Ai1ec Rich Snippets Security & Risk Analysis

wordpress.org/plugins/rich-snippet-for-ai1ec

Make your All-in-One Event Calendar events more discoverable in Google (and other) search results by adding rich snippets to them.

10 active installs v1.0.3 PHP + WP 3.5+ Updated Nov 20, 2016
calendareventsgooglegoogle-rich-snippetsseo
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Ai1ec Rich Snippets Safe to Use in 2026?

Generally Safe

Score 85/100

Ai1ec Rich Snippets has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 9yr ago
Risk Assessment

The static analysis of "rich-snippet-for-ai1ec" v1.0.3 reveals a generally strong security posture. The plugin demonstrates excellent practices by not exposing any AJAX handlers, REST API routes, shortcodes, or cron events without proper authentication or permission checks. The code is clean, with no dangerous functions identified, all SQL queries utilizing prepared statements, and all outputs correctly escaped. The absence of file operations and external HTTP requests further reduces the attack surface. Taint analysis also yielded no concerning findings, indicating no apparent pathways for malicious data injection or manipulation.

However, a notable concern is the complete absence of nonce checks and capability checks across all entry points, which were reported as zero. While the current design might not expose these checks due to the lack of discoverable entry points, it represents a potential weakness if future updates introduce new functionalities that aren't adequately secured. The vulnerability history is clean, with no recorded CVEs, which is a positive indicator of the plugin's past security diligence. Overall, the plugin is currently very secure, but the lack of built-in nonce and capability checks could become a risk if the plugin evolves without addressing this oversight.

Key Concerns

  • Missing nonce checks
  • Missing capability checks
Vulnerabilities
None known

Ai1ec Rich Snippets Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Ai1ec Rich Snippets Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
1 prepared
Unescaped Output
0
1 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared1 total queries

Output Escaping

100% escaped1 total outputs
Attack Surface

Ai1ec Rich Snippets Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 2
actionplugins_loadedrsai1ec.php:33
actionthe_contentrsai1ec.php:157
Maintenance & Trust

Ai1ec Rich Snippets Maintenance & Trust

Maintenance Signals

WordPress version tested4.6.30
Last updatedNov 20, 2016
PHP min version
Downloads3K

Community Trust

Rating100/100
Number of ratings2
Active installs10
Developer Profile

Ai1ec Rich Snippets Developer Profile

abwebgorohovets

1 plugin · 10 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Ai1ec Rich Snippets

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/rich-snippet-for-ai1ec/css/style.css/wp-content/plugins/rich-snippet-for-ai1ec/js/script.js
Script Paths
/wp-content/plugins/rich-snippet-for-ai1ec/js/script.js
Version Parameters
rich-snippet-for-ai1ec/css/style.css?ver=rich-snippet-for-ai1ec/js/script.js?ver=

HTML / DOM Fingerprints

Shortcode Output
<script type="application/ld+json">{"@context": "http://schema.org/", "@type": "Event""name""image""startDate"
FAQ

Frequently Asked Questions about Ai1ec Rich Snippets