Post Word Counter and Thumbnail Checker Security & Risk Analysis

wordpress.org/plugins/post-word-counter-and-thumbnail-checker

Simple Post Word Counter and Check which post has thumbnail or not.

10 active installs v1.0 PHP 7.0+ WP 4.7+ Updated Unknown
post-thumbnail-checkerword-counterwp-post-word-counter
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Post Word Counter and Thumbnail Checker Safe to Use in 2026?

Generally Safe

Score 100/100

Post Word Counter and Thumbnail Checker has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs
Risk Assessment

The plugin 'post-word-counter-and-thumbnail-checker' v1.0 exhibits a strong security posture based on the provided static analysis. The absence of identified dangerous functions, the exclusive use of prepared statements for SQL queries, and complete output escaping are excellent security practices. Furthermore, the plugin demonstrates a minimal attack surface with no AJAX handlers, REST API routes, shortcodes, or cron events, and notably, no unprotected entry points were found. The lack of any recorded vulnerabilities in its history further reinforces this positive assessment.

However, a significant concern arises from the complete absence of nonce checks and capability checks. While the current attack surface is small, any future additions or modifications that introduce user-interactable entry points without these fundamental security mechanisms would significantly increase the risk of Cross-Site Request Forgery (CSRF) and unauthorized access vulnerabilities. The taint analysis results are also absent, which, while indicating no immediate findings, doesn't provide a complete picture of potential data flow risks. The overall security is good due to the current code quality, but the lack of essential authorization checks is a notable weakness that could be exploited if the plugin's functionality expands or is integrated in a way that exposes it to further attack vectors.

Key Concerns

  • Missing nonce checks
  • Missing capability checks
Vulnerabilities
None known

Post Word Counter and Thumbnail Checker Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Post Word Counter and Thumbnail Checker Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
17 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped17 total outputs
Attack Surface

Post Word Counter and Thumbnail Checker Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 11
actionplugins_loadedpost-word-counter-and-thumbnail-checker.php:18
actioninitpost-word-counter-and-thumbnail-checker.php:36
actionpre_get_postspost-word-counter-and-thumbnail-checker.php:52
actionsave_postpost-word-counter-and-thumbnail-checker.php:63
filtermanage_posts_columnspost-word-counter-and-thumbnail-checker.php:76
actionmanage_posts_custom_columnpost-word-counter-and-thumbnail-checker.php:95
filtermanage_edit-post_sortable_columnspost-word-counter-and-thumbnail-checker.php:104
actionrestrict_manage_postspost-word-counter-and-thumbnail-checker.php:132
actionpre_get_postspost-word-counter-and-thumbnail-checker.php:174
actionrestrict_manage_postspost-word-counter-and-thumbnail-checker.php:202
actionpre_get_postspost-word-counter-and-thumbnail-checker.php:230
Maintenance & Trust

Post Word Counter and Thumbnail Checker Maintenance & Trust

Maintenance Signals

WordPress version tested5.8.13
Last updatedUnknown
PHP min version7.0
Downloads752

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Post Word Counter and Thumbnail Checker Developer Profile

ratulkhan

1 plugin · 10 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Post Word Counter and Thumbnail Checker

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Post Word Counter and Thumbnail Checker