MetricSpot SEO Leads Security & Risk Analysis

wordpress.org/plugins/metricspot-seo-leads

With MetricSpot's SEO Leads Plugin you will be able to offer free SEO reports on your own website. Automate the process of capturing SEO leads!

10 active installs v2017.09.25 PHP 5.4+ WP 3.0.1+ Updated Sep 28, 2017
conversionsleadsmarketingseo
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is MetricSpot SEO Leads Safe to Use in 2026?

Generally Safe

Score 85/100

MetricSpot SEO Leads has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 8yr ago
Risk Assessment

The "metricspot-seo-leads" plugin, version 2017.09.25, exhibits an exceptionally strong security posture based on the provided static analysis. The code analysis reveals no dangerous functions, no file operations, no external HTTP requests, and all SQL queries are properly prepared. Crucially, the plugin demonstrates a complete absence of exploitable attack surface, with zero AJAX handlers, REST API routes, shortcodes, or cron events that are unprotected. The taint analysis also reports no flows with unsanitized paths, indicating no obvious injection vulnerabilities.

The vulnerability history further reinforces this positive assessment, showing a complete lack of any recorded CVEs, regardless of severity. This pattern suggests a mature and well-maintained codebase that has historically avoided known security flaws. The absence of unpatched vulnerabilities and common vulnerability types indicates a sustained commitment to security. While the lack of nonces and capability checks on certain actions could theoretically be a concern if there were any entry points, the complete lack of any attack surface renders this a non-issue in practice. Overall, this plugin appears to be highly secure, with no exploitable vulnerabilities identified in the provided data.

Vulnerabilities
None known

MetricSpot SEO Leads Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

MetricSpot SEO Leads Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

MetricSpot SEO Leads Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 3
filterclean_urlseo-leads.php:36
actionwp_footerseo-leads.php:41
actionwp_dashboard_setupseo-leads.php:57
Maintenance & Trust

MetricSpot SEO Leads Maintenance & Trust

Maintenance Signals

WordPress version tested4.8.28
Last updatedSep 28, 2017
PHP min version5.4
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

MetricSpot SEO Leads Developer Profile

angel

2 plugins · 10 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect MetricSpot SEO Leads

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/metricspot-seo-leads/audit.min.js
Script Paths
https://metricspot.com/apps/audit.min.js
Version Parameters
metricspot-seo-leads2017.09.25

HTML / DOM Fingerprints

Data Attributes
async='async'
FAQ

Frequently Asked Questions about MetricSpot SEO Leads