PPM Tooltip Security & Risk Analysis

wordpress.org/plugins/ppm-tooltip

This plugin will enable tooltip in your Wordpress theme.

10 active installs v1.0 PHP + WP 3.3+ Updated Jul 27, 2013
bootstrap-tooltipjquery-tooltip
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is PPM Tooltip Safe to Use in 2026?

Generally Safe

Score 85/100

PPM Tooltip has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 12yr ago
Risk Assessment

Based on the static analysis results and vulnerability history, the 'ppm-tooltip' v1.0 plugin appears to have a very strong security posture. The absence of any identified dangerous functions, SQL queries not using prepared statements, or unsanitized output suggests diligent coding practices. Furthermore, the lack of any recorded vulnerabilities, including critical or high severity ones, reinforces this positive assessment. The plugin also demonstrates a minimal attack surface, with no observable AJAX handlers, REST API routes, shortcodes, or cron events that could be exploited.

While the lack of explicit capability and nonce checks might be a concern in other contexts, the fact that there are no apparent entry points (AJAX, REST, shortcodes, cron) significantly mitigates the risk associated with these omissions. The plugin appears to be designed in a way that avoids common attack vectors.

In conclusion, 'ppm-tooltip' v1.0 shows excellent security hygiene. The data indicates a plugin built with security in mind, exhibiting a clean codebase, no known vulnerabilities, and a negligible attack surface. Any perceived weaknesses are largely theoretical due to the absence of exploitable entry points, making it a very low-risk plugin at this version.

Vulnerabilities
None known

PPM Tooltip Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

PPM Tooltip Release Timeline

No version history available.
Code Analysis
Analyzed Apr 16, 2026

PPM Tooltip Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

PPM Tooltip Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 1
actioninitplugin-hook.php:20
Maintenance & Trust

PPM Tooltip Maintenance & Trust

Maintenance Signals

WordPress version tested3.5.2
Last updatedJul 27, 2013
PHP min version
Downloads2K

Community Trust

Rating46/100
Number of ratings3
Active installs10
Developer Profile

PPM Tooltip Developer Profile

perfectpointmarketing

6 plugins · 630 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect PPM Tooltip

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/ppm-tooltip/js/ppm-tooltip.js/wp-content/plugins/ppm-tooltip/js/ppm-tooltip-active.js/wp-content/plugins/ppm-tooltip/css/style.css
Script Paths
/wp-content/plugins/ppm-tooltip/js/ppm-tooltip.js/wp-content/plugins/ppm-tooltip/js/ppm-tooltip-active.js
Version Parameters
ppm-tooltip-plugin-active=1.0

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about PPM Tooltip