MKSocialLocker Security & Risk Analysis

wordpress.org/plugins/mksociallocker

With this plugin you can hide your content.

0 active installs v1.0 PHP + WP 4.0+ Updated Jun 14, 2017
content-lockercontent-social-lockersocial-lockerwordpress-lockerwordpress-social-locker
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is MKSocialLocker Safe to Use in 2026?

Generally Safe

Score 85/100

MKSocialLocker has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 8yr ago
Risk Assessment

The "mksociallocker" plugin v1.0 exhibits a generally good security posture based on the provided static analysis. The absence of dangerous functions, raw SQL queries, file operations, and external HTTP requests is a strong indicator of secure coding practices. The presence of nonce checks further enhances security. However, the analysis reveals a significant concern regarding output escaping, with only 50% of outputs being properly escaped. This leaves potential for Cross-Site Scripting (XSS) vulnerabilities if user-supplied data is not sufficiently sanitized before being displayed.

The plugin's vulnerability history is clean, with no recorded CVEs. This is a positive sign, suggesting that the developers have historically maintained secure code. However, the lack of historical vulnerabilities does not guarantee future security, especially in light of the identified output escaping issue. The relatively small attack surface with only one shortcode and no unprotected entry points is also a positive aspect.

In conclusion, while the plugin demonstrates several strengths in its security implementation, the unescaped output presents a tangible risk that needs to be addressed. The lack of historical vulnerabilities is encouraging, but the current code analysis highlights a specific area for improvement. Addressing the output escaping issue should be a priority to mitigate potential XSS risks.

Key Concerns

  • Half of outputs are not properly escaped
Vulnerabilities
None known

MKSocialLocker Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

MKSocialLocker Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
6
6 escaped
Nonce Checks
1
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

50% escaped12 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
mkSocialLockerPage (index.php:81)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

MKSocialLocker Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[mkLocker] index.php:71
WordPress Hooks 4
actionwp_footerindex.php:18
actionwp_footerindex.php:39
actionadmin_print_footer_scriptsindex.php:48
actionadmin_menuindex.php:79
Maintenance & Trust

MKSocialLocker Maintenance & Trust

Maintenance Signals

WordPress version tested4.8.28
Last updatedJun 14, 2017
PHP min version
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

MKSocialLocker Developer Profile

Mustafa KUCUK

7 plugins · 70 total installs

85
trust score
Avg Security Score
87/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect MKSocialLocker

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/mksociallocker/css/icons.css/wp-content/plugins/mksociallocker/css/mkSocialLocker.css/wp-content/plugins/mksociallocker/js/mkSocialLocker.js
Script Paths
https://apis.google.com/js/platform.js

HTML / DOM Fingerprints

CSS Classes
mkSocialLockerFBmkSocialLockerTWmkSocialLockerGPmkLockerAlertmkSocialLockermkSocialLockerLeftTextmkSocialLockerRightmkSocialLockerRightMedia+3 more
Data Attributes
id="mkSocialLocker"id="mkSocialLockerHideContent"id="mkLockerFB"id="mkLockerTW"id="mkLockerGP"
JS Globals
postURLpostTitleappIDhashTaggetTwitterContentgetFacebookAlert+1 more
Shortcode Output
[mkLocker][/mkLocker]
FAQ

Frequently Asked Questions about MKSocialLocker