
ReviewsTap Security & Risk Analysis
wordpress.org/plugins/reviewstapReviewsTap helps small businesses collect, monitor and manage reviews across a range of online platforms.
Is ReviewsTap Safe to Use in 2026?
Generally Safe
Score 91/100ReviewsTap has a strong security track record. Known vulnerabilities have been patched promptly. It's a solid choice for most WordPress installations.
The reviewstap plugin, in version 1.1.3, exhibits a mixed security posture. While it shows strong adherence to output escaping best practices and a clean slate regarding taint analysis and critical/high severity vulnerabilities, several areas warrant attention. The complete lack of capability checks on its sole entry point (a shortcode) and the use of raw SQL queries without prepared statements are significant concerns. The plugin's vulnerability history, though currently clear, previously had a medium severity CSRF vulnerability, indicating a need for ongoing vigilance. The limited attack surface is a positive, but the identified weaknesses in input validation and SQL handling could potentially be exploited in conjunction with other factors.
Key Concerns
- Raw SQL queries without prepared statements
- Shortcode entry point lacks capability checks
- Past medium severity CSRF vulnerability
ReviewsTap Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
ReviewsTap <= 1.1.2 - Cross-Site Request Forgery to Stored Cross-Site Scripting
ReviewsTap Release Timeline
ReviewsTap Code Analysis
SQL Query Safety
Output Escaping
ReviewsTap Attack Surface
Shortcodes 1
WordPress Hooks 5
Maintenance & Trust
ReviewsTap Maintenance & Trust
Maintenance Signals
Community Trust
ReviewsTap Alternatives
TargetBay Product and Site Reviews
targetbay-product-and-site-reviews
Generate tons of product reviews for your WooCommerce site with TargetBay
CodeX BVWP
codex-bvwp
Integrate your WordPress/WooCommerce with BazaarVoice. Gain your customers trust with real UGC (user generated content) including ratings and reviews …
GlowReviews – Smart Feedback & Testimonials
glowreviews
Collect customer feedback with star ratings, moderation, image uploads, and flexible testimonial layouts.
kk Star Ratings – Rate Post & Collect User Feedbacks
kk-star-ratings
kk Star Ratings allows blog visitors to involve and interact more effectively with your website by rating posts.
Site Reviews
site-reviews
Site Reviews is a complete review management solution that integrates with WooCommerce and SureCart and works similarly to reviews on Amazon, Tripadvi …
ReviewsTap Developer Profile
4 plugins · 210 total installs
How We Detect ReviewsTap
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/reviewstap/assets/css/style.css/wp-content/plugins/reviewstap/assets/js/main.jshttps://app.reviewstap.com/widgets/reviews.jsHTML / DOM Fingerprints
reviewstap-widgetdata-schemaType='Organization'reviewsTapWidgetJs_reviewsTapUrl_RTbusinessId<div id='reviewstap-widget' data-schemaType='Organization'></div>