
Matprat Security & Risk Analysis
wordpress.org/plugins/matprat-shareThe Matprat plugin allows you to control which posts appear on the Matprat portal.
Is Matprat Safe to Use in 2026?
Generally Safe
Score 85/100Matprat has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "matprat-share" v0.1 plugin exhibits a generally strong security posture based on the provided static analysis and vulnerability history. The complete absence of known CVEs and no recorded vulnerabilities in its history indicate a well-maintained or newly developed plugin with no prior security incidents. The static analysis further reveals excellent practices such as zero SQL queries that are not using prepared statements, no file operations, and no external HTTP requests. The presence of one nonce check is a positive sign, though the lack of capability checks on any entry points is a notable weakness.
The primary concern lies in the code signals related to output escaping, where only 13% of the outputs are properly escaped. This indicates a potential risk of Cross-Site Scripting (XSS) vulnerabilities if user-supplied data is outputted directly into the HTML without adequate sanitization. While the attack surface is currently reported as zero entry points, this could change with future updates, and the lack of capability checks means any future entry points would be entirely unprotected.
In conclusion, the plugin is strong in its handling of database operations, file system access, and external communications. However, the low rate of proper output escaping presents a significant XSS risk that needs immediate attention. The absence of vulnerability history is a positive indicator, but it does not mitigate the identified code-level risks. Prioritizing the proper escaping of all outputs is crucial for improving the plugin's security.
Key Concerns
- Low rate of proper output escaping
- No capability checks on entry points
Matprat Security Vulnerabilities
Matprat Release Timeline
Matprat Code Analysis
Output Escaping
Matprat Attack Surface
WordPress Hooks 8
Maintenance & Trust
Matprat Maintenance & Trust
Maintenance Signals
Community Trust
Matprat Alternatives
RSS Aggregator – RSS Import, News Feeds, Feed to Post, and Autoblogging
wp-rss-aggregator
The #1 WordPress RSS aggregator to quickly import RSS feeds, build a news aggregator, and for easy autoblogging.
RSS Aggregator by Feedzy – Feed to Post, Autoblogging, News & YouTube Video Feeds Aggregator
feedzy-rss-feeds
The most powerful WordPress RSS aggregator, helping you curate content, autoblog, import RSS & display unlimited RSS feeds within a few minutes.
PowerPress Podcasting plugin by Blubrry
powerpress
No. 1 Podcasting plugin for WordPress.
Disable Feeds
disable-feeds
Disables all RSS/Atom/RDF feeds on your WordPress site.
GN Publisher: Google News Compatible RSS Feeds
gn-publisher
GN Publisher makes RSS feeds that comply with the Google News RSS Feed Technical Requirements for including your site in the Google News.
Matprat Developer Profile
16 plugins · 97K total installs
How We Detect Matprat
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
name="_matprat_post"id="_matprat_post"name="_matprat_post_title"id="_matprat_post_title"name="_matprat_post_excerpt"id="_matprat_post_excerpt"+10 more