Figma to Oxygen Builder – ready→made WordPress Integration Security & Risk Analysis

wordpress.org/plugins/ready-made-oxygen-integration

The official WordPress integration for the ready→made Figma plugin. Seamlessly copy-paste sections from your Figma designs into Oxygen Builder.

70 active installs v1.3.2 PHP 7.2+ WP 5.0+ Updated Nov 12, 2025
design-to-codefigmaimport-export-wordpress-integrationoxygen-builder
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Figma to Oxygen Builder – ready→made WordPress Integration Safe to Use in 2026?

Generally Safe

Score 100/100

Figma to Oxygen Builder – ready→made WordPress Integration has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4mo ago
Risk Assessment

This plugin exhibits a concerning security posture due to a significant number of unprotected entry points into its functionality. While the static analysis shows no dangerous functions, proper SQL statement preparation, and 100% output escaping, the lack of authentication and permission checks on all identified AJAX handlers and REST API routes creates a substantial attack surface. The absence of any recorded vulnerabilities in its history is positive, but this cannot mitigate the inherent risks posed by exposed functionality. The plugin demonstrates strengths in how it handles database interactions and output, but these are overshadowed by the fundamental security flaws in its entry point management.

Key Concerns

  • AJAX handlers without auth checks
  • REST API routes without permission callbacks
  • Unprotected entry points (6 total)
Vulnerabilities
None known

Figma to Oxygen Builder – ready→made WordPress Integration Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Figma to Oxygen Builder – ready→made WordPress Integration Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
9 escaped
Nonce Checks
1
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped9 total outputs
Attack Surface
6 unprotected

Figma to Oxygen Builder – ready→made WordPress Integration Attack Surface

Entry Points6
Unprotected6

AJAX Handlers 1

authwp_ajax_readoxin_save_classesready-made-oxygen-integration.php:50

REST API Routes 5

GET/wp-json/readoxin/v1/fonts/testready-made-oxygen-integration.php:478
GET/wp-json/readoxin/v1/fonts/oxygenready-made-oxygen-integration.php:492
GET/wp-json/readoxin/v1/fonts/mappingsready-made-oxygen-integration.php:499
POST/wp-json/readoxin/v1/media/check-duplicateready-made-oxygen-integration.php:506
POST/wp-json/readoxin/v1/media/(?P<id>\d+)/metadataready-made-oxygen-integration.php:527
WordPress Hooks 4
actionwp_enqueue_scriptsready-made-oxygen-integration.php:41
actionrest_api_initready-made-oxygen-integration.php:44
actionadmin_initready-made-oxygen-integration.php:47
actionadmin_menuready-made-oxygen-integration.php:176
Maintenance & Trust

Figma to Oxygen Builder – ready→made WordPress Integration Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedNov 12, 2025
PHP min version7.2
Downloads2K

Community Trust

Rating100/100
Number of ratings1
Active installs70
Developer Profile

Figma to Oxygen Builder – ready→made WordPress Integration Developer Profile

Levels Branding and Webdevelopment

2 plugins · 100 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Figma to Oxygen Builder – ready→made WordPress Integration

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/ready-made-oxygen-integration/includes/js/modules/fontManager.js/wp-content/plugins/ready-made-oxygen-integration/includes/js/modules/progressIndicator.js/wp-content/plugins/ready-made-oxygen-integration/includes/js/modules/imageProcessor.js/wp-content/plugins/ready-made-oxygen-integration/includes/js/modules/uiComponents.js/wp-content/plugins/ready-made-oxygen-integration/includes/js/modules/toastNotifications.js/wp-content/plugins/ready-made-oxygen-integration/includes/js/modules/fontProcessor.js/wp-content/plugins/ready-made-oxygen-integration/includes/js/modules/classProcessor.js/wp-content/plugins/ready-made-oxygen-integration/includes/js/modules/pasteHandler.js+1 more
Script Paths
includes/js/modules/fontManager.jsincludes/js/modules/progressIndicator.jsincludes/js/modules/imageProcessor.jsincludes/js/modules/uiComponents.jsincludes/js/modules/toastNotifications.jsincludes/js/modules/fontProcessor.js+3 more
Version Parameters
ready-made-oxygen-integration/includes/js/modules/fontManager.js?ver=ready-made-oxygen-integration/includes/js/modules/progressIndicator.js?ver=ready-made-oxygen-integration/includes/js/modules/imageProcessor.js?ver=ready-made-oxygen-integration/includes/js/modules/uiComponents.js?ver=ready-made-oxygen-integration/includes/js/modules/toastNotifications.js?ver=ready-made-oxygen-integration/includes/js/modules/fontProcessor.js?ver=ready-made-oxygen-integration/includes/js/modules/classProcessor.js?ver=ready-made-oxygen-integration/includes/js/modules/pasteHandler.js?ver=ready-made-oxygen-integration/includes/js/addPasteButton-modular.js?ver=

HTML / DOM Fingerprints

HTML Comments
<!-- Use timestamps in debug mode for cache busting, otherwise use plugin version --><!-- Inject wpApiSettings for REST calls - Enhanced with better error handling --><!-- Attach to toast-notifications since it loads early and has no dependencies --><!-- Additional settings for our enhanced functionality -->+9 more
Data Attributes
data-nonce="wp_rest"data-tempurlpattern="api.levels.dev"data-debug="true"data-classsyncmode="create_only"data-classstoragetype="classes"data-ajaxurl="admin-ajax.php"+1 more
JS Globals
wpApiSettingsreadoxinSettingsreadoxinExistingClassesreadoxinStyleFoldersREADOXIN_JS_VERSION
REST Endpoints
/wp-json/ready-made-oxygen-integration/v1/fonts/wp-json/ready-made-oxygen-integration/v1/upload-font
FAQ

Frequently Asked Questions about Figma to Oxygen Builder – ready→made WordPress Integration