
Raw HTML Security & Risk Analysis
wordpress.org/plugins/raw-htmlLets you use raw HTML or any other code in your posts. You can also disable smart quotes and other automatic formatting on a per-post basis.
Is Raw HTML Safe to Use in 2026?
Generally Safe
Score 92/100Raw HTML has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "raw-html" plugin v1.6.4 exhibits a generally strong security posture based on the provided static analysis. The absence of any identified AJAX handlers, REST API routes, shortcodes, or cron events significantly limits the attack surface. Furthermore, the code demonstrates good security practices by utilizing prepared statements for all SQL queries and incorporating nonce and capability checks. The taint analysis revealing no unsanitized paths or critical/high severity flows is also a very positive indicator.
Key Concerns
- Output escaping not fully implemented
Raw HTML Security Vulnerabilities
Raw HTML Release Timeline
Raw HTML Code Analysis
Output Escaping
Data Flow Analysis
Raw HTML Attack Surface
WordPress Hooks 15
Maintenance & Trust
Raw HTML Maintenance & Trust
Maintenance Signals
Community Trust
Raw HTML Alternatives
Code Embed
simple-embed-code
Code Embed provides a very easy and efficient way to embed code (JavaScript, CSS and HTML) in your posts and pages.
WP Super Minify • Minify, Compress and Cache HTML, CSS & JavaScript
wp-super-minify
A lightweight plugin that automatically minifies, compresses, and caches HTML, CSS, and JavaScript on demand to improve your website’s load speed.
WebberZone Snippetz – Header, Body and Footer manager
add-to-all
The ultimate snippet manager for WordPress. Create and manage custom HTML, CSS, or JS code snippets and control where and when they are displayed.
CM Header and Footer – Add custom scripts and styles to your header and footer with ease
cm-header-footer-script-loader
Add custom CSS and JavaScript to headers and footers on your site with the header and footer plugin for enhanced control and design.
WP Minify Fix
wp-minify-fix
[Fixed] This plugin uses the Minify engine to combine and compress JS and CSS files to improve page load time.
Raw HTML Developer Profile
8 plugins · 431K total installs
How We Detect Raw HTML
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/raw-html/include/editor-plugin/css/editor.css/wp-content/plugins/raw-html/include/editor-plugin/js/editor.js/wp-content/plugins/raw-html/include/editor-plugin/js/editor.jsraw-html/include/editor-plugin/css/editor.css?ver=raw-html/include/editor-plugin/js/editor.js?ver=HTML / DOM Fingerprints
raw-htmlrawHtmlEditorConfig[raw][/raw]