EASY-JS-WPAPI Client HANDLE for the WordPress REST-API Security & Risk Analysis

wordpress.org/plugins/node-wpapi-auth

Short Description

10 active installs v2.0 PHP + WP 4.8+ Updated Unknown
basic-authenticationcookie-authenticationjavascript-clientnode-wpapiwpapi
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is EASY-JS-WPAPI Client HANDLE for the WordPress REST-API Safe to Use in 2026?

Generally Safe

Score 100/100

EASY-JS-WPAPI Client HANDLE for the WordPress REST-API has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs
Risk Assessment

The node-wpapi-auth v2.0 plugin exhibits a very strong security posture based on the provided static analysis. The plugin demonstrates excellent adherence to secure coding practices, with no identified unprotected entry points, dangerous functions, raw SQL queries, or file operations. All identified output is properly escaped, and SQL queries exclusively use prepared statements. The single capability check present suggests at least some level of access control is implemented, further bolstering its security.

The lack of any taint analysis findings, coupled with zero known vulnerabilities and no historical security issues, indicates a mature and well-maintained codebase. The absence of external HTTP requests and bundled libraries also minimizes potential attack vectors commonly found in other plugins. The overall design appears to prioritize security by minimizing its attack surface and employing robust defensive measures.

In conclusion, the node-wpapi-auth v2.0 plugin is assessed as highly secure. Its strengths lie in its minimal attack surface, strict adherence to secure coding principles, and a completely clean vulnerability history. There are no immediate security concerns identified based on the provided data, making it a low-risk plugin.

Vulnerabilities
None known

EASY-JS-WPAPI Client HANDLE for the WordPress REST-API Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

EASY-JS-WPAPI Client HANDLE for the WordPress REST-API Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
6 escaped
Nonce Checks
0
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped6 total outputs
Attack Surface

EASY-JS-WPAPI Client HANDLE for the WordPress REST-API Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 9
filterdetermine_current_usereasy-js-wpapi.php:79
filterdetermine_current_usereasy-js-wpapi.php:90
filterrest_authentication_errorseasy-js-wpapi.php:106
actionwp_enqueue_scriptseasy-js-wpapi.php:133
actionadmin_enqueue_scriptsfunctions.php:9
actionadmin_enqueue_scriptsfunctions.php:15
actionadmin_enqueue_scriptsfunctions.php:44
actionadmin_initoptions.php:9
actionadmin_menuoptions.php:21
Maintenance & Trust

EASY-JS-WPAPI Client HANDLE for the WordPress REST-API Maintenance & Trust

Maintenance Signals

WordPress version tested4.8.28
Last updatedUnknown
PHP min version
Downloads3K

Community Trust

Rating100/100
Number of ratings1
Active installs10
Alternatives

EASY-JS-WPAPI Client HANDLE for the WordPress REST-API Alternatives

No alternatives data available yet.

Developer Profile

EASY-JS-WPAPI Client HANDLE for the WordPress REST-API Developer Profile

Oluwasegun Somefun

1 plugin · 10 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect EASY-JS-WPAPI Client HANDLE for the WordPress REST-API

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/node-wpapi-auth/wpapi.min.js/wp-content/plugins/node-wpapi-auth/easy-js-wpapi.js/wp-content/plugins/node-wpapi-auth/options.css/wp-content/plugins/node-wpapi-auth/font-awesome/css/font-awesome.min.css/wp-content/plugins/node-wpapi-auth/font-awesome-animation/font-awesome-animation.min.css/wp-content/plugins/node-wpapi-auth/options.js
Script Paths
/wp-content/plugins/node-wpapi-auth/wpapi.min.js/wp-content/plugins/node-wpapi-auth/easy-js-wpapi.js/wp-content/plugins/node-wpapi-auth/options.js

HTML / DOM Fingerprints

HTML Comments
<!-- Start: Modified WordPress HTTP Basic Authentication. --><!-- End: Modified JSON Basic Authentication. --><!-- Register and Enqueue the NODE-WPAPI pre-built wpapi.js script; --><!-- Register, Localize and Enqueue the first-party script -->+4 more
Data Attributes
data-userstatedata-adminstate
JS Globals
WP_API_SettingsEasyJS_WPAPI_Options
REST Endpoints
/wp-json/
FAQ

Frequently Asked Questions about EASY-JS-WPAPI Client HANDLE for the WordPress REST-API