
Resourcify Security & Risk Analysis
wordpress.org/plugins/resourcifyAdd sources to posts via metabox and output below post using template generated with handlebars. Very clean and completely customizable.
Is Resourcify Safe to Use in 2026?
Generally Safe
Score 85/100Resourcify has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "resourcify" v1.2 plugin exhibits a generally strong security posture based on the provided static analysis. The complete absence of identifiable attack surface vectors such as AJAX handlers, REST API routes, shortcodes, and cron events is a significant strength. Furthermore, the plugin employs prepared statements for its single SQL query, utilizes nonces and capability checks, and avoids external HTTP requests or file operations, all of which are excellent security practices.
However, the static analysis reveals a notable weakness in output escaping. With 45 total outputs, only 9% are properly escaped, indicating a high likelihood of Cross-Site Scripting (XSS) vulnerabilities. While the taint analysis shows no unsanitized flows, this is likely due to the limited attack surface and the fact that taint analysis might not catch all XSS vectors, especially those dependent on user input reaching output functions without proper sanitization.
The plugin's vulnerability history is a blank slate, with no recorded CVEs. This, combined with the other positive security signals, suggests that the plugin has historically been developed with security in mind or has not been a target of exploitation. Despite this positive history, the identified output escaping issue presents a tangible risk that should not be overlooked.
Key Concerns
- Low percentage of properly escaped output
Resourcify Security Vulnerabilities
Resourcify Release Timeline
Resourcify Code Analysis
SQL Query Safety
Output Escaping
Resourcify Attack Surface
WordPress Hooks 11
Maintenance & Trust
Resourcify Maintenance & Trust
Maintenance Signals
Community Trust
Resourcify Alternatives
Simple Resources Plugin
resources
Adds a resources post type and simple php calls to display them.
WP HiringThing
hiringthing-job-listings
Embeds job listings from the HiringThing online recruiting service into your website.
Easy Resource Hub
easy-resource-hub
Easy Resource Hub is a WordPress plugin designed to dynamically display custom post types and their associated taxonomies.
Simple KMDG Resource Center
simple-kmdg-resource-center
This is the simple version of KMDG's Resource Center, allowing you to create and show your resource items inside WordPress.
Yoast Duplicate Post
duplicate-post
The go-to tool for cloning posts and pages, including the powerful Rewrite & Republish feature.
Resourcify Developer Profile
9 plugins · 890 total installs
How We Detect Resourcify
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/resourcify/assets/css/resourcify.css/wp-content/plugins/resourcify/assets/js/resourcify.js/wp-content/plugins/resourcify/assets/js/resourcify.jsresourcify/assets/css/resourcify.css?ver=resourcify/assets/js/resourcify.js?ver=HTML / DOM Fingerprints
window.resourcifyvar resourcify