Publytics Security & Risk Analysis

wordpress.org/plugins/publytics

Privacy-first web analytics for WordPress. No cookies, no tracking of personal data, and fully GDPR/CCPA compliant.

0 active installs v1.0.1 PHP 7.2+ WP 5.0+ Updated Feb 26, 2026
ampanalyticsanalyticsgdprprivacystatistics
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Publytics Safe to Use in 2026?

Generally Safe

Score 100/100

Publytics has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The Publytics v1.0.1 plugin exhibits a generally strong security posture based on the provided static analysis. The complete absence of any registered AJAX handlers, REST API routes, shortcodes, or cron events with exposed attack surfaces is a significant positive. Furthermore, the code signals indicate good development practices, with 100% of SQL queries using prepared statements and a high percentage of output being properly escaped. The presence of nonce and capability checks (though limited in number) also suggests an awareness of security fundamentals. The vulnerability history is equally impressive, with no recorded CVEs, indicating a lack of known exploitable flaws in its past. This plugin appears to be developed with security in mind, focusing on minimizing its interaction points and employing secure coding practices.

Despite the overwhelmingly positive findings, the analysis does highlight some areas for consideration. The very limited number of total entry points (zero) and the corresponding zero unprotected entry points, while a strength, also means there's minimal data for comprehensive taint analysis. This could mean that either the plugin is extremely simple and has no data flows to track, or that the analysis itself was limited by the lack of interactive elements. However, given the other positive signals, it is more likely the former. The key takeaway is that while the current version is demonstrably secure based on the provided data, a future version with more features could introduce new vulnerabilities if these secure practices are not maintained. The plugin's strengths lie in its minimal attack surface and secure data handling, with no significant weaknesses identified in this specific version's analysis.

Vulnerabilities
None known

Publytics Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Publytics Release Timeline

v1.0.1Current
v1.0.0
Code Analysis
Analyzed Apr 16, 2026

Publytics Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
7 prepared
Unescaped Output
2
36 escaped
Nonce Checks
3
Capability Checks
3
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared7 total queries

Output Escaping

95% escaped38 total outputs
Attack Surface

Publytics Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 9
filterallowed_redirect_hostsconnecting-page.php:60
actionamp_post_template_footerpublytics.php:40
actionwpamp_google_analytics_codepublytics.php:41
actionamphtml_after_footerpublytics.php:42
actionbetter-amp/template/footerpublytics.php:43
actionamp_wp_template_footerpublytics.php:44
actionwp_headpublytics.php:126
actionadmin_initpublytics.php:173
actionadmin_menupublytics.php:313
Maintenance & Trust

Publytics Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedFeb 26, 2026
PHP min version7.2
Downloads303

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Publytics Developer Profile

publytics

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Publytics

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Script Paths
/wp-content/plugins/publytics/js/script.manual.min.js

HTML / DOM Fingerprints

HTML Comments
<!-- Publytics Script Injector -->
Data Attributes
data-domain
JS Globals
window.publytics
FAQ

Frequently Asked Questions about Publytics