
Ozh' Tweet Archiver Security & Risk Analysis
wordpress.org/plugins/ozh-tweet-archiverImport and archive your tweets with WordPress
Is Ozh' Tweet Archiver Safe to Use in 2026?
Generally Safe
Score 85/100Ozh' Tweet Archiver has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The ozh-tweet-archiver v2.0.4 plugin presents a generally positive security posture based on the provided static analysis and vulnerability history. The absence of identified CVEs, coupled with a lack of critical or high-severity issues in taint analysis, suggests a well-maintained codebase. The attack surface is minimal, with no unprotected entry points across AJAX handlers, REST API routes, or shortcodes. However, there are areas for improvement. The relatively low percentage of properly escaped output (24%) is a concern, as it indicates a higher risk of cross-site scripting (XSS) vulnerabilities, particularly if user-supplied data is not consistently sanitized before being displayed. Furthermore, the usage of raw SQL queries for 75% of the queries presents a risk of SQL injection if not handled with extreme care, although the absence of taint flows with unsanitized paths somewhat mitigates this immediate concern.
While the plugin demonstrates strengths in its limited attack surface and clean vulnerability history, the identified code signals regarding output escaping and SQL query preparedness warrant attention. The lack of capability checks on any entry points is a notable weakness that could be exploited if any vulnerabilities were to be introduced in the future. Overall, ozh-tweet-archiver v2.0.4 is relatively secure but could benefit from increased attention to output sanitization and the adoption of prepared statements for all SQL queries to further harden its security.
Key Concerns
- Low percentage of properly escaped output
- High percentage of SQL queries not using prepared statements
- No capability checks on entry points
Ozh' Tweet Archiver Security Vulnerabilities
Ozh' Tweet Archiver Code Analysis
SQL Query Safety
Output Escaping
Ozh' Tweet Archiver Attack Surface
WordPress Hooks 27
Scheduled Events 1
Maintenance & Trust
Ozh' Tweet Archiver Maintenance & Trust
Maintenance Signals
Community Trust
Ozh' Tweet Archiver Alternatives
Import Tweets as Posts
import-tweets-as-posts
"Import Tweets as Posts" plugin allows to easily import tweets from user's timeline or search query. It has also flexibility to import …
Customize Feeds for Twitter
twitter-tweets
Customize Feeds for Twitter plugin for WordPress. You can use this to display real time Twitter feeds on any where on your website by using shortcode …
Archivarix External Images Importer
archivarix-external-images-importer
Import external images in posts and pages from external sources or Web Archive if original sources are not available anymore.
Slim Jetpack
slimjetpack
Slim version of Jetpack unlinked from WordPress.com :) Supercharge your self-hosted wp site even you're NOT WP.COM users.
Display Tweets
display-tweets-php
Display Tweets is an easy to use, future proof Twitter feed plugin that uses PHP to make requests to the v1.1 Twitter REST API.
Ozh' Tweet Archiver Developer Profile
27 plugins · 5K total installs
How We Detect Ozh' Tweet Archiver
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/ozh-tweet-archiver/inc/utils.php/wp-content/plugins/ozh-tweet-archiver/inc/template_tags.php/wp-content/plugins/ozh-tweet-archiver/inc/settings.php/wp-content/plugins/ozh-tweet-archiver/inc/option-page.php/wp-content/plugins/ozh-tweet-archiver/inc/import.phpHTML / DOM Fingerprints
linkusernamehashtagKnown bug:HistoryFIXME Known bug:Constants that should work for everyone+3 moredata-screen_nameozh_ta