
Website Optimization – Plerdy Security & Risk Analysis
wordpress.org/plugins/plerdy-heatmapOptimize your website with Plerdy by analyzing traffic sources, scroll depth, user clicks, and usability to enhance conversion and strategy.
Is Website Optimization – Plerdy Safe to Use in 2026?
Generally Safe
Score 100/100Website Optimization – Plerdy has a strong security track record. Known vulnerabilities have been patched promptly.
The plerd-heatmap v1.4.5 plugin presents a generally positive security posture based on the provided static analysis. The absence of critical findings in the attack surface, code signals like dangerous functions, and taint analysis is encouraging. Furthermore, all SQL queries are properly prepared, indicating good practice in database interaction. However, the 50% rate of improperly escaped output is a significant concern, as it exposes the plugin to potential Cross-Site Scripting (XSS) vulnerabilities where user-supplied data is displayed without proper sanitization. The vulnerability history reveals one past medium-severity XSS vulnerability, which, while currently patched, highlights a recurring risk area. The lack of recent unpatched CVEs is a strength, but the past incident combined with the current unescaped output necessitates vigilance.
Key Concerns
- Improper output escaping
- Past medium severity XSS vulnerability
Website Optimization – Plerdy Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Website Optimization – Plerdy <= 1.3.2 - Authenticated (Admin+) Stored Cross-Site Scripting
Website Optimization – Plerdy Code Analysis
Output Escaping
Website Optimization – Plerdy Attack Surface
WordPress Hooks 7
Maintenance & Trust
Website Optimization – Plerdy Maintenance & Trust
Maintenance Signals
Community Trust
Website Optimization – Plerdy Alternatives
ShinyStat Analytics
shinystat-analytics
Plugin to activate the ShinyStat Analytics services on your website.
SEO SIMPLE PACK
seo-simple-pack
This is a very simple SEO plugin. You can easily set and customize meta tags and OGP tags for each page.
CallRail Phone Call Tracking
callrail-phone-call-tracking
Dynamically swap CallRail tracking phone numbers based on the visitor's referring source.
Mouseflow for WordPress
mouseflow-for-wordpress
Mouseflow gives you free and easy-to-use conversion and user experience analytics for your website. Analyze conversion funnels, heatmaps and even sess …
Lucky Orange
lucky-orange
Less time crunching numbers, more time growing your business.
Website Optimization – Plerdy Developer Profile
1 plugin · 1K total installs
How We Detect Website Optimization – Plerdy
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/plerdy-heatmap/js/click/main.js/wp-content/plugins/plerdy-heatmap/js/ab/plerdy_ab-min.jsplerdy_heatmap/js/click/main.js?v=plerdy_heatmap/js/ab/plerdy_ab-min.js?v=HTML / DOM Fingerprints
imgplerdynonewaperform-plerdyBEGIN PLERDY CODEEND PLERDY CODEBEGIN PLERDY A/B TESTING CODEEND PLERDY A/B TESTING CODEdata-plerdy_code='1'data-plerdymainscript='plerdymainscript'plerdyScriptplerdaScriptplerdymainscriptplerda_ab-min.jsplerdy_ab-min.jsplerdaSend