Post Kits for Elementor Security & Risk Analysis

wordpress.org/plugins/post-kits-for-elementor

Easily & Fast create unique news, blog or magazine website using Elementor.

100 active installs v3.2 PHP 5.2.4+ WP 4.2+ Updated Sep 24, 2020
elementor-kitselementor-postelementor-widgets
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Post Kits for Elementor Safe to Use in 2026?

Generally Safe

Score 85/100

Post Kits for Elementor has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5yr ago
Risk Assessment

The static analysis of 'post-kits-for-elementor' v3.2 indicates a generally strong security posture. The plugin demonstrates excellent practices by avoiding dangerous functions, utilizing prepared statements for all SQL queries, and properly escaping a high percentage of its output. The absence of file operations, external HTTP requests, and taint flows with unsanitized paths further contributes to this positive assessment. Furthermore, the plugin's vulnerability history is clean, with no recorded CVEs, suggesting a commitment to security or a lack of past significant issues.

However, there are notable areas for improvement and potential underlying risks. The complete absence of AJAX handlers, REST API routes, shortcodes, and cron events results in a very small attack surface. While this is generally good, it also means that there are no explicit capability checks or nonce checks present on any potential entry points, as there are none identified. This could be a missed opportunity to implement robust authorization and protection mechanisms should any entry points be introduced in future versions or if the static analysis missed something. The lack of direct evidence for capability checks and nonce checks on any potential, albeit absent, entry points is a concern for future extensibility and overall defensive depth.

In conclusion, 'post-kits-for-elementor' v3.2 is currently well-secured based on the provided data, with strong coding practices evident. Its clean vulnerability history is a significant positive. The primary area of concern lies in the complete absence of any identified entry points, which, while seemingly secure now, means no explicit authorization or protection mechanisms (like nonce or capability checks) are in place. This could become a weakness if the plugin evolves or if its functionality is extended in ways that introduce new entry points without corresponding security measures.

Key Concerns

  • Missing nonce checks on entry points
  • Missing capability checks on entry points
Vulnerabilities
None known

Post Kits for Elementor Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Post Kits for Elementor Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
25
370 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

94% escaped395 total outputs
Attack Surface

Post Kits for Elementor Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 18
actioncategory_add_form_fieldsincludes\colorpicker.php:32
actioncategory_edit_form_fieldsincludes\colorpicker.php:72
actioncreated_categoryincludes\colorpicker.php:102
actionedited_categoryincludes\colorpicker.php:103
actionadmin_enqueue_scriptsincludes\colorpicker.php:127
actionadmin_print_scriptsincludes\colorpicker.php:156
actionelementor/widgets/widgets_registeredincludes\widget-register.php:15
actionelementor/widgets/widgets_registeredincludes\widget-register.php:16
actionelementor/widgets/widgets_registeredincludes\widget-register.php:17
actionelementor/widgets/widgets_registeredincludes\widget-register.php:18
actionplugins_loadedpost-kits-for-elementor.php:35
actionelementor/initpost-kits-for-elementor.php:37
actionelementor/frontend/after_register_scriptspost-kits-for-elementor.php:40
actionelementor/frontend/after_enqueue_stylespost-kits-for-elementor.php:43
actionelementor/editor/after_enqueue_stylespost-kits-for-elementor.php:46
actionafter_setup_themepost-kits-for-elementor.php:49
actionadmin_noticespost-kits-for-elementor.php:58
actionadmin_noticespost-kits-for-elementor.php:64
Maintenance & Trust

Post Kits for Elementor Maintenance & Trust

Maintenance Signals

WordPress version tested5.3.21
Last updatedSep 24, 2020
PHP min version5.2.4
Downloads11K

Community Trust

Rating90/100
Number of ratings4
Active installs100
Developer Profile

Post Kits for Elementor Developer Profile

Alithemes

3 plugins · 150 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Post Kits for Elementor

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/post-kits-for-elementor/assets/css/bootstrap.min.css/wp-content/plugins/post-kits-for-elementor/assets/css/swiper.css/wp-content/plugins/post-kits-for-elementor/assets/css/themify-icons.css/wp-content/plugins/post-kits-for-elementor/assets/css/frontend-style.css/wp-content/plugins/post-kits-for-elementor/assets/css/responsive.css/wp-content/plugins/post-kits-for-elementor/assets/css/widget-porfolio.css/wp-content/plugins/post-kits-for-elementor/assets/css/backend-style.css/wp-content/plugins/post-kits-for-elementor/assets/js/main-script.js+3 more
Version Parameters
post-kits-for-elementor/assets/css/bootstrap.min.css?ver=post-kits-for-elementor/assets/css/swiper.css?ver=post-kits-for-elementor/assets/css/themify-icons.css?ver=post-kits-for-elementor/assets/css/frontend-style.css?ver=post-kits-for-elementor/assets/css/responsive.css?ver=post-kits-for-elementor/assets/css/widget-porfolio.css?ver=post-kits-for-elementor/assets/css/backend-style.css?ver=post-kits-for-elementor/assets/js/main-script.js?ver=post-kits-for-elementor/assets/js/swiper.js?ver=post-kits-for-elementor/assets/js/jquery.filterizr.min.js?ver=post-kits-for-elementor/assets/js/alith-filterizr.js?ver=

HTML / DOM Fingerprints

CSS Classes
alith_epk
HTML Comments
<!-- Add new colorpicker field to "Add new Category" screen -->
Data Attributes
name="_category_color"class="colorpicker"
JS Globals
Alith_Post_Kits_For_Elementor
FAQ

Frequently Asked Questions about Post Kits for Elementor