Scheduled Post Guardian Security & Risk Analysis

wordpress.org/plugins/scheduled-post-guardian

Watches over scheduled posts, and makes sure they don't miss their scheduled time

70 active installs v1.1.4 PHP 7.2+ WP 5.2+ Updated Feb 6, 2024
cronfuture-postsscheduled-posts
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Scheduled Post Guardian Safe to Use in 2026?

Generally Safe

Score 85/100

Scheduled Post Guardian has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2yr ago
Risk Assessment

The static analysis of "scheduled-post-guardian" v1.1.4 reveals a generally good security posture with no identified entry points (AJAX handlers, REST API routes, shortcodes, cron events) and no dangerous functions or file operations. Taint analysis indicates no vulnerabilities with unsanitized paths, and all identified output is properly escaped.

However, a significant concern is the single SQL query found, which is not using prepared statements. This is a critical weakness that could lead to SQL injection vulnerabilities if the data used in the query is not rigorously sanitized beforehand, which is not evident from the provided analysis.

The plugin has no recorded vulnerability history, which is a positive indicator. Combined with the lack of attack surface and proper output escaping, this suggests a potentially secure plugin. Nevertheless, the presence of a raw SQL query without preparation remains a notable risk that should be addressed.

Key Concerns

  • SQL query not using prepared statements
Vulnerabilities
None known

Scheduled Post Guardian Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Scheduled Post Guardian Code Analysis

Dangerous Functions
0
Raw SQL Queries
1
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

0% prepared1 total queries
Attack Surface

Scheduled Post Guardian Attack Surface

Entry Points0
Unprotected0
Maintenance & Trust

Scheduled Post Guardian Maintenance & Trust

Maintenance Signals

WordPress version tested6.4.8
Last updatedFeb 6, 2024
PHP min version7.2
Downloads11K

Community Trust

Rating56/100
Number of ratings9
Active installs70
Developer Profile

Scheduled Post Guardian Developer Profile

Mark Jaquith

29 plugins · 176K total installs

69
trust score
Avg Security Score
86/100
Avg Patch Time
3337 days
View full developer profile
Detection Fingerprints

How We Detect Scheduled Post Guardian

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Scheduled Post Guardian