
Prjcts Security & Risk Analysis
wordpress.org/plugins/prjctsEffortlessly create a custom post type to organize projects with custom categories and flexible URL settings, perfect for WordPress theme developers.
Is Prjcts Safe to Use in 2026?
Generally Safe
Score 100/100Prjcts has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The static analysis of the "prjcts" plugin v1.0.3 indicates a strong security posture in terms of code practices. There are no detected dangerous functions, all SQL queries utilize prepared statements, and all output is properly escaped. Furthermore, the plugin performs no file operations or external HTTP requests. This suggests a well-written codebase that adheres to secure development principles. The absence of any AJAX handlers, REST API routes, shortcodes, or cron events significantly limits the plugin's attack surface, which is a major strength.
However, the static analysis also reveals a complete lack of nonces and capability checks. While the attack surface is currently zero, this absence of fundamental security mechanisms is a significant concern. If functionality is ever added to the plugin, or if it interacts with other WordPress components in unexpected ways, this oversight could easily lead to vulnerabilities. The taint analysis reporting zero flows, while positive, is also limited by the lack of any entry points detected in the static analysis, suggesting the analysis might be incomplete due to the minimal attack surface.
The plugin's vulnerability history is entirely clean, with no known CVEs recorded. This, combined with the excellent coding practices observed, suggests the plugin has historically been secure. However, the lack of any detected entry points in the static analysis makes it difficult to definitively assess its current security. The key weakness lies in the foundational security checks that are completely missing, which presents a latent risk should the plugin's functionality evolve.
Key Concerns
- Missing nonce checks on AJAX
- Missing capability checks on entry points
Prjcts Security Vulnerabilities
Prjcts Code Analysis
Output Escaping
Prjcts Attack Surface
WordPress Hooks 6
Maintenance & Trust
Prjcts Maintenance & Trust
Maintenance Signals
Community Trust
Prjcts Alternatives
Zilla Portfolio
zillaportfolio
A complete portfolio plugin for creative folks
Portfolio CPT
portfolio-cpt
Enables a 'Portfolio' type and 'Portfolio Tags' taxonomy.
AS Project Portfolio
as-project-portfolio
A simple plugin to add a custom post type for managing and displaying project portfolios with a shortcode and admin dashboard.
WPZOOM Portfolio Lite – Filterable Portfolio Plugin
wpzoom-portfolio
Portfolio plugin for WordPress. Create filterable portfolio grids with masonry layouts and lightbox. Ideal for photographers, designers, agencies.
Real Custom Post Order: Create a custom order for your content
real-custom-post-order
Custom post order for posts, pages, WooCommerce products and custom post types using drag and drop. Simple and intuitive sorting of your content!
Prjcts Developer Profile
1 plugin · 0 total installs
How We Detect Prjcts
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/prjcts/dist/css/style.css/wp-content/plugins/prjcts/dist/js/main.js/wp-content/plugins/prjcts/dist/js/main.jsprjcts/dist/css/style.css?ver=prjcts/dist/js/main.js?ver=HTML / DOM Fingerprints
prjcts-project-categoryprjcts-featured-imageprjcts-project-iddata-prjcts-idprjcts_params/wp-json/prjcts/v1/projects