PRO Sitemaps Connect Security & Risk Analysis

wordpress.org/plugins/pro-sitemaps-connect

This plugin is turning an XML Sitemap created by PRO Sitemaps service into a self-hosted sitemap by serving it directly using your website domain

200 active installs v1.7 PHP 7.2+ WP 6.0+ Updated Nov 28, 2025
pro-sitemapssearch-engineseositemapxml
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is PRO Sitemaps Connect Safe to Use in 2026?

Generally Safe

Score 100/100

PRO Sitemaps Connect has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4mo ago
Risk Assessment

The plugin 'pro-sitemaps-connect' v1.7 exhibits a generally strong security posture based on the provided static analysis. The absence of any entry points like AJAX handlers, REST API routes, or shortcodes significantly limits the plugin's attack surface. Furthermore, the code signals indicate good development practices with all SQL queries using prepared statements and a high percentage of output being properly escaped. The fact that there are no known vulnerabilities (CVEs) recorded for this plugin is also a positive indicator.

Key Concerns

  • Flows with unsanitized paths detected
  • External HTTP requests made
  • Only one capability check
  • No nonce checks found
Vulnerabilities
None known

PRO Sitemaps Connect Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

PRO Sitemaps Connect Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
7
31 escaped
Nonce Checks
0
Capability Checks
1
File Operations
0
External Requests
1
Bundled Libraries
0

Output Escaping

82% escaped38 total outputs
Data Flows
1 unsanitized

Data Flow Analysis

1 flows1 with unsanitized paths
format_toggled_box (pro-sitemaps-settings.php:368)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

PRO Sitemaps Connect Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 8
filterrobots_txtpro-sitemaps-api.php:38
filterquery_varspro-sitemaps-api.php:40
actioninitpro-sitemaps-api.php:41
actionparse_querypro-sitemaps-api.php:42
actiontransition_post_statuspro-sitemaps-api.php:45
actionadmin_initpro-sitemaps-settings.php:40
actionadmin_menupro-sitemaps-settings.php:41
filterplugin_action_links_pro-sitemaps-connect/pro-sitemaps-connect.phppro-sitemaps-settings.php:112
Maintenance & Trust

PRO Sitemaps Connect Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedNov 28, 2025
PHP min version7.2
Downloads3K

Community Trust

Rating0/100
Number of ratings0
Active installs200
Developer Profile

PRO Sitemaps Connect Developer Profile

Oleg Ignatiuk

1 plugin · 200 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect PRO Sitemaps Connect

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/pro-sitemaps-connect/pro-sitemaps-settings.php/wp-content/plugins/pro-sitemaps-connect/pro-sitemaps-api.php

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about PRO Sitemaps Connect