ProyectoIN Zip Code Manager for Elementor Security & Risk Analysis

wordpress.org/plugins/proyectoin-zip-code-manager-for-elementor

Link pages with zip codes and allow AJAX search via Elementor widget for better local SEO and service area mapping.

0 active installs v1.1.0 PHP + WP 5.0+ Updated Apr 13, 2026
elementorlocal-seosearchservice-areazip-code
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is ProyectoIN Zip Code Manager for Elementor Safe to Use in 2026?

Generally Safe

Score 100/100

ProyectoIN Zip Code Manager for Elementor has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The security posture of the proyectoin-zip-code-manager-for-elementor plugin v1.1.0 appears to be strong based on the provided static analysis results. The plugin exhibits excellent security practices, with no dangerous functions, all SQL queries utilizing prepared statements, and 100% of output being properly escaped. Furthermore, the absence of file operations and external HTTP requests reduces potential attack vectors. The plugin also demonstrates good use of security features like nonce and capability checks on its AJAX endpoints, and has a clean vulnerability history with zero recorded CVEs.

While the overall security is commendable, the analysis indicates a small attack surface consisting of two AJAX handlers. The absence of explicit mention of authentication checks for these specific handlers (0 without auth checks) raises a minor concern. If these handlers are indeed unprotected, they could potentially be exploited. However, the presence of nonce and capability checks (4 nonces and 2 capability checks) suggests that some level of protection is implemented, mitigating this risk significantly. The taint analysis also yielded no critical or high severity flows, reinforcing the impression of a secure plugin.

In conclusion, the plugin demonstrates a high level of security awareness in its development, with robust coding practices and a clean history. The only potential area for scrutiny lies in the exact authentication mechanisms for the AJAX handlers, though the presence of other security measures likely minimizes any practical risk. This plugin, as analyzed, presents a low-risk addition to a WordPress site.

Key Concerns

  • AJAX handlers without explicit auth check
Vulnerabilities
None known

ProyectoIN Zip Code Manager for Elementor Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

ProyectoIN Zip Code Manager for Elementor Release Timeline

v1.1.0Current
v1.0.4
Code Analysis
Analyzed Apr 16, 2026

ProyectoIN Zip Code Manager for Elementor Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
119 escaped
Nonce Checks
4
Capability Checks
2
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped119 total outputs
Data Flows · Security
All sanitized

Data Flow Analysis

2 flows
proin_zcm_overview_page_callback (proyectoin-zip-code-manager-for-elementor.php:127)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

ProyectoIN Zip Code Manager for Elementor Attack Surface

Entry Points2
Unprotected0

AJAX Handlers 2

authwp_ajax_proin_zcm_check_zipproyectoin-zip-code-manager-for-elementor.php:78
noprivwp_ajax_proin_zcm_check_zipproyectoin-zip-code-manager-for-elementor.php:79
WordPress Hooks 6
actionadd_meta_boxesproyectoin-zip-code-manager-for-elementor.php:18
actionsave_postproyectoin-zip-code-manager-for-elementor.php:52
actionelementor/widgets/registerproyectoin-zip-code-manager-for-elementor.php:68
actionadmin_menuproyectoin-zip-code-manager-for-elementor.php:117
actionadmin_enqueue_scriptsproyectoin-zip-code-manager-for-elementor.php:218
actionwp_footerproyectoin-zip-code-manager-for-elementor.php:233
Maintenance & Trust

ProyectoIN Zip Code Manager for Elementor Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedApr 13, 2026
PHP min version
Downloads100

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

ProyectoIN Zip Code Manager for Elementor Developer Profile

Proyecto IN

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect ProyectoIN Zip Code Manager for Elementor

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/proyectoin-zip-code-manager-for-elementor/assets/css/proin-zip-search-widget.css/wp-content/plugins/proyectoin-zip-code-manager-for-elementor/assets/js/proin-zip-search-widget.js
Script Paths
/wp-content/plugins/proyectoin-zip-code-manager-for-elementor/assets/js/proin-zip-search-widget.js
Version Parameters
proyectoin-zip-code-manager-for-elementor/assets/css/proin-zip-search-widget.css?ver=proyectoin-zip-code-manager-for-elementor/assets/js/proin-zip-search-widget.js?ver=

HTML / DOM Fingerprints

CSS Classes
proin-zcm-settings-formproin-zcm-checkbox-gridproin-zcm-checkbox-item
Data Attributes
data-noncedata-nonce-action
FAQ

Frequently Asked Questions about ProyectoIN Zip Code Manager for Elementor