
Patternly – Gutenberg Starter Templates, Patterns, WordPress Landing Pages & Sites Security & Risk Analysis
wordpress.org/plugins/patternlyGutenberg template library to build full sites with starter templates, patterns, landing pages and ready sites for WordPress block editor.
Is Patternly – Gutenberg Starter Templates, Patterns, WordPress Landing Pages & Sites Safe to Use in 2026?
Generally Safe
Score 100/100Patternly – Gutenberg Starter Templates, Patterns, WordPress Landing Pages & Sites has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin 'patternly' v1.1.9 presents a mixed security posture. On the positive side, it demonstrates good practices by exclusively using prepared statements for all SQL queries and shows a high percentage of properly escaped output, minimizing risks of SQL injection and cross-site scripting. The absence of known vulnerabilities in its history is also a strong indicator of careful development. However, the plugin exhibits significant concerns regarding its attack surface. A substantial portion of its entry points, specifically 4 out of 5, lack explicit permission callbacks. This means that these AJAX handlers and REST API routes are potentially accessible to unauthenticated users, creating a substantial risk of unauthorized access and potential manipulation of plugin functionality.
While taint analysis shows no critical or high severity flows and there are no direct dangerous function calls, the unprotected entry points represent a tangible risk that could be exploited by attackers. The plugin's vulnerability history is clean, which is excellent, but it does not negate the risks identified in the static analysis. The core weakness lies in the insufficient authentication/authorization checks for its exposed endpoints. In conclusion, 'patternly' has good internal coding practices regarding data handling but suffers from a critical flaw in its external interface security, requiring immediate attention to protect against unauthorized access.
Key Concerns
- REST API routes without permission callbacks
- AJAX handlers without auth checks
Patternly – Gutenberg Starter Templates, Patterns, WordPress Landing Pages & Sites Security Vulnerabilities
Patternly – Gutenberg Starter Templates, Patterns, WordPress Landing Pages & Sites Code Analysis
Output Escaping
Patternly – Gutenberg Starter Templates, Patterns, WordPress Landing Pages & Sites Attack Surface
AJAX Handlers 1
REST API Routes 4
WordPress Hooks 10
Maintenance & Trust
Patternly – Gutenberg Starter Templates, Patterns, WordPress Landing Pages & Sites Maintenance & Trust
Maintenance Signals
Community Trust
Patternly – Gutenberg Starter Templates, Patterns, WordPress Landing Pages & Sites Alternatives
Blocks Starter Templates
blocks-starter-templates
Starter templates and patterns library. Ready-to-use Gutenberg templates that work with every theme. Created only with in-built WP blocks.
Starter Templates – AI-Powered Templates for Elementor & Gutenberg
astra-sites
The growing library of 300+ ready-to-use templates that work with all WordPress themes including Astra, Hello, OceanWP, GeneratePress and more
Extendify
extendify
The best WordPress templates, pattern, and layout library with 1,000+ designs built for the Gutenberg block editor.
Templately – Elementor & Gutenberg Template Library: 6500+ Free & Pro Ready Templates And Cloud!
templately
Templately is an AI-powered WordPress templates cloud for Elementor and Gutenberg that offers 6,500+ ready template designs for a wide range of niches
Gutenberg Essential Blocks – Page Builder for Gutenberg Blocks & Patterns
essential-blocks
Gutenberg block editor with AI. 70+ Gutenberg blocks, patterns, WooCommerce blocks, post grid, gallery, menu with Gutenberg block library.
Patternly – Gutenberg Starter Templates, Patterns, WordPress Landing Pages & Sites Developer Profile
4 plugins · 1K total installs
How We Detect Patternly – Gutenberg Starter Templates, Patterns, WordPress Landing Pages & Sites
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/patternly/build/style-backend.css/wp-content/plugins/patternly/build/backend.js/wp-content/plugins/patternly/build/style-frontend.css/wp-content/plugins/patternly/build/frontend.js/wp-content/plugins/patternly/build/backend.js/wp-content/plugins/patternly/build/frontend.jspatternly/build/style-backend.css?ver=patternly/build/backend.js?ver=patternly/build/style-frontend.css?ver=patternly/build/frontend.js?ver=HTML / DOM Fingerprints
block-editor-pagedata-pat-block-iddata-pat-content-typePatLocalizepatternly_script/wp-json/optemiz/v1/patternly/save-as-favourite