Publicator Helper Security & Risk Analysis

wordpress.org/plugins/publicator-helper

Connecteur indispensable pour Publicator.fr - Générateur de contenus optimisés SEO avec IA.

20 active installs v4.5 PHP 7.4+ WP 5.0+ Updated Feb 9, 2026
apicontentrest-apiseoyoast
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Publicator Helper Safe to Use in 2026?

Generally Safe

Score 100/100

Publicator Helper has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The "publicator-helper" v4.5 plugin exhibits a strong security posture based on the provided static analysis and vulnerability history. The code adheres to good practices by utilizing prepared statements for all SQL queries and ensuring 100% of outputs are properly escaped. Furthermore, the absence of dangerous functions, file operations, external HTTP requests, and taint flows with unsanitized paths indicates a clean and well-developed codebase.

While the plugin has a low attack surface with all identified entry points protected by capability checks, a notable concern is the complete absence of nonce checks. This is particularly relevant given the presence of REST API routes, which, although protected by permission callbacks, could still be susceptible to CSRF attacks if a nonce mechanism were not in place. The lack of historical vulnerabilities is a positive indicator of the plugin's overall security but does not negate the need for proactive security measures like nonce implementation.

In conclusion, "publicator-helper" v4.5 is a securely developed plugin with robust data handling and output sanitization. Its main weakness lies in the missing nonce checks, which represent a potential, albeit likely low, risk. The lack of known vulnerabilities is a significant strength, suggesting a commitment to security by its developers.

Key Concerns

  • No nonce checks implemented
Vulnerabilities
None known

Publicator Helper Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Publicator Helper Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
12 escaped
Nonce Checks
0
Capability Checks
2
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped12 total outputs
Attack Surface

Publicator Helper Attack Surface

Entry Points2
Unprotected0

REST API Routes 2

POST/wp-json/publicator-helper/v1/create-postpublicator-helper.php:30
POST/wp-json/publicator-helper/v1/update-metapublicator-helper.php:39
WordPress Hooks 3
actionwp_enqueue_scriptspublicator-helper.php:14
filterthe_contentpublicator-helper.php:19
actionrest_api_initpublicator-helper.php:29
Maintenance & Trust

Publicator Helper Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedFeb 9, 2026
PHP min version7.4
Downloads226

Community Trust

Rating0/100
Number of ratings0
Active installs20
Developer Profile

Publicator Helper Developer Profile

Mickael

1 plugin · 20 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Publicator Helper

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Script Paths
https://cdnjs.cloudflare.com/ajax/libs/font-awesome/6.4.0/css/all.min.css

HTML / DOM Fingerprints

Data Attributes
data-publicator-helper-version
REST Endpoints
/publicator-helper/v1/create-post/publicator-helper/v1/update-meta
FAQ

Frequently Asked Questions about Publicator Helper