RaraTheme Companion Security & Risk Analysis

wordpress.org/plugins/raratheme-companion

23 extremely useful custom widgets to create an engaging website.

10K active installs v1.4.4 PHP 7.4+ WP 4.4.0+ Updated Jan 6, 2026
postssidebarssocial-linkswidgets
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is RaraTheme Companion Safe to Use in 2026?

Generally Safe

Score 100/100

RaraTheme Companion has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The "raratheme-companion" v1.4.4 plugin exhibits a generally strong security posture based on the provided static analysis. The absence of any identified CVEs in its history, coupled with a lack of critical or high-severity issues in taint analysis, suggests a history of secure development. The code analysis also reveals positive signs, such as 100% of SQL queries using prepared statements and a high percentage of properly escaped output. The plugin also demonstrates awareness of WordPress security best practices by including capability checks.

Key Concerns

  • No nonce checks found
  • 0 AJAX handlers without auth checks
  • 0 REST API routes without permission callbacks
  • 0 shortcodes
  • 0 cron events
  • 0 flows with unsanitized paths
  • No dangerous functions found
  • 100% SQL queries using prepared statements
  • 83% properly escaped output
  • 0 file operations
  • 0 external HTTP requests
  • 1 capability check present
  • Bundled jQuery library
  • No known CVEs
Vulnerabilities
None known

RaraTheme Companion Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

RaraTheme Companion Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
277
1350 escaped
Nonce Checks
0
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
1

Bundled Libraries

jQuery

Output Escaping

83% escaped1627 total outputs
Attack Surface

RaraTheme Companion Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 63
actionwp_loadedincludes\class-raratheme-companion-templates.php:9
actionrest_api_initincludes\class-raratheme-companion-templates.php:10
filtertemplate_includeincludes\class-raratheme-companion-templates.php:11
filtertheme_page_templatesincludes\class-raratheme-companion-templates.php:67
filterpage_templateincludes\class-raratheme-companion-templates.php:69
actionplugins_loadedincludes\class-raratheme-companion.php:264
actionadmin_enqueue_scriptsincludes\class-raratheme-companion.php:279
actionadmin_enqueue_scriptsincludes\class-raratheme-companion.php:280
actionelementor/editor/before_enqueue_scriptsincludes\class-raratheme-companion.php:281
actionadmin_print_footer_scriptsincludes\class-raratheme-companion.php:282
actionadmin_print_footer_scriptsincludes\class-raratheme-companion.php:283
actioninitincludes\class-raratheme-companion.php:284
actioninitincludes\class-raratheme-companion.php:285
actionadmin_footerincludes\class-raratheme-companion.php:286
actionadmin_print_footer_scriptsincludes\class-raratheme-companion.php:287
actioncategory_add_form_fieldsincludes\class-raratheme-companion.php:288
actioncreated_categoryincludes\class-raratheme-companion.php:289
actioncategory_edit_form_fieldsincludes\class-raratheme-companion.php:290
actionedited_categoryincludes\class-raratheme-companion.php:291
filtermanage_edit-category_columnsincludes\class-raratheme-companion.php:292
actionmanage_category_custom_columnincludes\class-raratheme-companion.php:293
actionwp_enqueue_scriptsincludes\class-raratheme-companion.php:307
actionwp_enqueue_scriptsincludes\class-raratheme-companion.php:308
filterscript_loader_tagincludes\class-raratheme-companion.php:309
actionwidgets_initincludes\widgets\widget-advertisement.php:12
actionwidgets_initincludes\widgets\widget-author-bio.php:12
actionload-widgets.phpincludes\widgets\widget-author-bio.php:18
actionadmin_print_footer_scriptsincludes\widgets\widget-author-bio.php:30
actionwidgets_initincludes\widgets\widget-client-logo.php:12
actionwidgets_initincludes\widgets\widget-contact.php:12
actionload-widgets.phpincludes\widgets\widget-contact.php:20
filterkses_allowed_protocolsincludes\widgets\widget-contact.php:29
actionadmin_print_footer_scriptsincludes\widgets\widget-contact.php:40
actionwidgets_initincludes\widgets\widget-cta.php:12
actionadmin_footer-widgets.phpincludes\widgets\widget-cta.php:22
actionload-widgets.phpincludes\widgets\widget-cta.php:23
actionwidgets_initincludes\widgets\widget-custom-categories.php:5
actionwidgets_initincludes\widgets\widget-facebook-page.php:12
actionwidgets_initincludes\widgets\widget-faqs.php:12
actionwidgets_initincludes\widgets\widget-featured-page.php:12
actionwidgets_initincludes\widgets\widget-featured.php:12
actionwidgets_initincludes\widgets\widget-icon-text.php:12
actionwidgets_initincludes\widgets\widget-image-text.php:12
actionadmin_print_footer_scriptsincludes\widgets\widget-image-text.php:23
actionwidgets_initincludes\widgets\widget-image.php:12
actionwp_enqueue_scriptsincludes\widgets\widget-pinterest.php:6
actionwidgets_initincludes\widgets\widget-pinterest.php:11
actionwidgets_initincludes\widgets\widget-popular-post.php:12
actionwpincludes\widgets\widget-popular-post.php:24
actionwidgets_initincludes\widgets\widget-posts-category-slider.php:6
actionwidgets_initincludes\widgets\widget-recent-post.php:12
actionadmin_enqueue_scriptsincludes\widgets\widget-snapchat.php:11
actionwidgets_initincludes\widgets\widget-snapchat.php:142
actionwidgets_initincludes\widgets\widget-social-links.php:12
actionload-widgets.phpincludes\widgets\widget-social-links.php:20
filterkses_allowed_protocolsincludes\widgets\widget-social-links.php:29
actionadmin_print_footer_scriptsincludes\widgets\widget-social-links.php:40
actionwidgets_initincludes\widgets\widget-stat-counter.php:12
actionwidgets_initincludes\widgets\widget-team-member.php:12
actionwidgets_initincludes\widgets\widget-testimonial.php:12
actionwidgets_initincludes\widgets\widget-twitter-feeds.php:12
actionadmin_footer-widgets.phpincludes\widgets\widget-twitter-feeds.php:35
actionload-widgets.phpincludes\widgets\widget-twitter-feeds.php:36
Maintenance & Trust

RaraTheme Companion Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedJan 6, 2026
PHP min version7.4
Downloads498K

Community Trust

Rating0/100
Number of ratings0
Active installs10K
Developer Profile

RaraTheme Companion Developer Profile

Rara Themes

76 plugins · 74K total installs

78
trust score
Avg Security Score
99/100
Avg Patch Time
151 days
View full developer profile
Detection Fingerprints

How We Detect RaraTheme Companion

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/raratheme-companion/admin/css/raratheme-companion-admin.css/wp-content/plugins/raratheme-companion/admin/js/raratheme-companion-admin.js/wp-content/plugins/raratheme-companion/public/css/raratheme-companion-public.css/wp-content/plugins/raratheme-companion/public/js/raratheme-companion-public.js/wp-content/plugins/raratheme-companion/assets/css/magnific-popup.css/wp-content/plugins/raratheme-companion/assets/js/magnific-popup.min.js/wp-content/plugins/raratheme-companion/assets/js/jquery.waypoints.min.js/wp-content/plugins/raratheme-companion/assets/js/jquery.counterup.min.js+7 more
Script Paths
/wp-content/plugins/raratheme-companion/admin/js/raratheme-companion-admin.js/wp-content/plugins/raratheme-companion/public/js/raratheme-companion-public.js/wp-content/plugins/raratheme-companion/assets/js/magnific-popup.min.js/wp-content/plugins/raratheme-companion/assets/js/jquery.waypoints.min.js/wp-content/plugins/raratheme-companion/assets/js/jquery.counterup.min.js/wp-content/plugins/raratheme-companion/assets/js/owl.carousel.min.js+2 more
Version Parameters
/wp-content/plugins/raratheme-companion/admin/css/raratheme-companion-admin.css?ver=/wp-content/plugins/raratheme-companion/admin/js/raratheme-companion-admin.js?ver=/wp-content/plugins/raratheme-companion/public/css/raratheme-companion-public.css?ver=/wp-content/plugins/raratheme-companion/public/js/raratheme-companion-public.js?ver=/wp-content/plugins/raratheme-companion/assets/css/magnific-popup.css?ver=/wp-content/plugins/raratheme-companion/assets/js/magnific-popup.min.js?ver=/wp-content/plugins/raratheme-companion/assets/js/jquery.waypoints.min.js?ver=/wp-content/plugins/raratheme-companion/assets/js/jquery.counterup.min.js?ver=/wp-content/plugins/raratheme-companion/assets/css/owl.carousel.min.css?ver=/wp-content/plugins/raratheme-companion/assets/js/owl.carousel.min.js?ver=/wp-content/plugins/raratheme-companion/assets/js/raratheme-companion-main.js?ver=/wp-content/plugins/raratheme-companion/assets/css/font-awesome.min.css?ver=/wp-content/plugins/raratheme-companion/assets/css/slick.css?ver=/wp-content/plugins/raratheme-companion/assets/css/slick-theme.css?ver=/wp-content/plugins/raratheme-companion/assets/js/slick.min.js?ver=

HTML / DOM Fingerprints

CSS Classes
rtc-icons-wrap-templatertc-icons-wraprtc-icons-listraratheme-companion-social-wrapperraratheme-companion-social-iconraratheme-companion-instagram-feedraratheme-companion-instagram-feed-containerraratheme-companion-twitter-feed+7 more
HTML Comments
<!-- The code that runs during plugin activation --><!-- The code that runs during plugin deactivation --><!-- The core plugin class that is used to define internationalization, admin-specific hooks, and public-facing site hooks. --><!-- Begins execution of the plugin. -->+14 more
Data Attributes
data-filterdata-icondata-namedata-contentdata-titledata-image
JS Globals
Raratheme_Companion_AdminRaraTheme_Companion_Functionsraratheme_companion_admin_object
FAQ

Frequently Asked Questions about RaraTheme Companion