
ReadTrack Security & Risk Analysis
wordpress.org/plugins/readtrackAdds a reading progress bar and an estimated reading time above each single post.
Is ReadTrack Safe to Use in 2026?
Generally Safe
Score 100/100ReadTrack has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
Based on the static analysis and vulnerability history, the 'readtrack' v1.2 plugin exhibits a strong security posture. The absence of any identified attack surface points, dangerous functions, raw SQL queries, unescaped output, file operations, or external HTTP requests is highly positive. The presence of nonce checks further bolsters its defense against common WordPress attack vectors. The plugin also shows a clean vulnerability history, with no recorded CVEs, indicating a history of secure development or diligent patching by its maintainers.
While the lack of identified risks is commendable, the data also reveals a potential lack of features that would typically expose an attack surface, such as AJAX handlers, REST API routes, or shortcodes. The absence of capability checks in the provided static analysis data is a notable area of concern. Although no vulnerabilities are currently present, the lack of explicit capability checks could leave functionalities exposed if they were to be implemented in future versions without proper authorization checks. This suggests that while the current version appears secure, future development should prioritize robust authorization mechanisms.
In conclusion, 'readtrack' v1.2 demonstrates excellent security practices in its current implementation, with no immediate exploitable vulnerabilities detected. Its clean history and lack of dangerous code patterns are significant strengths. However, the absence of capability checks, as indicated in the static analysis, represents a potential area for future risk if the plugin's functionality expands. Developers should be mindful of implementing proper authorization checks for any new features.
Key Concerns
- No capability checks found
ReadTrack Security Vulnerabilities
ReadTrack Release Timeline
ReadTrack Code Analysis
Output Escaping
Data Flow Analysis
ReadTrack Attack Surface
WordPress Hooks 3
Maintenance & Trust
ReadTrack Maintenance & Trust
Maintenance Signals
Community Trust
ReadTrack Alternatives
ReadBar – Smart Reading Time & Dynamic Progress Bar
read-bar
Add estimated reading time and a dynamic reading progress bar to your WordPress posts and pages to boost content engagement and improve readability.
Simple Time to Read LSC
simple-time-to-read-lsc
Add an estimated reading time to your WordPress posts, pages, or custom post types. Lightweight, customizable, and easy to use.
Easy Reading Progress Bar
wp-easy-reading-progress-bar
A simple, lightweight, and highly compatible reading progress bar for your WordPress posts.
ZenRead – Reading Progress Bar & Estimated Time
zenread
ZenRead is a lightweight and secure plugin that adds a sleek reading progress bar and an estimated reading time indicator to your WordPress posts.
WP Reading Progress
wp-reading-progress
Light weight fully customizable reading progress bar. Sticks to top, bottom or sticky menu, with fallback for small screens. Includes ert (beta).
ReadTrack Developer Profile
3 plugins · 0 total installs
How We Detect ReadTrack
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/readtrack/assets/readtrack.css/wp-content/plugins/readtrack/assets/readtrack.js/wp-content/plugins/readtrack/assets/readtrack.jsreadtrack/assets/readtrack.css?ver=readtrack/assets/readtrack.js?ver=HTML / DOM Fingerprints
readtrack-timereadtrack-progress-containerreadtrack-progress-barname="readtrack_text"id="readtrack_text"name="readtrack_save_settings"