RPS Blog Info Security & Risk Analysis

wordpress.org/plugins/rps-blog-info

Adds menus to the WordPress Toolbar to display blog, page, post and attachment IDs along with other related information.

100 active installs v1.1.1 PHP + WP 3.3+ Updated May 26, 2023
attachment-idblog-idblog-infoblog-informationdomain
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is RPS Blog Info Safe to Use in 2026?

Generally Safe

Score 85/100

RPS Blog Info has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2yr ago
Risk Assessment

The "rps-blog-info" plugin v1.1.1 exhibits a strong security posture based on the provided static analysis. The absence of any AJAX handlers, REST API routes, shortcodes, or cron events significantly limits its attack surface. Furthermore, the code demonstrates excellent development practices with 100% of SQL queries utilizing prepared statements and all identified outputs being properly escaped. The plugin also correctly implements capability checks where necessary and has no file operations or external HTTP requests, which are common vectors for vulnerabilities.

The lack of any detected taint flows, dangerous functions, or vulnerability history further reinforces this positive assessment. The plugin has no known CVEs, suggesting a history of secure development or a lack of public scrutiny due to its potentially limited functionality or user base. While the absence of nonces on the few identified capability checks is a minor point, it does not present an immediate exploitable risk given the minimal attack surface and lack of other vulnerabilities.

In conclusion, "rps-blog-info" v1.1.1 appears to be a very secure plugin. Its strengths lie in its minimal attack surface, adherence to secure coding practices like prepared statements and output escaping, and a clean vulnerability history. The only minor weakness is the lack of nonce checks on capability checks, which is a standard security measure but not critically exploitable in this context. Overall, the plugin is well-developed from a security perspective.

Key Concerns

  • Nonce checks missing on capability checks
Vulnerabilities
None known

RPS Blog Info Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

RPS Blog Info Release Timeline

v1.1.1Current
v1.1.0
v1.0.6
v1.0.5
v1.0.4
v1.0.3
v1.0.2
v1.0.1
v1.0
Code Analysis
Analyzed Mar 16, 2026

RPS Blog Info Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
1 escaped
Nonce Checks
0
Capability Checks
2
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped1 total outputs
Attack Surface

RPS Blog Info Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 5
actionplugins_loadedrps-blog-info.php:100
actionadmin_bar_menurps-blog-info.php:101
filterattachment_fields_to_editrps-blog-info.php:102
actionadmin_print_stylesrps-blog-info.php:103
actionwp_enqueue_scriptsrps-blog-info.php:104
Maintenance & Trust

RPS Blog Info Maintenance & Trust

Maintenance Signals

WordPress version tested6.2.9
Last updatedMay 26, 2023
PHP min version
Downloads7K

Community Trust

Rating100/100
Number of ratings1
Active installs100
Developer Profile

RPS Blog Info Developer Profile

redpixelstudios

3 plugins · 2K total installs

85
trust score
Avg Security Score
79/100
Avg Patch Time
6 days
View full developer profile
Detection Fingerprints

How We Detect RPS Blog Info

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/rps-blog-info/rps-blog-info.css

HTML / DOM Fingerprints

CSS Classes
flag
FAQ

Frequently Asked Questions about RPS Blog Info