MSD Google Review Security & Risk Analysis

wordpress.org/plugins/msd-google-reviews

The quality and quantity of reviews on Google is one of the most important ranking factors for local SEO. And, when a person scans the search results …

0 active installs v0.1 PHP + WP 4.4.0+ Updated Jan 27, 2019
googlegoogle-ratingsgoogle-reviewratingsreview
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is MSD Google Review Safe to Use in 2026?

Generally Safe

Score 85/100

MSD Google Review has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 7yr ago
Risk Assessment

The msd-google-reviews plugin, version 0.1, presents a mixed security posture. On the positive side, the plugin demonstrates good practices by not utilizing dangerous functions, conducting all SQL queries using prepared statements, and having no recorded vulnerabilities. This suggests a developer who is aware of common security pitfalls and has implemented some foundational security measures. However, significant concerns arise from the lack of critical security checks. The absence of nonce checks and capability checks, particularly in conjunction with the presence of shortcodes as an entry point, leaves the plugin vulnerable to potential unauthorized actions or data manipulation if any user-supplied data is processed insecurely. Furthermore, a low rate of output escaping (33%) indicates that user-supplied data displayed back to the user might not be properly sanitized, potentially leading to Cross-Site Scripting (XSS) vulnerabilities.

Key Concerns

  • Missing nonce checks
  • Missing capability checks
  • Low output escaping percentage
Vulnerabilities
None known

MSD Google Review Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

MSD Google Review Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
4
2 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

33% escaped6 total outputs
Attack Surface

MSD Google Review Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[google_review] msd-core-functions.php:84
WordPress Hooks 3
actionadmin_menumsd-admin-pages.php:4
actionadmin_initmsd-admin-pages.php:10
actionwp_footermsd-core-functions.php:69
Maintenance & Trust

MSD Google Review Maintenance & Trust

Maintenance Signals

WordPress version tested5.0.25
Last updatedJan 27, 2019
PHP min version
Downloads6K

Community Trust

Rating100/100
Number of ratings2
Active installs0
Developer Profile

MSD Google Review Developer Profile

Akhileshwar Dayal

2 plugins · 0 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect MSD Google Review

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Script Paths
/wp-content/plugins/msd-google-reviews/msd-core-functions.php

HTML / DOM Fingerprints

CSS Classes
reviews-googlereviews-itemreviews-google-containerreviews-google-itemstars-containerreviews-google-info
Data Attributes
id="map"id="reviews-google-container"
JS Globals
google
Shortcode Output
<article class="reviews-google reviews-item"> <h1 id="reviews-google-header" class="heading">Reviews from <img style="max-height: 2rem;" src="https://www.google.ca/images/branding/googlelogo/2x/googlelogo_color_92x30dp.png" alt="google logo">!</h1> <div id="map"></div> <div id="reviews-google-container"> </div> </article>
FAQ

Frequently Asked Questions about MSD Google Review