
Metronet Embed Google Plus Security & Risk Analysis
wordpress.org/plugins/metronet-embed-google-plusEasily embed Google+ posts into your pages
Is Metronet Embed Google Plus Safe to Use in 2026?
Generally Safe
Score 100/100Metronet Embed Google Plus has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "metronet-embed-google-plus" plugin, version 1.0.1, exhibits a strong security posture based on the provided static analysis. The code adheres to best practices by utilizing prepared statements for all SQL queries and properly escaping all output. Furthermore, there are no reported vulnerabilities in its history, including critical or high-severity issues, which suggests a history of secure development. The limited attack surface, consisting of a single shortcode and no unprotected entry points, further reinforces its good security standing.
However, the absence of nonce checks and capability checks across all identified entry points presents a potential, albeit currently theoretical, risk. While the static analysis did not identify any dangerous functions, taint flows, or file operations that would immediately lead to exploitation, the lack of explicit authorization checks means that if a vulnerability were to be introduced in the future (e.g., through an update or a discovered flaw in a dependency), it could be more easily exploited without these crucial security measures.
In conclusion, the plugin is currently in a very secure state due to its adherence to core secure coding principles and its clean vulnerability history. The primary area for improvement and a point of caution is the implementation of proper authorization checks (nonces and capabilities) to further harden its attack surface against potential future threats.
Key Concerns
- Missing nonce checks on entry points
- Missing capability checks on entry points
Metronet Embed Google Plus Security Vulnerabilities
Metronet Embed Google Plus Code Analysis
Metronet Embed Google Plus Attack Surface
Shortcodes 1
WordPress Hooks 1
Maintenance & Trust
Metronet Embed Google Plus Maintenance & Trust
Maintenance Signals
Community Trust
Metronet Embed Google Plus Alternatives
WP Google Plus Connect
wp-google-plus-connect
Add Google+ Direct Connect Badge & allow your WordPress/BuddyPress users to register or login via their Google+ account & import their stream …
Google Plus Authorship
google-plus-authorship
Add Google Plus Profile Picture to Google Search Results. Very Easy to implement! Google authorship for multiple authors
Social Comments
social-comments
This plugin adds Google Plus Comments system, Facebook comments and / or Disqus Comments to your site.
Social Media Social Share Icon
add-social-share
Social Media Share Icons to increase social traffic and popularity. Social sharing to Facebook , Twitter, Pinterest,LinkedIn and Google Plus social me …
WP Google Authorship
google-plus-author
Google Plus Profile Picture appear in Google Search. Very Easy to implement. Including Google authorship for multiple authors and multisite.
Metronet Embed Google Plus Developer Profile
14 plugins · 97K total installs
How We Detect Metronet Embed Google Plus
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
https://apis.google.com/js/plusone.js?onload=onLoadCallbackHTML / DOM Fingerprints
g-postdata-href<div class="g-post" data-href="