface
Shortcodes 1
WordPress Hooks 4
Maintenance & Trust
Load Video On Click Maintenance & Trust
Maintenance Signals
Community Trust
Load Video On Click Alternatives
Feeds for TikTok (TikTok feed, video, and gallery plugin)
feeds-for-tiktok
The best way to display TikTok videos on your WordPress website. Display clean, customizable, and responsive TikTok feeds from your TikTok account.
Video Gallery – YouTube Playlist, Channel Gallery by YotuWP
yotuwp-easy-youtube-embed
Modern responsive YouTube video gallery helps your website getting noticed from visitors, increase the reach and stand out from the competitors.
Featured Video Plus
featured-video-plus
Add Featured Videos to your posts and pages. Works like magic with most themes which use Featured Images. Local Media, YouTube, Vimeo and many more.
SocialFeeds
socialfeeds
YouTube feeds for WordPress with simple Setup and Settings options.
Porn Videos Embed
porn-videos-embed
A very simple wordpress plugin for add shortcode embed videos from porn sites
Load Video On Click Developer Profile
56 plugins · 26K total installs
How We Detect Load Video On Click
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/load-video-on-click/assets/img/element-icon-video.svg/wp-content/plugins/load-video-on-click/assets/js/editor-block.js/wp-content/plugins/load-video-on-click/assets/js/editor-block.jsload-video-on-click/assets/js/editor-block.js?ver=HTML / DOM Fingerprints
lvoc-css-adminloadOnClick