
q-Shortcodes Security & Risk Analysis
wordpress.org/plugins/q-shortcodesSend message to email with ajax form
Is q-Shortcodes Safe to Use in 2026?
Generally Safe
Score 85/100q-Shortcodes has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "q-shortcodes" v1.0 plugin presents a generally positive security posture based on the provided static analysis. The absence of dangerous functions, file operations, and external HTTP requests is commendable. Crucially, all detected SQL queries utilize prepared statements, and the taint analysis reveals no unsanitized paths, indicating a strong defense against common injection vulnerabilities. The plugin also boasts a significant percentage of properly escaped output, which helps mitigate Cross-Site Scripting (XSS) risks. However, a notable concern is the complete lack of nonce checks and capability checks. With 21 shortcodes constituting the entire attack surface, the absence of these fundamental WordPress security mechanisms leaves it vulnerable to potential Cross-Site Request Forgery (CSRF) attacks and unauthorized actions by unauthenticated or low-privileged users if any of these shortcodes have potentially sensitive functionality. The vulnerability history being clean is a positive sign of past diligent development, but it doesn't negate the risks identified in the current code.
Key Concerns
- No nonce checks present
- No capability checks present
- Output escaping only 72% proper
q-Shortcodes Security Vulnerabilities
q-Shortcodes Code Analysis
Output Escaping
q-Shortcodes Attack Surface
Shortcodes 21
WordPress Hooks 9
Maintenance & Trust
q-Shortcodes Maintenance & Trust
Maintenance Signals
Community Trust
q-Shortcodes Alternatives
Grid Shortcodes
grid-shortcodes
A responsive and easy-to-use tool for dividing your content in your posts/pages. This ultra-lightweight plugin allows you to put your content in colum …
Column Shortcodes
column-shortcodes
Adds shortcodes to easily create columns in your posts or pages.
Lightweight Grid Columns
lightweight-grid-columns
Easily add desktop, tablet and mobile friendly columns to your content using an easy to use shortcode.
Elements For Elementor
nd-elements
The plugin adds some useful elements to the Elementor Page Builder Plugin. All components are full responsive and retina ready.
PixCodes
pixcodes
PixCodes offers you a nice interface to add shortcodes into editor.
q-Shortcodes Developer Profile
4 plugins · 10 total installs
How We Detect q-Shortcodes
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/q-shortcodes/css/qadmin.css/wp-content/plugins/q-shortcodes/css/qfrontend.css/wp-content/plugins/q-shortcodes/css/ionicons.min.css/wp-content/plugins/q-shortcodes/css/font-awesome.min.css/wp-content/plugins/q-shortcodes/js/qfrontend.js/wp-content/plugins/q-shortcodes/js/customizer.js/wp-content/plugins/q-shortcodes/js/editor.jsjs/customizer.jsjs/qfrontend.jsjs/editor.jsHTML / DOM Fingerprints
q_btnq_btn_serviceqicontoggle_titleq_divdata-q-shortcodesqcustomizerq_btnqmain<a class="q_btn<a class="q_btn_service<div class="qicon<div class="toggle_title