
SureFeedback Client Site Security & Risk Analysis
wordpress.org/plugins/projecthuddle-child-siteProvides a secure connection between your SureFeedback parent and client sites, syncing identities for WordPress-based commenting.
Is SureFeedback Client Site Safe to Use in 2026?
Generally Safe
Score 100/100SureFeedback Client Site has a strong security track record. Known vulnerabilities have been patched promptly.
The projecthuddle-child-site plugin exhibits a mixed security posture. While it demonstrates strong practices in several areas, such as using prepared statements for all SQL queries and a high percentage of properly escaped output, significant concerns remain. The plugin has a notable attack surface with one unprotected REST API route, presenting a clear potential entry point for unauthorized actions. The presence of two taint flows with unsanitized paths, although not currently flagged as critical or high severity, warrants attention as these could be exploited under specific conditions. The vulnerability history, while showing no currently unpatched CVEs, indicates a past medium-severity vulnerability attributed to missing authorization. This pattern, combined with the unprotected REST API, suggests a recurring risk in authorization enforcement.
Key Concerns
- Unprotected REST API route
- Taint flows with unsanitized paths
- Past medium severity vulnerability (Missing Authorization)
SureFeedback Client Site Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
ProjectHuddle Client Site <= 1.0.34 - Missing Authorization via ph_child_ajax_notice_handler
SureFeedback Client Site Code Analysis
Output Escaping
Data Flow Analysis
SureFeedback Client Site Attack Surface
AJAX Handlers 1
REST API Routes 1
WordPress Hooks 17
Maintenance & Trust
SureFeedback Client Site Maintenance & Trust
Maintenance Signals
Community Trust
SureFeedback Client Site Alternatives
Atarim – Visual Feedback, Review & AI Collaboration
atarim-visual-collaboration
Make collecting feedback on WordPress sites MUCH faster and easier, with the visual collaboration tool used on over 120,000 websites worldwide.
Child Theme Creator by Orbisius
orbisius-child-theme-creator
Create Child Themes quickly and easily from any theme that you have currently installed on your site/blog.
Generate Child Theme
generate-child-theme
Create child themes of any WordPress themes effortlessly with Generate Child Theme.
Quick Child Theme Generator
quick-child-theme-generator
Quick Child Theme Generator is a WordPress plugin and it is helpful for creating child themes quickly.
Webvizio
webvizio
The Ultimate Visual Feedback, Collaboration & Productivity Tool for Web Professionals.
SureFeedback Client Site Developer Profile
32 plugins · 8.6M total installs
How We Detect SureFeedback Client Site
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/projecthuddle-child-site/ph-child-style.css/wp-content/plugins/projecthuddle-child-site/ph-child-script.jsprojecthuddle-child-site/ph-child-style.css?ver=projecthuddle-child-site/ph-child-script.js?ver=HTML / DOM Fingerprints
<!-- SureFeedback Client Site --><!-- SureFeedback --><!-- SureFeedback Core Plugin Detected -->data-ph-child-iddata-ph-child-signaturedata-ph-child-parent-urlPH_Child_Data/wp-json/projecthuddle-child-site/v1/nonce/wp-json/projecthuddle-child-site/v1/get-site-settings/wp-json/projecthuddle-child-site/v1/disconnect