Server Status for MC by MrDino Security & Risk Analysis

wordpress.org/plugins/server-status-for-mc-by-mrdino

Display your Minecraft server status on your WordPress site. Basic mode works without any Minecraft plugin.

20 active installs v0.0.6 PHP 7.4+ WP 6.0+ Updated Dec 10, 2025
minecraftserverstatus
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Server Status for MC by MrDino Safe to Use in 2026?

Generally Safe

Score 100/100

Server Status for MC by MrDino has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3mo ago
Risk Assessment

The server-status-for-mc-by-mrdino plugin exhibits a generally strong security posture based on the provided static analysis. The absence of dangerous functions, reliance on prepared statements for all SQL queries, and a high percentage of properly escaped output are excellent indicators of secure coding practices. Furthermore, the plugin demonstrates a commitment to security by implementing nonce and capability checks, suggesting an awareness of common WordPress vulnerabilities. The lack of any recorded vulnerabilities or CVEs is also a positive sign, implying a history of stable and secure code.

However, the analysis does present some areas for minor concern. The presence of external HTTP requests, while not inherently a vulnerability, introduces an element of risk if not handled with utmost care regarding the source and content of these requests. Although the static analysis did not reveal any taint flows, the limited scope of the taint analysis (0 flows analyzed) means that potential issues in this area cannot be definitively ruled out. The plugin's attack surface, while having no unprotected entry points, is composed of AJAX handlers and shortcodes, which are common targets for attackers if not robustly secured.

In conclusion, the server-status-for-mc-by-mrdino plugin appears to be well-developed from a security perspective, with a strong emphasis on core security principles. The minimal identified risks are primarily related to external dependencies and the inherent nature of certain entry points. Continuous monitoring and adherence to best practices will be crucial for maintaining this positive security track record.

Key Concerns

  • External HTTP requests present potential risks
  • Limited scope of taint analysis
Vulnerabilities
None known

Server Status for MC by MrDino Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Server Status for MC by MrDino Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
2
146 escaped
Nonce Checks
2
Capability Checks
1
File Operations
0
External Requests
2
Bundled Libraries
0

Output Escaping

99% escaped148 total outputs
Attack Surface

Server Status for MC by MrDino Attack Surface

Entry Points6
Unprotected0

AJAX Handlers 4

authwp_ajax_mcsmd_refresh_statusincludes\class-mcsmd-frontend.php:20
noprivwp_ajax_mcsmd_refresh_statusincludes\class-mcsmd-frontend.php:21
authwp_ajax_mcsmd_refresh_playersincludes\class-mcsmd-players.php:19
noprivwp_ajax_mcsmd_refresh_playersincludes\class-mcsmd-players.php:20

Shortcodes 2

[mcsmd_status] includes\class-mcsmd-frontend.php:16
[mcsmd_players] includes\class-mcsmd-players.php:16
WordPress Hooks 5
actionadmin_menuincludes\class-mcsmd-admin.php:23
actionadmin_initincludes\class-mcsmd-admin.php:24
actionadmin_noticesincludes\class-mcsmd-admin.php:25
actionwp_enqueue_scriptsincludes\class-mcsmd-frontend.php:17
actioninitserver-status-for-mc-by-mrdino.php:67
Maintenance & Trust

Server Status for MC by MrDino Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 10, 2025
PHP min version7.4
Downloads252

Community Trust

Rating100/100
Number of ratings1
Active installs20
Developer Profile

Server Status for MC by MrDino Developer Profile

mrdinocarlos

2 plugins · 40 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Server Status for MC by MrDino

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/server-status-for-mc-by-mrdino/assets/css/mcsmd-status.css/wp-content/plugins/server-status-for-mc-by-mrdino/assets/js/mcsmd-status.js
Script Paths
assets/js/mcsmd-status.js
Version Parameters
mcsmd-status.css?ver=mcsmd-status.js?ver=

HTML / DOM Fingerprints

CSS Classes
mcsmd-status-cardmcsmd-server-ipmcsmd-server-portmcsmd-server-playersmcsmd-server-motdmcsmd-server-bannermcsmd-server-status-onlinemcsmd-server-status-offline+5 more
HTML Comments
<!-- Server Status for MC by MrDino v0.0.6 --><!-- mcsmd_status_card start --><!-- mcsmd_status_card end --><!-- mcsmd_player_list start -->+1 more
Data Attributes
data-server-addressdata-server-portdata-refresh-intervaldata-player-limitdata-player-columns
JS Globals
MCSMD_AJAX
REST Endpoints
/wp-json/mcsmd/v1/status
Shortcode Output
[mcsmd_status][mcsmd_players_list]
FAQ

Frequently Asked Questions about Server Status for MC by MrDino