Select and Tweet Security & Risk Analysis

wordpress.org/plugins/select-and-chirp

Select the text and tweet the selected text to Twitter/X

0 active installs v1.0.2 PHP 7.0+ WP 5.5+ Updated Mar 2, 2026
click-to-tweetselect-and-tweettweet
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Select and Tweet Safe to Use in 2026?

Generally Safe

Score 100/100

Select and Tweet has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The select-and-chirp plugin v1.0.2 exhibits a generally good security posture based on the provided static analysis. The absence of dangerous functions, SQL queries, file operations, and external HTTP requests is a significant strength. Furthermore, the high percentage of properly escaped output and the presence of a nonce check are positive indicators of secure coding practices. The plugin's vulnerability history being clear of any known CVEs also suggests a stable and well-maintained codebase. However, the complete lack of capability checks for its sole entry point, the shortcode, is a notable concern. While the attack surface is small, any functionality exposed through this shortcode might be accessible to users without specific permissions, depending on the shortcode's implementation details which are not fully detailed in this analysis. The taint analysis showing zero flows with unsanitized paths is excellent, but the absence of analysis (0 total flows analyzed) means we cannot definitively rule out potential issues in more complex interactions.

Key Concerns

  • Missing capability checks on entry points
Vulnerabilities
None known

Select and Tweet Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Select and Tweet Release Timeline

v1.0.2Current
v1.0.1
v1.0.0
Code Analysis
Analyzed Mar 17, 2026

Select and Tweet Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
6
62 escaped
Nonce Checks
1
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

91% escaped68 total outputs
Attack Surface

Select and Tweet Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[select_and_tweet] select-and-tweet.php:31
WordPress Hooks 6
actionadmin_menuselect-and-tweet.php:26
actionadmin_enqueue_scriptsselect-and-tweet.php:27
actionwp_enqueue_scriptsselect-and-tweet.php:28
actionadmin_post_tdt_settings_save_actionselect-and-tweet.php:29
actionwp_footerselect-and-tweet.php:30
actionplugins_loadedselect-and-tweet.php:33
Maintenance & Trust

Select and Tweet Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 2, 2026
PHP min version7.0
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Select and Tweet Developer Profile

WP Shuffle

8 plugins · 4K total installs

99
trust score
Avg Security Score
98/100
Avg Patch Time
7 days
View full developer profile
Detection Fingerprints

How We Detect Select and Tweet

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/select-and-chirp/assets/css/tdt-backend.css/wp-content/plugins/select-and-chirp/assets/js/tdt-backend.js/wp-content/plugins/select-and-chirp/assets/css/tdt-frontend.css/wp-content/plugins/select-and-chirp/assets/js/tdt-frontend.js
Script Paths
/wp-content/plugins/select-and-chirp/assets/js/tdt-backend.js/wp-content/plugins/select-and-chirp/assets/js/tdt-frontend.js
Version Parameters
select-and-chirp/assets/css/tdt-backend.css?ver=select-and-chirp/assets/js/tdt-backend.js?ver=select-and-chirp/assets/css/tdt-frontend.css?ver=select-and-chirp/assets/js/tdt-frontend.js?ver=

HTML / DOM Fingerprints

JS Globals
twd_js_objtwd_js_obj1twd_js_obj2
Shortcode Output
<!-- Select and Tweet Shortcode -->
FAQ

Frequently Asked Questions about Select and Tweet