SEO Engine Security & Risk Analysis

wordpress.org/plugins/seo-engine

Made it through the SEO plugin wasteland? You've earned a coffee ☺️ Quietly powerful AI SEO that actually works. No bloat, just results. Enjoy! πŸ’•

1K active installs v0.6.3 PHP 7.4+ WP 6.0+ Updated Mar 10, 2026
aianalyticsgoogleoptimizationseo
100
A Β· Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is SEO Engine Safe to Use in 2026?

Generally Safe

Score 100/100

SEO Engine has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 25d ago
Risk Assessment

The 'seo-engine' plugin v0.6.3 exhibits a generally strong security posture based on the static analysis and vulnerability history provided. The absence of any known CVEs or recorded vulnerabilities, coupled with a low number of critical findings in the static analysis, is a positive indicator. The code also demonstrates good practices like a high percentage of prepared SQL statements and properly escaped output, along with a reasonable number of capability checks.

However, there are areas for improvement. The most significant concern is the complete lack of nonce checks across all entry points. This, combined with an attack surface of 0 entry points *without* auth checks, implies that if any entry points were to be discovered or added in the future, they would be highly vulnerable to CSRF attacks. The presence of file operations and external HTTP requests without explicit checks for sanitization or authentication is also a potential risk, though no taint flows were identified in this analysis.

In conclusion, while 'seo-engine' v0.6.3 appears to be relatively secure due to its clean vulnerability history and good code practices in SQL and output handling, the absence of nonce checks represents a substantial potential risk that should be addressed to ensure comprehensive security.

Key Concerns

  • No nonce checks detected
Vulnerabilities
None known

SEO Engine Security Vulnerabilities

No known vulnerabilities β€” this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

SEO Engine Code Analysis

Dangerous Functions
0
Raw SQL Queries
9
53 prepared
Unescaped Output
5
84 escaped
Nonce Checks
0
Capability Checks
15
File Operations
19
External Requests
7
Bundled Libraries
0

SQL Query Safety

85% prepared62 total queries

Output Escaping

94% escaped89 total outputs
Attack Surface

SEO Engine Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 48
actionadmin_menuclasses\admin.php:11
actionadmin_enqueue_scriptsclasses\admin.php:27
actionadmin_enqueue_scriptsclasses\admin.php:31
actionwp_headclasses\admin.php:35
actionwp_headclasses\admin.php:36
actionplugins_loadedclasses\core.php:34
actionsave_postclasses\core.php:38
filterattachment_linkclasses\core.php:58
actiontemplate_redirectclasses\core.php:59
filterinitclasses\core.php:65
filterpre_get_document_titleclasses\core.php:82
filterget_the_archive_title_prefixclasses\core.php:84
actionwp_headclasses\core.php:87
actioninitclasses\core.php:90
actionadd_meta_boxesclasses\core.php:95
actionwpclasses\core.php:119
actionadmin_noticesclasses\init.php:8
actioninitclasses\mcp.php:11
filtermwai_mcp_toolsclasses\mcp.php:21
filtermwai_mcp_callbackclasses\mcp.php:24
actiontemplate_redirectclasses\modules\analytics.php:109
filterthe_contentclasses\modules\analytics.php:113
actionwp_enqueue_scriptsclasses\modules\googleanalytics.php:277
filterscript_loader_tagclasses\modules\googleanalytics.php:296
actionwp_headclasses\modules\schema.php:20
filterseo_engine_has_schemaclasses\modules\schema.php:23
actionrest_api_initclasses\rest.php:17
filterposts_whereclasses\rest.php:821
filterwp_sitemaps_enabledclasses\sitemap.php:17
actionwp_after_insert_postclasses\sitemap.php:22
filterrobots_txtclasses\sitemap.php:29
filterwp_sitemaps_add_providerclasses\sitemap.php:43
filterwp_sitemaps_post_typesclasses\sitemap.php:58
filterwp_sitemaps_taxonomiesclasses\sitemap.php:76
filterwp_sitemaps_posts_query_argsclasses\sitemap.php:99
actionadmin_noticescommon\admin.php:72
filterplugin_row_metacommon\admin.php:77
filteredd_sl_api_request_verify_sslcommon\admin.php:78
actioninitcommon\admin.php:96
actionadmin_menucommon\admin.php:153
filteradmin_footer_textcommon\admin.php:158
actionadmin_footercommon\admin.php:218
actionadmin_headcommon\admin.php:456
actionadmin_noticescommon\news.php:43
filtersafe_style_csscommon\news.php:44
actionadmin_noticescommon\ratings.php:33
filtersafe_style_csscommon\ratings.php:34
actionrest_api_initcommon\rest.php:14
Maintenance & Trust

SEO Engine Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 10, 2026
PHP min version7.4
Downloads47K

Community Trust

Rating98/100
Number of ratings41
Active installs1K
Developer Profile

SEO Engine Developer Profile

Jordy Meow

27 plugins Β· 371K total installs

73
trust score
Avg Security Score
92/100
Avg Patch Time
372 days
View full developer profile
Detection Fingerprints

How We Detect SEO Engine

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/seo-engine/app/index.js/wp-content/plugins/seo-engine/app/vendor.js
Version Parameters
seo_engine_seo-vendorseo_engine_seo

HTML / DOM Fingerprints

HTML Comments
<!-- SEO Engine: This post is excluded from the sitemap --><!-- Twitter Meta Tags --><!-- Facebook Meta Tags --><!-- Open Graph Meta Tags Powered With Love By SEO Engine 😽 -->
JS Globals
mwseo
REST Endpoints
/seo-engine/v1
FAQ

Frequently Asked Questions about SEO Engine