
Radio Tools Security & Risk Analysis
wordpress.org/plugins/radio-toolsEasily add a streaming audio player to your site with a shortcode. Easy to customise!
Is Radio Tools Safe to Use in 2026?
Generally Safe
Score 85/100Radio Tools has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "radio-tools" v1.03 plugin demonstrates a generally positive security posture based on the static analysis. The absence of known CVEs and a clean vulnerability history are significant strengths, suggesting a well-maintained and secure codebase. The plugin also avoids dangerous functions and file operations, and all SQL queries are properly prepared, which are excellent security practices.
However, there are areas for improvement. The plugin exhibits a concerning lack of authorization checks on its entry points. While the current attack surface is small, the complete absence of capability checks and nonce checks on the single shortcode presents a potential risk. This means that any authenticated user, regardless of their role, could potentially trigger the functionality associated with this shortcode. Furthermore, the fact that only 55% of outputs are properly escaped indicates a risk of cross-site scripting (XSS) vulnerabilities if user-supplied data is used in unescaped contexts.
In conclusion, while "radio-tools" v1.03 benefits from a clean vulnerability history and good practices in areas like SQL and dangerous functions, the lack of robust authorization on its entry points and the presence of unescaped output are significant security concerns that warrant attention. Addressing these weaknesses would greatly improve the plugin's overall security.
Key Concerns
- No capability checks on entry points
- No nonce checks on entry points
- Significant portion of output unescaped
Radio Tools Security Vulnerabilities
Radio Tools Release Timeline
Radio Tools Code Analysis
Output Escaping
Radio Tools Attack Surface
Shortcodes 1
WordPress Hooks 7
Maintenance & Trust
Radio Tools Maintenance & Trust
Maintenance Signals
Community Trust
Radio Tools Alternatives
Alex Player
alex-player
Alex Player is simple audio player designed to play local audio files or radio streams on your website.
Radiojar Audio Player
radiojar-player
Audio player plugin for Radiojar platform , just by dragging the widget or added shortcode [rj-player].
Serverless Radio
serverless-radio
A serverless MP3 linear streaming plugin that lets you create AutoDJ-like playlists from public MP3 folders — no VPS required.
MP3 Audio Player – Music Player, Podcast Player & Radio by Sonaar
mp3-music-player-by-sonaar
The most advanced Audio Player for Music & Podcast. For Elementor, Gutenberg, WooCommerce and more. Add unlimited players to any pages!
AudioIgniter Music Player
audioigniter
AudioIgniter lets you create music playlists and embed them in your WordPress posts, pages or custom post types and serve your audio content in style!
Radio Tools Developer Profile
16 plugins · 800 total installs
How We Detect Radio Tools
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/radio-tools/js/howler.min.js/wp-content/plugins/radio-tools/js/howler.min.jsHTML / DOM Fingerprints
RADIO_TOOLS_PLUGIN_ASSETSRADIO_TOOLS_PLUGIN_TEMPLATES_PATH[radio_tools]