PageSwapper Security & Risk Analysis

wordpress.org/plugins/page-swapper

Create page-transitions

10 active installs v1.2.8 PHP + WP 3.0.1+ Updated Unknown
ajaxpage-animationpage-transitionrtoslider
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is PageSwapper Safe to Use in 2026?

Generally Safe

Score 100/100

PageSwapper has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs
Risk Assessment

The plugin "page-swapper" v1.2.8 exhibits a generally strong security posture based on the provided static analysis. The complete absence of known CVEs and the lack of any critical or high-severity vulnerabilities in its history are positive indicators. Furthermore, the code analysis reveals no dangerous functions, no unescaped output, and all SQL queries utilize prepared statements, which are excellent security practices. The limited attack surface with zero entry points is also a significant strength. However, the analysis does highlight potential areas for improvement. The complete lack of nonce checks and capability checks, combined with a file operation without further context, raises concerns about potential unauthorized actions or data manipulation if an attacker can trigger this file operation. While the absence of taint analysis flows is good, it doesn't guarantee the absence of vulnerabilities, especially in areas not covered by the specific taint checks performed. The overall conclusion is that "page-swapper" is currently a low-risk plugin due to its clean history and good coding practices, but the lack of input validation and permission checks on certain operations warrants caution and further investigation.

Key Concerns

  • Missing nonce checks
  • Missing capability checks
  • Unescaped output found
  • File operations without context
Vulnerabilities
None known

PageSwapper Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

PageSwapper Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
1
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
1
External Requests
0
Bundled Libraries
0

Output Escaping

0% escaped1 total outputs
Attack Surface

PageSwapper Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 4
actioncustomize_registeradmin\PageSwapperAdmin.php:61
actionadmin_menuadmin\PageSwapperAdmin.php:65
actionwp_footerpublic\PageSwapperPublic.php:75
actionwpcf7_form_action_urlpublic\PageSwapperPublic.php:76
Maintenance & Trust

PageSwapper Maintenance & Trust

Maintenance Signals

WordPress version tested5.0.25
Last updatedUnknown
PHP min version
Downloads4K

Community Trust

Rating100/100
Number of ratings1
Active installs10
Developer Profile

PageSwapper Developer Profile

rtowebsites

5 plugins · 62K total installs

74
trust score
Avg Security Score
93/100
Avg Patch Time
112 days
View full developer profile
Detection Fingerprints

How We Detect PageSwapper

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/page-swapper/admin/css/page-swapper-admin.css/wp-content/plugins/page-swapper/admin/js/page-swapper-admin.js
Script Paths
/wp-content/plugins/page-swapper/admin/js/page-swapper-admin.js
Version Parameters
page-swapper-admin.css?ver=page-swapper-admin.js?ver=

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about PageSwapper