Ridplace Rating Stars Security & Risk Analysis

wordpress.org/plugins/ridplace-ratingstars

Add rating stars on your website and in google search results

0 active installs v1.0.1 PHP + WP 6.0+ Updated Nov 2, 2023
bookmarks-managmentfeedbackreviewstar-ratingwebsite-rating
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Ridplace Rating Stars Safe to Use in 2026?

Generally Safe

Score 85/100

Ridplace Rating Stars has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2yr ago
Risk Assessment

The "ridplace-ratingstars" v1.0.1 plugin exhibits a generally strong security posture based on the provided static analysis. The absence of dangerous functions, SQL queries without prepared statements, and unescaped output are all positive indicators of good coding practices. Furthermore, the lack of any recorded vulnerabilities, critical or otherwise, suggests a history of secure development or diligent patching.

However, there are a few areas that warrant caution. The presence of an external HTTP request without explicit details is a potential concern, as it could be exploited for various malicious purposes if not handled securely. The lack of nonce checks and capability checks on the identified shortcode is also a significant omission. While the attack surface is small (only one shortcode), the absence of these crucial security measures means that the shortcode's functionality could potentially be triggered by unauthenticated or unauthorized users, leading to unintended actions.

In conclusion, the plugin has a solid foundation with its use of prepared statements and output escaping. The vulnerability history is a clear strength. The primary weaknesses lie in the lack of authorization checks for its single entry point (the shortcode) and the unexamined external HTTP request. Addressing these specific points would significantly enhance the plugin's overall security.

Key Concerns

  • Missing capability checks on shortcode
  • Missing nonce checks on shortcode
  • External HTTP request without explicit analysis
Vulnerabilities
None known

Ridplace Rating Stars Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Ridplace Rating Stars Release Timeline

v1.0.1Current
Code Analysis
Analyzed Mar 17, 2026

Ridplace Rating Stars Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
1
Bundled Libraries
0
Attack Surface

Ridplace Rating Stars Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[ridplace_ratingstars] index.php:17
Maintenance & Trust

Ridplace Rating Stars Maintenance & Trust

Maintenance Signals

WordPress version tested6.2.9
Last updatedNov 2, 2023
PHP min version
Downloads2K

Community Trust

Rating100/100
Number of ratings1
Active installs0
Developer Profile

Ridplace Rating Stars Developer Profile

ridplacecontact

1 plugin · 0 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Ridplace Rating Stars

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Version Parameters
ridplace-ratingstars/index.php?ver=1.0.1

HTML / DOM Fingerprints

Shortcode Output
<div class="ridplace-ratingstars">
FAQ

Frequently Asked Questions about Ridplace Rating Stars