Reviewfic – The Ultimate Testimonial Slider, Carousel, Grid Plugin Security & Risk Analysis

wordpress.org/plugins/reviewfic

Showcase testimonials, customer reviews, or quotes on your website. Easily display reviews across posts, pages, custom templates, widgets, and more.

10 active installs v1.0.1 PHP 7.4+ WP 5.4+ Updated Unknown
customer-reviewsreview-formsocial-prooftestimonial-slidertestimonials
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Reviewfic – The Ultimate Testimonial Slider, Carousel, Grid Plugin Safe to Use in 2026?

Generally Safe

Score 100/100

Reviewfic – The Ultimate Testimonial Slider, Carousel, Grid Plugin has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs
Risk Assessment

The Reviewfic plugin version 1.0.1 demonstrates a strong security posture based on the provided static analysis. The absence of dangerous functions, 100% usage of prepared statements for SQL queries, and complete output escaping indicate a developer who is mindful of common web vulnerabilities. Furthermore, the presence of a nonce check and a capability check, along with no recorded vulnerabilities (CVEs) historically, suggests a commitment to secure coding practices and a history of a stable, uncompromised codebase. The limited attack surface, consisting solely of one shortcode with no identified unprotected entry points, further reinforces this positive assessment.

However, it's important to acknowledge the limitations of static analysis. While the code signals are positive, the taint analysis found zero flows, which could be due to the complexity of the analysis or that the specific types of vulnerabilities the tool is designed to find are not present. The presence of file operations, while not explicitly flagged as problematic, could represent potential areas for concern if not handled with extreme care regarding path traversal or arbitrary file writes. Overall, Reviewfic 1.0.1 appears to be a secure plugin with good development practices, but ongoing vigilance and potentially more in-depth dynamic analysis would be prudent for complete assurance.

Vulnerabilities
None known

Reviewfic – The Ultimate Testimonial Slider, Carousel, Grid Plugin Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Reviewfic – The Ultimate Testimonial Slider, Carousel, Grid Plugin Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
16 escaped
Nonce Checks
1
Capability Checks
1
File Operations
3
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped16 total outputs
Attack Surface

Reviewfic – The Ultimate Testimonial Slider, Carousel, Grid Plugin Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[reviewfic] admin\shortcode.php:77
WordPress Hooks 7
actionadd_meta_boxesadmin\meta-boxes.php:8
actionsave_postadmin\meta-boxes.php:78
actioninitadmin\post-types-taxonomy.php:15
actioninitadmin\post-types-taxonomy.php:27
actionadmin_menuadmin\shortcode-generator.php:15
actionwp_enqueue_scriptsreviewfic.php:28
actionadmin_enqueue_scriptsreviewfic.php:61
Maintenance & Trust

Reviewfic – The Ultimate Testimonial Slider, Carousel, Grid Plugin Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedUnknown
PHP min version7.4
Downloads941

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Reviewfic – The Ultimate Testimonial Slider, Carousel, Grid Plugin Developer Profile

Themefic

11 plugins · 97K total installs

76
trust score
Avg Security Score
95/100
Avg Patch Time
93 days
View full developer profile
Detection Fingerprints

How We Detect Reviewfic – The Ultimate Testimonial Slider, Carousel, Grid Plugin

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/reviewfic/assets/css/reviewfic.css/wp-content/plugins/reviewfic/assets/js/reviewfic.js/wp-content/plugins/reviewfic/assets/css/reviewfic-admin.css
Script Paths
/wp-content/plugins/reviewfic/assets/js/reviewfic.js
Version Parameters
reviewfic/assets/css/reviewfic.css?ver=reviewfic/assets/js/reviewfic.js?ver=reviewfic/assets/css/reviewfic-admin.css?ver=

HTML / DOM Fingerprints

CSS Classes
reviewfic-columnsreviewfic-itemreviewfic-columns-1reviewfic-columns-2reviewfic-columns-3reviewfic-columns-4company
Data Attributes
id="reviewfic-shortcode-form"id="reviewfic-category"id="reviewfic-columns"id="reviewfic-max-items"id="reviewfic-generate-shortcode"id="reviewfic-shortcode-result"+3 more
Shortcode Output
[reviewfic]<div class="reviewfic-columns reviewfic-columns-<div class="reviewfic-item">
FAQ

Frequently Asked Questions about Reviewfic – The Ultimate Testimonial Slider, Carousel, Grid Plugin