OKR – Objectives Key Results Security & Risk Analysis

wordpress.org/plugins/objectives-key-results-okr

Objectives Key Results - OKR Plugin for WordPress to set goals and objectives. Simply create your objectives and key results to manage tasks easily.

10 active installs v1.1.0 PHP 5.4+ WP 5.0+ Updated Unknown
goalskey-resultsobjectivesokrtasks
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is OKR – Objectives Key Results Safe to Use in 2026?

Generally Safe

Score 100/100

OKR – Objectives Key Results has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs
Risk Assessment

The static analysis of the "objectives-key-results-okr" plugin v1.1.0 reveals a generally strong security posture. The plugin demonstrates good practices by avoiding dangerous functions, using prepared statements exclusively for SQL queries, and having a high percentage of properly escaped output. The absence of file operations and external HTTP requests further reduces the attack surface. Crucially, there are no recorded vulnerabilities (CVEs) for this plugin, indicating a history of stable and secure development or a lack of historical scrutiny that could mask latent issues.

However, there are areas for improvement. The plugin lacks capability checks on its entry points, which could potentially expose functionality to unauthorized users if specific roles are not explicitly restricted elsewhere. While there's a nonce check present, its effectiveness in conjunction with the lack of capability checks needs careful consideration. The absence of taint analysis results is also a point of concern, as it means potential vulnerabilities related to unsanitized data flows may not have been identified by the analysis performed.

In conclusion, the plugin exhibits strengths in its secure coding practices regarding data handling and SQL injection prevention. The lack of known vulnerabilities is a significant positive. The primary areas of concern stem from the absence of capability checks on entry points and the incomplete nature of the taint analysis, suggesting a need for more comprehensive security auditing to ensure all potential risks are addressed.

Key Concerns

  • Missing capability checks on entry points
  • No taint analysis results provided
Vulnerabilities
None known

OKR – Objectives Key Results Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

OKR – Objectives Key Results Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
1
20 escaped
Nonce Checks
1
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

95% escaped21 total outputs
Attack Surface

OKR – Objectives Key Results Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[okr] okr.php:44
WordPress Hooks 7
actionwp_enqueue_scriptsokr.php:23
actionadmin_enqueue_scriptsokr.php:24
actioninitokr.php:41
actionadd_meta_boxesokr.php:42
actionwp_insert_post_dataokr.php:43
actionadmin_menuokr.php:45
actionadmin_noticesokr.php:46
Maintenance & Trust

OKR – Objectives Key Results Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedUnknown
PHP min version5.4
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

OKR – Objectives Key Results Developer Profile

Mainul Kabir Aion

3 plugins · 60 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect OKR – Objectives Key Results

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about OKR – Objectives Key Results