
My Reading Time Lite Security & Risk Analysis
wordpress.org/plugins/my-reading-time-liteReading Time lite plugin enables an estimated reading time that inserted above or bottom in post. Insert anywhere using shortcode too.
Is My Reading Time Lite Safe to Use in 2026?
Generally Safe
Score 85/100My Reading Time Lite has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'my-reading-time-lite' v1.0.3 plugin exhibits a generally strong security posture based on the provided static analysis. The absence of any known CVEs and its reliance on prepared statements for all SQL queries are significant strengths. Furthermore, the plugin correctly implements nonce checks for all its AJAX handlers and capability checks for its identified entry points, indicating good practices in preventing unauthorized access and actions. The limited number of external HTTP requests and file operations also contribute to a reduced attack surface.
However, there are minor areas for improvement. The 75% rate of properly escaped output suggests that approximately one-quarter of the plugin's output might be vulnerable to Cross-Site Scripting (XSS) if user-controlled data is involved in those unescaped portions. While the taint analysis didn't reveal critical or high severity issues, the presence of two flows with unsanitized paths, even if of lower severity, warrants attention. These represent potential avenues for injection attacks if exploited. The lack of any vulnerability history is positive, but it's important to acknowledge that this could also be due to a lack of widespread auditing or testing.
In conclusion, 'my-reading-time-lite' v1.0.3 is a relatively secure plugin with robust authentication and data handling mechanisms. The primary concern lies with the unescaped output and the identified unsanitized paths in taint flows, which, while not critical, could be exploited under specific circumstances. Continued vigilance in code review and ensuring all output is properly sanitized would further enhance its security.
Key Concerns
- Unescaped output detected
- Taint flows with unsanitized paths
My Reading Time Lite Security Vulnerabilities
My Reading Time Lite Code Analysis
Output Escaping
Data Flow Analysis
My Reading Time Lite Attack Surface
AJAX Handlers 6
Shortcodes 1
WordPress Hooks 21
Maintenance & Trust
My Reading Time Lite Maintenance & Trust
Maintenance Signals
Community Trust
My Reading Time Lite Alternatives
Reading Time WP
reading-time-wp
Reading Time WP creates an estimated reading time of your posts that is inserted above the content or by using a shortcode.
Just Writing Statistics
just-writing-statistics
Calculate your writing statistics on your WordPress site.
Reading Time
reading-time
Reading Time shows the estimated reading time and puts an animated progress bar inside the post.
Timify
timify
With Timify, let your audience know about the last modified date, publish date, and reading time of your articles. You can also customize each setting …
Article Read Time Lite – WordPress plugin for displaying total reading time and progress bar
article-read-time-lite
Calculate and display total reading time| Calculate and display Characters and Words | Progress Bar
My Reading Time Lite Developer Profile
45 plugins · 43K total installs
How We Detect My Reading Time Lite
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/my-reading-time-lite/assets/css/frontend.css/wp-content/plugins/my-reading-time-lite/assets/css/frontend.min.css/wp-content/plugins/my-reading-time-lite/assets/js/frontend.js/wp-content/plugins/my-reading-time-lite/assets/js/frontend.min.js/wp-content/plugins/my-reading-time-lite/assets/js/frontend.js/wp-content/plugins/my-reading-time-lite/assets/js/frontend.min.jsmy-reading-time-lite/assets/css/frontend.css?ver=my-reading-time-lite/assets/js/frontend.js?ver=HTML / DOM Fingerprints
jlt-reading-timejlt-reading-time-icon