Post Story Carousel Block Security & Risk Analysis

wordpress.org/plugins/post-story-carousel-block

A Gutenberg block that displays a carousel of posts as story cards, allowing customization of layout and appearance.

0 active installs v2.0 PHP 7.0+ WP 5.6+ Updated Aug 31, 2025
blockcarouselgutenbergpostsstory
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Post Story Carousel Block Safe to Use in 2026?

Generally Safe

Score 100/100

Post Story Carousel Block has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 8mo ago
Risk Assessment

Based on the provided static analysis and vulnerability history, the "post-story-carousel-block" plugin v2.0 exhibits a strong security posture. The absence of any identified dangerous functions, SQL queries that are exclusively prepared, and 100% output escaping indicate robust coding practices. Furthermore, the lack of file operations, external HTTP requests, and a clean taint analysis with no unsanitized paths further bolster its security. The plugin's vulnerability history is also clean, with no recorded CVEs, suggesting a history of secure development and maintenance.

However, a notable concern arises from the complete absence of nonce checks and capability checks across all potential entry points, even though the static analysis reports zero entry points. If there were any, this would be a significant oversight. The lack of these fundamental WordPress security mechanisms, when entry points are present, would leave the plugin vulnerable to various attacks, especially if any entry points were to be introduced or exposed in future versions. Despite the current clean slate, the absence of these checks represents a potential weakness that could be exploited.

Key Concerns

  • No nonce checks
  • No capability checks
Vulnerabilities
None known

Post Story Carousel Block Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Post Story Carousel Block Release Timeline

v2.0Current
v1.0
v1.0.0
Code Analysis
Analyzed Mar 17, 2026

Post Story Carousel Block Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
42 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped42 total outputs
Attack Surface

Post Story Carousel Block Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 3
actionenqueue_block_editor_assetspost-story-carousel-block.php:55
actionenqueue_block_assetspost-story-carousel-block.php:66
actioninitpost-story-carousel-block.php:77
Maintenance & Trust

Post Story Carousel Block Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedAug 31, 2025
PHP min version7.0
Downloads999

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Post Story Carousel Block Developer Profile

soyeb salar

2 plugins · 10 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Post Story Carousel Block

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/post-story-carousel-block/build/index.js/wp-content/plugins/post-story-carousel-block/src/editor.css/wp-content/plugins/post-story-carousel-block/build/style-index.css/wp-content/plugins/post-story-carousel-block/src/scrolling-functions.js
Script Paths
/wp-content/plugins/post-story-carousel-block/build/index.js/wp-content/plugins/post-story-carousel-block/src/scrolling-functions.js
Version Parameters
post-story-carousel-block/build/index.js?ver=post-story-carousel-block/src/editor.css?ver=post-story-carousel-block/build/style-index.css?ver=

HTML / DOM Fingerprints

CSS Classes
sspsgb-carouselsspsgb-story-containersspsgb-card
Data Attributes
data-post-typedata-categorydata-number-of-postsdata-font-sizedata-font-familydata-font-color+16 more
JS Globals
sspsgbPostTypessspsgbpPath
Shortcode Output
<div class="sspsgb-carousel"
FAQ

Frequently Asked Questions about Post Story Carousel Block