Our Team Widget for Elementor Security & Risk Analysis

wordpress.org/plugins/our-team-widget-for-elementor

Our Team Widget for Elementor helps you showcase team member detail in a unique style.

300 active installs v1.3.8 PHP 7.0+ WP 5.9+ Updated Dec 11, 2025
elementor-addon-widgetelementor-team-widgetteam-membersteam-showcaseteam-staff
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Our Team Widget for Elementor Safe to Use in 2026?

Generally Safe

Score 100/100

Our Team Widget for Elementor has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3mo ago
Risk Assessment

The 'our-team-widget-for-elementor' plugin version 1.3.8 exhibits a strong security posture based on the provided static analysis. The absence of AJAX handlers, REST API routes, shortcodes, and cron events significantly limits the attack surface. Notably, there are no identified dangerous functions, file operations, or external HTTP requests, further contributing to its secure design. The code signals indicate a good practice of using prepared statements for all SQL queries and a high percentage (89%) of properly escaped output, minimizing the risk of SQL injection and cross-site scripting vulnerabilities.

However, the static analysis reveals some areas that, while not indicating immediate critical vulnerabilities, warrant attention. The complete lack of nonce checks across all identified entry points (even though there are none) and the presence of only four capability checks suggest a potential for privilege escalation or unauthorized access if new entry points are introduced in future updates without proper security controls. The taint analysis showing zero flows with unsanitized paths is a positive sign, but the zero flows analyzed overall might mean the analysis was not comprehensive enough to detect subtle issues.

Given the plugin's history of zero known CVEs, this indicates a consistent track record of security and good maintenance. The absence of any recorded vulnerabilities suggests the developers prioritize security. While the current version is robust with minimal evident risks, the limited number of capability checks and the lack of nonce checks (though not immediately exploitable due to the zero attack surface) are potential weaknesses that could be exploited if the plugin evolves or if new attack vectors are discovered. Overall, the plugin is currently secure, but future development should focus on maintaining and potentially expanding these security checks as the plugin grows.

Key Concerns

  • Missing nonce checks
  • Limited capability checks
  • Taint analysis not fully comprehensive (0 flows analyzed)
Vulnerabilities
None known

Our Team Widget for Elementor Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Our Team Widget for Elementor Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
2
16 escaped
Nonce Checks
0
Capability Checks
4
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

89% escaped18 total outputs
Attack Surface

Our Team Widget for Elementor Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 9
actionelementor/initincludes\fdelementor-loader.php:15
actioninitour-team-widget-for-elementor.php:108
actionplugins_loadedour-team-widget-for-elementor.php:109
actionadmin_noticesour-team-widget-for-elementor.php:144
actionadmin_noticesour-team-widget-for-elementor.php:150
actionadmin_noticesour-team-widget-for-elementor.php:153
actionadmin_noticesour-team-widget-for-elementor.php:159
actionelementor/widgets/widgets_registeredour-team-widget-for-elementor.php:163
actionelementor/frontend/after_enqueue_stylesour-team-widget-for-elementor.php:165
Maintenance & Trust

Our Team Widget for Elementor Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 11, 2025
PHP min version7.0
Downloads5K

Community Trust

Rating100/100
Number of ratings5
Active installs300
Developer Profile

Our Team Widget for Elementor Developer Profile

Aezaz Shaikh

4 plugins · 4K total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
8 days
View full developer profile
Detection Fingerprints

How We Detect Our Team Widget for Elementor

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/our-team-widget-for-elementor/assets/css/frontend.css/wp-content/plugins/our-team-widget-for-elementor/assets/js/frontend.js/wp-content/plugins/our-team-widget-for-elementor/assets/css/custom-styles.css
Script Paths
/wp-content/plugins/our-team-widget-for-elementor/assets/js/frontend.js
Version Parameters
our-team-widget-for-elementor/assets/css/frontend.css?ver=our-team-widget-for-elementor/assets/js/frontend.js?ver=our-team-widget-for-elementor/assets/css/custom-styles.css?ver=

HTML / DOM Fingerprints

CSS Classes
fd-team-member
Data Attributes
data-settings
JS Globals
FD_TEAM_WIDGET_URLFD_TEAM_WIDGET_PATHFD_OTW
FAQ

Frequently Asked Questions about Our Team Widget for Elementor