
Riddle Quiz Maker – easily add quizzes with unlimited lead generation to your site Security & Risk Analysis
wordpress.org/plugins/riddle-playful-content-on-the-goRiddle’s beautifully intuitive quiz maker lets you create unlimited quizzes, personality tests, and more—no coding, no limits.
Is Riddle Quiz Maker – easily add quizzes with unlimited lead generation to your site Safe to Use in 2026?
Generally Safe
Score 100/100Riddle Quiz Maker – easily add quizzes with unlimited lead generation to your site has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "riddle-playful-content-on-the-go" v4.7.4 exhibits a mixed security posture. On the positive side, the plugin demonstrates good practices regarding SQL queries, utilizing prepared statements exclusively, and has no known historical vulnerabilities. The absence of a significant attack surface in terms of AJAX handlers, REST API routes, shortcodes, and cron events is also a positive indicator. However, the static analysis reveals critical concerns. The presence of the `unserialize` function, a known source of deserialization vulnerabilities, without any apparent sanitization or capability checks on its input is a major red flag. Furthermore, a very low percentage of output escaping (4%) suggests a high risk of Cross-Site Scripting (XSS) vulnerabilities, as user-controlled data is likely being rendered directly in the browser without proper encoding.
The taint analysis showing zero unsanitized flows is encouraging but may not fully capture the risks associated with `unserialize` if its inputs are not strictly controlled. The vulnerability history being clean is a strength, implying a potentially well-maintained codebase. However, the absence of vulnerabilities thus far does not negate the immediate risks identified through static analysis. The combination of a dangerous function and poor output escaping presents a significant potential for exploitation, even without a history of public exploits.
Key Concerns
- Dangerous function 'unserialize' used
- Low output escaping percentage (4%)
- No nonce checks detected
- No capability checks detected
Riddle Quiz Maker – easily add quizzes with unlimited lead generation to your site Security Vulnerabilities
Riddle Quiz Maker – easily add quizzes with unlimited lead generation to your site Code Analysis
Dangerous Functions Found
Output Escaping
Riddle Quiz Maker – easily add quizzes with unlimited lead generation to your site Attack Surface
Maintenance & Trust
Riddle Quiz Maker – easily add quizzes with unlimited lead generation to your site Maintenance & Trust
Maintenance Signals
Community Trust
Riddle Quiz Maker – easily add quizzes with unlimited lead generation to your site Alternatives
involve.me – Create Surveys, Quizzes, Calculators & Forms as Embedded Widgets or Pop-ups
involve-me
Add forms, quizzes, surveys and interactive calculators to your WordPress site. Easily embed or use as pop-ups. No coding required.
Quiz Maker
quiz-maker
QUIZ MAKER plugin allows you to make an unlimited number of Quizzes, Exams and Tests
HD Quiz
hd-quiz
Create a Quiz. An easy-to-use feature rich plugin to create quizzes with quiz timer, pagination, hints, advanced marking, and leading help and support
Quiz, Poll & Survey Maker by Opinion Stage
social-polls-by-opinionstage
Boost engagement and capture leads with interactive quizzes, polls, and surveys. Built for marketers, publishers, and businesses
SurveyJS: Drag & Drop Form Builder
surveyjs
Drag & Drop Form Builder for WordPress
Riddle Quiz Maker – easily add quizzes with unlimited lead generation to your site Developer Profile
1 plugin · 300 total installs
How We Detect Riddle Quiz Maker – easily add quizzes with unlimited lead generation to your site
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/riddle-playful-content-on-the-go/public/css/bootstrap.css/wp-content/plugins/riddle-playful-content-on-the-go/public/css/plugin_v2.css/wp-content/plugins/riddle-playful-content-on-the-go/public/js/bootstrap.js/wp-content/plugins/riddle-playful-content-on-the-go/public/js/plugin.jshttps://cdn.riddle.com/website/wp-plugin/js/riddle-gutenberg-block-v5.1.0.jsriddle-playful-content-on-the-go/public/css/bootstrap.css?ver=riddle-playful-content-on-the-go/public/css/plugin_v2.css?ver=riddle-playful-content-on-the-go/public/js/bootstrap.js?ver=riddle-playful-content-on-the-go/public/js/plugin.js?ver=HTML / DOM Fingerprints
riddle-preview-containerdata-riddle-embed-idRiddle<div id='riddle-preview-container' data-riddle-embed-id=