Safan Elementor Addons Security & Risk Analysis

wordpress.org/plugins/safan-addons

Safan Elementor Addons for Elementor Page Builder.

10 active installs v3.1.0 PHP + WP 3.0.1+ Updated May 18, 2021
elementorelementor-content-blockelementor-content-widgetelementor-extentionelementor-widget
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Safan Elementor Addons Safe to Use in 2026?

Generally Safe

Score 85/100

Safan Elementor Addons has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4yr ago
Risk Assessment

Based on the provided static analysis, the 'safan-addons' v3.1.0 plugin exhibits a generally strong security posture. The absence of any identified AJAX handlers, REST API routes, shortcodes, or cron events with open attack vectors is a significant positive. Furthermore, the plugin shows good practices by not utilizing dangerous functions, performing all SQL queries using prepared statements, and having no file operations or external HTTP requests. The lack of reported vulnerabilities in its history also suggests a stable and well-maintained codebase.

However, a critical concern arises from the output escaping. With 75 total outputs and 0% properly escaped, this indicates a high likelihood of Cross-Site Scripting (XSS) vulnerabilities. Any user-supplied data that is outputted by the plugin without proper sanitization could be leveraged by attackers to inject malicious scripts. While the taint analysis found no specific issues, this is likely due to the limited scope of the analysis or the absence of observable data flows. The complete lack of nonce and capability checks, while not immediately indicative of a vulnerability given the current attack surface, represents a potential weakness if new entry points were to be introduced in future versions.

In conclusion, the plugin's core functionalities appear to be secured against common web vulnerabilities. The absence of critical findings in attack surface and taint analysis is commendable. Nevertheless, the severe lack of output escaping presents a significant risk that needs immediate attention. The lack of authorization checks, while not currently exploitable, is a minor concern for future extensibility. Addressing the output escaping is paramount to improving the plugin's overall security.

Key Concerns

  • No output escaping
  • No nonce checks
  • No capability checks
Vulnerabilities
None known

Safan Elementor Addons Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Safan Elementor Addons Release Timeline

No version history available.
Code Analysis
Analyzed Mar 16, 2026

Safan Elementor Addons Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
75
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

0% escaped75 total outputs
Attack Surface

Safan Elementor Addons Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 9
actioninitelementor-addons.php:45
actionplugins_loadedelementor-addons.php:46
actionadmin_noticeselementor-addons.php:60
actionadmin_noticeselementor-addons.php:66
actionadmin_noticeselementor-addons.php:72
actionelementor/widgets/widgets_registeredelementor-addons.php:77
actionelementor/elements/categories_registeredelementor-addons.php:78
actionelementor/frontend/after_enqueue_styleselementor-addons.php:79
actionelementor/frontend/after_enqueue_scriptselementor-addons.php:80
Maintenance & Trust

Safan Elementor Addons Maintenance & Trust

Maintenance Signals

WordPress version tested5.7.15
Last updatedMay 18, 2021
PHP min version
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Safan Elementor Addons Developer Profile

Md Rashed Hossain

12 plugins · 140 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Safan Elementor Addons

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/safan-addons/assets/css/bootstrap.css/wp-content/plugins/safan-addons/assets/css/font-awesome.css/wp-content/plugins/safan-addons/assets/plugins/themify/css/themify-icons.css/wp-content/plugins/safan-addons/assets/plugins/counto/animate.css/wp-content/plugins/safan-addons/assets/plugins/aos/aos.css/wp-content/plugins/safan-addons/assets/plugins/animated-text/animated-text.css/wp-content/plugins/safan-addons/assets/css/style.css/wp-content/plugins/safan-addons/assets/css/froala_blocks.min.css+10 more
Script Paths
/wp-content/plugins/safan-addons/assets/plugins/bootstrap/bootstrap.min.js/wp-content/plugins/safan-addons/assets/plugins/aos/aos.js/wp-content/plugins/safan-addons/assets/plugins/shuffle/shuffle.min.js/wp-content/plugins/safan-addons/assets/plugins/animated-text/animated-text.js/wp-content/plugins/safan-addons/assets/plugins/counto/apear.js/wp-content/plugins/safan-addons/assets/plugins/counto/counTo.js+3 more
Version Parameters
safan-addons/assets/js/scripts.js?ver=safan-addons/assets/js/script.js?ver=

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Safan Elementor Addons