NDT Duplicate Security & Risk Analysis

wordpress.org/plugins/ndt-duplicate

NDT Duplicate allows you to easily duplicate (clone) WordPress posts, pages, or custom post types with customizable options.

0 active installs v1.0.2 PHP 7.0+ WP 4.9+ Updated Aug 10, 2025
clonecustom-post-typeduplicatepagepost
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is NDT Duplicate Safe to Use in 2026?

Generally Safe

Score 100/100

NDT Duplicate has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 9mo ago
Risk Assessment

The 'ndt-duplicate' plugin v1.0.2 exhibits a strong security posture based on the provided static analysis. The absence of any AJAX handlers, REST API routes, shortcodes, or cron events significantly limits the plugin's attack surface. Furthermore, the code demonstrates robust security practices, including 100% proper output escaping, no dangerous functions used, and all SQL queries employing prepared statements. The presence of nonce and capability checks indicates an awareness of authentication and authorization best practices.

The taint analysis shows no identified flows with unsanitized paths, suggesting no immediate risks of injection vulnerabilities or data leakage. The plugin's vulnerability history is also clean, with no known CVEs recorded, further reinforcing its current secure state. This plugin appears to be developed with security in mind, adhering to common WordPress security recommendations.

While the plugin's current static analysis and vulnerability history are highly positive, it's important to note that the limited attack surface means there's less opportunity to find flaws. Future updates or expanded functionality could introduce new risks, so ongoing monitoring would be prudent. However, based solely on the data provided, the plugin presents a very low security risk.

Vulnerabilities
None known

NDT Duplicate Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

NDT Duplicate Release Timeline

v1.0.2Current
v1.0.0
Code Analysis
Analyzed Apr 16, 2026

NDT Duplicate Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
88 escaped
Nonce Checks
1
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped88 total outputs
Attack Surface

NDT Duplicate Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 6
actionadmin_menuincludes/admin-menu.php:42
actioninitincludes/duplicate-actions.php:43
actionadmin_action_NDTAN_DUPLICATE_duplicate_postincludes/duplicate-actions.php:142
actionadmin_initincludes/settings.php:18
actionadmin_enqueue_scriptsndt-duplicate.php:51
actionadmin_enqueue_scriptsndt-duplicate.php:66
Maintenance & Trust

NDT Duplicate Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedAug 10, 2025
PHP min version7.0
Downloads401

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

NDT Duplicate Developer Profile

Tony Nguyen

3 plugins · 0 total installs

92
trust score
Avg Security Score
97/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect NDT Duplicate

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/ndt-duplicate/assets/css/admin.css/wp-content/plugins/ndt-duplicate/assets/js/admin.js/wp-content/plugins/ndt-duplicate/assets/css/bootstrap.min.css/wp-content/plugins/ndt-duplicate/assets/js/bootstrap.bundle.min.js
Script Paths
/wp-content/plugins/ndt-duplicate/assets/js/admin.js/wp-content/plugins/ndt-duplicate/assets/js/bootstrap.bundle.min.js
Version Parameters
ndt-duplicate/assets/css/admin.css?ver=ndt-duplicate/assets/js/admin.js?ver=ndt-duplicate/assets/css/bootstrap.min.css?ver=ndt-duplicate/assets/js/bootstrap.bundle.min.js?ver=

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about NDT Duplicate