Quick AdWords Evaluation Security & Risk Analysis

wordpress.org/plugins/quick-adwords-evaluation

Have a Certified AdWords Professional evaluate and highlight areas of improvement for your AdWords account.

10 active installs v0.1 PHP + WP 3.3+ Updated Unknown
adwordscpcgoogle-adwordsppcsem
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Quick AdWords Evaluation Safe to Use in 2026?

Generally Safe

Score 100/100

Quick AdWords Evaluation has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs
Risk Assessment

The 'quick-adwords-evaluation' plugin version 0.1 exhibits a mixed security posture. On the positive side, the static analysis reveals a zero attack surface in terms of AJAX handlers, REST API routes, shortcodes, and cron events. Furthermore, there are no detected dangerous functions, file operations, or external HTTP requests. The absence of known vulnerabilities in its history is also a strong positive indicator. However, significant concerns arise from the complete lack of output escaping and the absence of nonce and capability checks. This means any output rendered by the plugin could potentially be vulnerable to Cross-Site Scripting (XSS) attacks, and there are no built-in mechanisms to verify user permissions or prevent request forgery, especially if any entry points were to be introduced or missed in this analysis.

While the current version shows no critical or high-severity taint flows and all SQL queries use prepared statements, the lack of output escaping presents a direct and immediate risk. The zero-count of vulnerabilities in its history might suggest a lack of active exploitation or a very new, unscrutinized plugin. The overall impression is a plugin with a potentially small code base and limited functionality, but critically missing fundamental security controls for output sanitization and authorization checks.

Key Concerns

  • Output not properly escaped
  • No nonce checks
  • No capability checks
Vulnerabilities
None known

Quick AdWords Evaluation Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Quick AdWords Evaluation Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
2
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
1
Bundled Libraries
0

Output Escaping

0% escaped2 total outputs
Attack Surface

Quick AdWords Evaluation Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 4
actionadmin_initquick-adwords-evaluation.php:46
actionadmin_initquick-adwords-evaluation.php:67
actionadmin_menuquick-adwords-evaluation.php:68
filterplugin_action_linksquick-adwords-evaluation.php:69
Maintenance & Trust

Quick AdWords Evaluation Maintenance & Trust

Maintenance Signals

WordPress version tested4.7.32
Last updatedUnknown
PHP min version
Downloads2K

Community Trust

Rating100/100
Number of ratings2
Active installs10
Developer Profile

Quick AdWords Evaluation Developer Profile

neeaagh

2 plugins · 110 total installs

89
trust score
Avg Security Score
93/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Quick AdWords Evaluation

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

HTML Comments
<!-- Beginning of the Plugin Options Form --><!-- Table Structure Containing Form Controls --><!-- Each Plugin Option Defined on a New Table Row -->
Data Attributes
name="adwdseval_options[api_key]"
FAQ

Frequently Asked Questions about Quick AdWords Evaluation