
Pebbls Travel Tracker Map Embed Security & Risk Analysis
wordpress.org/plugins/pebbls-journey-map-embedEasily embed customizable maps and journey stats from Pebbls into your WordPress site.
Is Pebbls Travel Tracker Map Embed Safe to Use in 2026?
Generally Safe
Score 100/100Pebbls Travel Tracker Map Embed has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "pebbls-journey-map-embed" v1.1.5 exhibits a generally strong security posture based on the provided static analysis. The absence of entry points like AJAX handlers, REST API routes, shortcodes, and cron events significantly reduces the potential attack surface. Furthermore, the code demonstrates good development practices with 100% of SQL queries using prepared statements and all output being properly escaped. The lack of file operations and dangerous functions further reinforces this positive assessment.
However, a notable concern is the presence of a single external HTTP request without any indication of authentication or capability checks surrounding it. This could potentially be a vector for information disclosure or influence on the plugin's behavior if the external service is compromised or malicious. The absence of nonce checks and capability checks across any potential, albeit currently nonexistent, entry points is also a potential weakness. While there are no currently known vulnerabilities or past CVEs recorded, this does not guarantee future safety, and vigilance is always recommended.
In conclusion, the plugin has implemented several key security best practices. The primary area for improvement lies in securing the external HTTP request. The lack of identified vulnerabilities in its history is a good sign, but the absence of explicit authorization checks on all potential interaction points warrants careful consideration.
Key Concerns
- External HTTP request without clear authorization checks
- Lack of nonce checks on potential entry points
- Lack of capability checks on potential entry points
Pebbls Travel Tracker Map Embed Security Vulnerabilities
Pebbls Travel Tracker Map Embed Code Analysis
Output Escaping
Pebbls Travel Tracker Map Embed Attack Surface
WordPress Hooks 3
Maintenance & Trust
Pebbls Travel Tracker Map Embed Maintenance & Trust
Maintenance Signals
Community Trust
Pebbls Travel Tracker Map Embed Alternatives
Geolocation
geolocation
Lightweight display the location information of your post in a map (GDPR comliant). Ideal for travelbloggers or anyone who would like to show the loca …
Photo Map Embed
photo-map-embed
Short Description: Turn EXIF GPS into an interactive map. Gutenberg block and shortcode. Edit pin titles; embed in seconds. No image uploads.
iframe
iframe
[iframe src="http://www.youtube.com/embed/7_nAZQt9qu0" width="100%" height="500"] shortcode
WP GPX Maps
wp-gpx-maps
Draws a GPX track with altitude graph. You can also display your nextgen gallery images in the map.
Sch.gr Commons
schgr-commons
Just copy/paste a URL of video from https://video.sch.gr, or a school location map from https://maps.sch.gr into your WordPress posts and see them emb …
Pebbls Travel Tracker Map Embed Developer Profile
1 plugin · 10 total installs
How We Detect Pebbls Travel Tracker Map Embed
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/pebbls-journey-map-embed/css/pebbls-block-styles.css/wp-content/plugins/pebbls-journey-map-embed/block.jspebbls-journey-map-embed/css/pebbls-block-styles.css?ver=HTML / DOM Fingerprints
data-pebbls-journeydata-pebbls-journey-heightdata-pebbls-show-statsdata-pebbls-show-mapdata-pebbls-rounded-cornersdata-pebbls-outline-border+3 morePebblsPluginData<p>Please select a journey to embed and ensure your API key is provided.</p>