
Restaurant Security & Risk Analysis
wordpress.org/plugins/restaurantA restaurant and menu item manager for small restaurant sites, which can be extended for larger sites.
Is Restaurant Safe to Use in 2026?
Generally Safe
Score 100/100Restaurant has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "restaurant" v1.0.0 plugin exhibits a generally strong security posture based on the provided static analysis. It demonstrates good practices by having no identified AJAX handlers, REST API routes, shortcodes, or cron events, resulting in a zero-total attack surface. The code also shows a commitment to secure database operations, with 100% of SQL queries using prepared statements, and a notable presence of nonce and capability checks.
However, a critical concern arises from the taint analysis, which reveals two flows with unsanitized paths. While the severity is not explicitly classified as critical or high, the presence of unsanitized paths in any flow is a significant risk, potentially allowing for code injection or arbitrary file access if these flows are triggered by external input. The output escaping also has room for improvement, with 19% of outputs not being properly escaped, which could lead to cross-site scripting (XSS) vulnerabilities.
The plugin's vulnerability history is a significant strength, showing no known CVEs, unpatched vulnerabilities, or common vulnerability types. This suggests a stable and well-maintained codebase in terms of past security issues. In conclusion, while the plugin has excellent strengths in its minimal attack surface and lack of historical vulnerabilities, the identified unsanitized paths in taint flows and incomplete output escaping represent the primary areas of immediate concern that require attention.
Key Concerns
- Unsanitized paths found in taint flows
- Unescaped output detected
Restaurant Security Vulnerabilities
Restaurant Code Analysis
Output Escaping
Data Flow Analysis
Restaurant Attack Surface
WordPress Hooks 23
Maintenance & Trust
Restaurant Maintenance & Trust
Maintenance Signals
Community Trust
Restaurant Alternatives
Registration Honeypot
registration-honeypot
Plugin for stopping most spambot registrations via a simple honeypot method.
Custom Post Type UI
custom-post-type-ui
Admin UI for creating custom content types like post types and taxonomies
Essential Content Types
essential-content-types
Essential Content Types allows you to feature the impressive content through different content/post types on your website just the way you want it.
Custom Post Type Widgets
custom-post-type-widgets
Custom Post Type Widgets plugin adds default custom post type widgets.
Posts in Page
posts-in-page
Easily add one or more posts to any page using simple shortcodes.
Restaurant Developer Profile
33 plugins · 34K total installs
How We Detect Restaurant
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/restaurant/inc/template.php/wp-content/plugins/restaurant/admin/class-restaurant-admin.php/wp-content/plugins/restaurant/admin/class-restaurant-settings.php