
Manuel Security & Risk Analysis
wordpress.org/plugins/manuelManuel is a WordPress plugin that searches and removes broken links and images in WordPress posts.
Is Manuel Safe to Use in 2026?
Generally Safe
Score 85/100Manuel has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "manuel" plugin version 1.0.0 presents a generally good security posture, adhering to several best practices. All identified entry points, including AJAX handlers and cron events, appear to have authorization checks in place. The plugin also demonstrates excellent output escaping with 100% of outputs being properly escaped, and importantly, no critical or high severity taint flows were detected, indicating a lack of easily exploitable input validation issues. The absence of any known historical vulnerabilities further contributes to a positive security outlook.
However, there are minor areas for improvement. The presence of SQL queries that are not consistently using prepared statements (only 33% are prepared) introduces a potential risk of SQL injection if those queries handle user-supplied data. While the static analysis did not reveal immediate exploitable vulnerabilities in this area, it's a common vector that should be addressed. Furthermore, the plugin makes an external HTTP request, which, while not inherently a vulnerability, can be a point of concern if not handled securely or if the external service is compromised. Overall, "manuel" v1.0.0 is a reasonably secure plugin, but attention to complete prepared statement usage and careful handling of external requests would further strengthen its defenses.
Key Concerns
- SQL queries not consistently using prepared statements
- Plugin makes an external HTTP request
Manuel Security Vulnerabilities
Manuel Release Timeline
Manuel Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Manuel Attack Surface
AJAX Handlers 1
WordPress Hooks 5
Scheduled Events 1
Maintenance & Trust
Manuel Maintenance & Trust
Maintenance Signals
Community Trust
Manuel Alternatives
Broken Link Checker
broken-link-checker
Broken Link Checker helps you catch broken links & images fast, before they hurt your SEO or UX. Scan and bulk-fix issues from one easy dashboard.
WhereUsed
where-used
Where used? This plugin helps you find usage of attachments, posts, links, blocks and more in all post types, taxonomy terms, post meta, user meta, an …
Insights
insights
Insights allows you to quickly access and insert information (links, images, videos, maps..) into your blog posts.
Default Image Link
default-image-link
Select default settings for image link when you upload or insert images. Select default image link to None, Attachment Page, Media File or Custom URL.
Thumblated Related Post
thumblated-related-post
This plugin shows thumblated related posts. It allows you to design your own layout using simple and easy interface. Good for SEO and reducing bounce …
Manuel Developer Profile
3 plugins · 20 total installs
How We Detect Manuel
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/manuel/assets/css/manuel-admin.css/wp-content/plugins/manuel/assets/js/manuel-admin.js/wp-content/plugins/manuel/assets/js/manuel-stats.js/wp-content/plugins/manuel/assets/js/manuel-admin.js/wp-content/plugins/manuel/assets/js/manuel-stats.jsmanuel/assets/css/manuel-admin.css?ver=manuel/assets/js/manuel-admin.js?ver=manuel/assets/js/manuel-stats.js?ver=HTML / DOM Fingerprints
manuelStats