Martins Analytics Security & Risk Analysis

wordpress.org/plugins/martins-analytics

Simple and GDPR,CCPA,PIPEDA friendly Google Analytics alternative

0 active installs v1.0.0 PHP 7.0+ WP 4.7+ Updated Jun 18, 2022
analyticsccpagdprstatisticsstats
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Martins Analytics Safe to Use in 2026?

Generally Safe

Score 85/100

Martins Analytics has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3yr ago
Risk Assessment

The martins-analytics plugin v1.0.0 demonstrates an exceptionally strong security posture based on the provided static analysis. There are no identified entry points such as AJAX handlers, REST API routes, shortcodes, or cron events, which significantly limits the plugin's attack surface. Furthermore, the code exhibits excellent adherence to security best practices, with no dangerous functions, no file operations, no external HTTP requests, and all SQL queries utilizing prepared statements. Output is consistently and properly escaped. The complete absence of taint analysis issues and a clean vulnerability history further bolster its security profile.

While the static analysis and vulnerability history reveal no immediate threats, the complete lack of any capability checks or nonce checks across any potential (albeit currently non-existent) entry points could be a concern if the plugin were to be extended in the future with functionality that requires authorization. This absence, while not a current vulnerability given the current attack surface, represents a potential future risk that could be mitigated by implementing these checks proactively. Overall, this plugin appears to be very securely developed for its current version and functionality.

Key Concerns

  • No capability checks implemented
  • No nonce checks implemented
Vulnerabilities
None known

Martins Analytics Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Martins Analytics Release Timeline

v1.0.0Current
Code Analysis
Analyzed Mar 17, 2026

Martins Analytics Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
2 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped2 total outputs
Attack Surface

Martins Analytics Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 5
actionadmin_menumartinsAnalytics.php:27
actionadmin_initmartinsAnalytics.php:28
filterscript_loader_tagmartinsAnalytics.php:121
actionwp_enqueue_scriptsmartinsAnalytics.php:153
actionwp_enqueue_scriptsmartinsAnalytics.php:154
Maintenance & Trust

Martins Analytics Maintenance & Trust

Maintenance Signals

WordPress version tested6.0.11
Last updatedJun 18, 2022
PHP min version7.0
Downloads819

Community Trust

Rating100/100
Number of ratings1
Active installs0
Developer Profile

Martins Analytics Developer Profile

bundgaard

3 plugins · 1K total installs

80
trust score
Avg Security Score
88/100
Avg Patch Time
78 days
View full developer profile
Detection Fingerprints

How We Detect Martins Analytics

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/martins-analytics/analytics.js
Script Paths
https://analytics.martinstools.com/analytics.js

HTML / DOM Fingerprints

Data Attributes
data-id
JS Globals
martinsAnalytics
FAQ

Frequently Asked Questions about Martins Analytics