Rate the Site experience Security & Risk Analysis

wordpress.org/plugins/rate-the-site-experience

This plugin adds a frontend widget for users to rate their site experience.

0 active installs v1.0.1 PHP 7.0+ WP 3.0.1+ Updated Aug 30, 2024
experienceratingsite-review
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Rate the Site experience Safe to Use in 2026?

Generally Safe

Score 92/100

Rate the Site experience has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The "rate-the-site-experience" plugin v1.0.1 exhibits a mixed security posture. It demonstrates good practices by exclusively using prepared statements for its SQL queries and properly escaping a high percentage of its output. The absence of any recorded vulnerabilities, including critical or high severity ones, is a significant positive indicator. However, the plugin has two AJAX handlers, and both lack authentication checks. This represents a considerable attack surface that could be exploited by unauthenticated users. While taint analysis did not reveal any unsanitized paths or critical issues, the unprotected AJAX endpoints are a clear area of concern that could lead to unintended actions or data exposure.

Key Concerns

  • Unprotected AJAX handlers
Vulnerabilities
None known

Rate the Site experience Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Rate the Site experience Release Timeline

No version history available.
Code Analysis
Analyzed Mar 17, 2026

Rate the Site experience Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
5 prepared
Unescaped Output
4
77 escaped
Nonce Checks
3
Capability Checks
2
File Operations
3
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared5 total queries

Output Escaping

95% escaped81 total outputs
Data Flows · Security
All sanitized

Data Flow Analysis

2 flows
rtse_dashboard_page_callback (admin\class-rate-the-site-experience-admin.php:193)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
2 unprotected

Rate the Site experience Attack Surface

Entry Points2
Unprotected2

AJAX Handlers 2

noprivwp_ajax_rtse_save_ratingsincludes\class-rate-the-site-experience.php:186
authwp_ajax_rtse_save_ratingsincludes\class-rate-the-site-experience.php:187
WordPress Hooks 9
actionplugins_loadedincludes\class-rate-the-site-experience.php:142
actionadmin_enqueue_scriptsincludes\class-rate-the-site-experience.php:157
actionadmin_enqueue_scriptsincludes\class-rate-the-site-experience.php:158
actionwp_dashboard_setupincludes\class-rate-the-site-experience.php:161
actionadmin_menuincludes\class-rate-the-site-experience.php:163
actionwp_enqueue_scriptsincludes\class-rate-the-site-experience.php:178
actionwp_enqueue_scriptsincludes\class-rate-the-site-experience.php:179
actioninitincludes\class-rate-the-site-experience.php:182
actionwp_footerincludes\class-rate-the-site-experience.php:184
Maintenance & Trust

Rate the Site experience Maintenance & Trust

Maintenance Signals

WordPress version tested6.6.5
Last updatedAug 30, 2024
PHP min version7.0
Downloads579

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Rate the Site experience Developer Profile

Chetan Vaghela

12 plugins · 590 total installs

87
trust score
Avg Security Score
90/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Rate the Site experience

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/rate-the-site-experience/js/rate-the-site-experience-admin.js/wp-content/plugins/rate-the-site-experience/css/rate-the-site-experience-admin.css
Script Paths
/wp-content/plugins/rate-the-site-experience/js/rate-the-site-experience-admin.js
Version Parameters
rate-the-site-experience/css/rate-the-site-experience-admin.css?ver=rate-the-site-experience/js/rate-the-site-experience-admin.js?ver=

HTML / DOM Fingerprints

CSS Classes
rtse-download-rating-form
Data Attributes
id="rtse-download-rating-form"
FAQ

Frequently Asked Questions about Rate the Site experience