Search Engine Insights for Google Search Console Security & Risk Analysis

wordpress.org/plugins/search-engine-insights

Verify site ownership on Google Search Console! Analyze the Google Search Console stats, to see your site's performance on Google Search.

2K active installs v2.6.5 PHP 5.6+ WP 3.5+ Updated Jan 4, 2026
google-search-consolesearch-consolesearch-console-dashboardsearch-console-widgetseo
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Search Engine Insights for Google Search Console Safe to Use in 2026?

Generally Safe

Score 100/100

Search Engine Insights for Google Search Console has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4mo ago
Risk Assessment

The "search-engine-insights" v2.6.5 plugin demonstrates a generally strong security posture. The static analysis reveals a reasonable number of entry points, all of which are protected by authentication checks. The absence of dangerous functions, file operations, and any critical or high-severity taint flows are significant strengths. Furthermore, the plugin has no recorded vulnerabilities (CVEs), indicating a history of secure development or prompt patching. The presence of numerous nonce and capability checks further reinforces the security measures in place.

However, there are areas for improvement. A concerning aspect is the 50% rate of improperly escaped outputs. While the taint analysis did not identify any specific unsanitized paths, this high percentage of unescaped output represents a potential Cross-Site Scripting (XSS) risk if user-supplied data is directly reflected in the output without proper sanitization. Additionally, while the SQL queries primarily use prepared statements, 33% do not, which could lead to SQL injection vulnerabilities if these queries handle untrusted input. The 10 external HTTP requests, while not inherently problematic, could be a vector for various attacks (e.g., SSRF, information disclosure) if not handled with extreme care regarding input validation and sanitization of URLs and data being sent.

In conclusion, "search-engine-insights" v2.6.5 is a relatively secure plugin due to its robust authentication on entry points and lack of historical vulnerabilities. The primary weaknesses lie in the potential for XSS due to unescaped output and the risk of SQL injection in non-prepared SQL queries. Addressing these specific coding practices will further enhance its security.

Key Concerns

  • Improper output escaping (50%)
  • SQL queries not using prepared statements (33%)
Vulnerabilities
None known

Search Engine Insights for Google Search Console Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Search Engine Insights for Google Search Console Release Timeline

v2.6.5Current
v2.6.4
v2.6.3
v2.6.2
v2.6.1
v2.6
v2.5
v2.4
v2.3
v2.2
v2.1.8
v2.1.3
v2.1.1
v2.0
v1.6.5
v1.6.3
v1.6.2
v1.6.1
v1.6
v1.5
Code Analysis
Analyzed Mar 16, 2026

Search Engine Insights for Google Search Console Code Analysis

Dangerous Functions
0
Raw SQL Queries
3
6 prepared
Unescaped Output
55
56 escaped
Nonce Checks
19
Capability Checks
11
File Operations
0
External Requests
10
Bundled Libraries
0

SQL Query Safety

67% prepared9 total queries

Output Escaping

50% escaped111 total outputs
Data Flows · Security
All sanitized

Data Flow Analysis

3 flows
settings (admin\settings.php:58)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Search Engine Insights for Google Search Console Attack Surface

Entry Points4
Unprotected0

AJAX Handlers 4

authwp_ajax_seiwp_backend_item_reportsadmin\ajax-actions.php:27
authwp_ajax_seiwp_dismiss_noticesadmin\ajax-actions.php:33
authwp_ajax_seiwp_set_errorcommon\ajax-actions.php:24
authwp_ajax_seiwp_frontend_item_reportsfront\ajax-actions.php:27
WordPress Hooks 16
filtermanage_posts_columnsadmin\item-reports.php:27
actionmanage_posts_custom_columnadmin\item-reports.php:31
filtermanage_pages_columnsadmin\item-reports.php:35
actionmanage_pages_custom_columnadmin\item-reports.php:39
actionadmin_enqueue_scriptsadmin\setup.php:25
actionadmin_menuadmin\setup.php:29
actionnetwork_admin_menuadmin\setup.php:33
actionadmin_noticesadmin\setup.php:41
actionwp_dashboard_setupadmin\widgets.php:23
filterplugins_update_check_localesconfig.php:31
actionseiwp_expired_cache_hookconfig.php:52
actionadmin_bar_menufront\item-reports.php:23
actionwp_enqueue_scriptsfront\setup.php:25
actionwp_headfront\verify\site-verification.php:24
actioninitseiwp.php:133
actioninitseiwp.php:138

Scheduled Events 1

seiwp_expired_cache_hook
Maintenance & Trust

Search Engine Insights for Google Search Console Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedJan 4, 2026
PHP min version5.6
Downloads84K

Community Trust

Rating80/100
Number of ratings4
Active installs2K
Developer Profile

Search Engine Insights for Google Search Console Developer Profile

Alin Marcu

9 plugins · 23K total installs

85
trust score
Avg Security Score
96/100
Avg Patch Time
37 days
View full developer profile
Detection Fingerprints

How We Detect Search Engine Insights for Google Search Console

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/search-engine-insights/admin/css/backend.css/wp-content/plugins/search-engine-insights/admin/js/backend.js/wp-content/plugins/search-engine-insights/front/css/frontend.css/wp-content/plugins/search-engine-insights/front/js/frontend.js/wp-content/plugins/search-engine-insights/front/verify/css/site-verification.css/wp-content/plugins/search-engine-insights/front/verify/js/site-verification.js
Script Paths
/wp-content/plugins/search-engine-insights/admin/js/backend.js/wp-content/plugins/search-engine-insights/front/js/frontend.js/wp-content/plugins/search-engine-insights/front/verify/js/site-verification.js
Version Parameters
search-engine-insights/admin/css/backend.css?ver=search-engine-insights/admin/js/backend.js?ver=search-engine-insights/front/css/frontend.css?ver=search-engine-insights/front/js/frontend.js?ver=search-engine-insights/front/verify/css/site-verification.css?ver=search-engine-insights/front/verify/js/site-verification.js?ver=

HTML / DOM Fingerprints

CSS Classes
seiwp-admin-notice
Data Attributes
data-seiwp-post-id
JS Globals
seiwp_ajax_object
REST Endpoints
/wp-json/seiwp/v1/get_data
FAQ

Frequently Asked Questions about Search Engine Insights for Google Search Console