Pic Tag Security & Risk Analysis

wordpress.org/plugins/pic-tag

Tag object in image using Deep learning

30 active installs v0.1.0 PHP 7.0+ WP 6.2.2+ Updated Unknown
blockdeep-learningpic-tagtensorflowjs
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Pic Tag Safe to Use in 2026?

Generally Safe

Score 100/100

Pic Tag has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs
Risk Assessment

Based on the provided static analysis, the pic-tag v0.1.0 plugin exhibits a seemingly strong security posture. There are no identified dangerous functions, all SQL queries (though none exist in this analysis) would have been prepared, and all output is properly escaped. Furthermore, the absence of file operations, external HTTP requests, and the fact that all entry points (AJAX, REST API, shortcodes, cron events) are either nonexistent or protected (as indicated by 0 unprotected entry points) are positive signs. The lack of any recorded vulnerabilities in its history, including critical or high severity ones, further contributes to this perception of safety. This suggests the developers have likely followed good security practices in its development and maintenance thus far.

Key Concerns

  • No identified entry points for attack
  • No dangerous functions detected
  • SQL queries are not applicable or all prepared
  • Output is properly escaped
  • No file operations detected
  • No external HTTP requests detected
  • No nonce checks detected (though also no relevant entry points)
  • No capability checks detected (though also no relevant entry points)
  • No bundled libraries
  • No taint analysis issues found
  • No known vulnerabilities (CVEs)
Vulnerabilities
None known

Pic Tag Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Pic Tag Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

Pic Tag Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 1
actioninitpic-tag.php:28
Maintenance & Trust

Pic Tag Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedUnknown
PHP min version7.0
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs30
Developer Profile

Pic Tag Developer Profile

UjW0L

17 plugins · 2K total installs

93
trust score
Avg Security Score
99/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Pic Tag

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Pic Tag