
The SGDiet TDEE Calculator Security & Risk Analysis
wordpress.org/plugins/sgdiet-tdee-calculatorCalculate Total Daily Energy Expenditure on your frontend for your users to use.
Is The SGDiet TDEE Calculator Safe to Use in 2026?
Generally Safe
Score 85/100The SGDiet TDEE Calculator has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The sgdiet-tdee-calculator plugin exhibits a concerning security posture due to a significant number of unprotected entry points. While the plugin avoids dangerous functions and uses prepared statements for all SQL queries, a substantial portion of its attack surface, specifically 18 AJAX handlers, lacks any authentication or capability checks. This leaves these handlers vulnerable to unauthorized access and potentially malicious input. The taint analysis also revealed two flows with unsanitized paths, which, while not flagged as critical or high severity in this analysis, represent potential avenues for exploitation if combined with other weaknesses. The absence of any recorded vulnerability history could indicate either a secure development history or simply a lack of prior public discovery, which should not be relied upon as a guarantee of future security. Overall, the plugin demonstrates strengths in its handling of database queries and output escaping, but its security is severely undermined by the extensive exposure of its AJAX functionality. Proactive measures to secure these AJAX handlers are paramount to mitigating significant risks.
Key Concerns
- Unprotected AJAX handlers
- Unsanitized paths in taint analysis
- Missing nonce checks on AJAX
- Missing capability checks on AJAX
- 70% output escaping (could be higher)
The SGDiet TDEE Calculator Security Vulnerabilities
The SGDiet TDEE Calculator Release Timeline
The SGDiet TDEE Calculator Code Analysis
Output Escaping
Data Flow Analysis
The SGDiet TDEE Calculator Attack Surface
AJAX Handlers 18
Shortcodes 2
WordPress Hooks 8
Maintenance & Trust
The SGDiet TDEE Calculator Maintenance & Trust
Maintenance Signals
Community Trust
The SGDiet TDEE Calculator Alternatives
Cooked – Recipe Management
cooked
Cooked is the absolute best way to create & display recipes with WordPress. SEO optimized, galleries, timers, and much more.
SEO, Nutrition and Print for Recipes by Edamam
seo-nutrition-and-print-for-recipes-by-edamam
The recipe plugin does all formating for you and makes recipes Google friendly with Schema.org. It also adds recipe's nutrition!
NutritionWP
nutritionwp
Super easy recipe plugin with nutritional facts. Made by a foodie!
Recipes to Grocery Lists
recipes-to-grocery-lists
Automatically add organized grocery lists with nutritional estimates to your recipe posts with just a click. Brought to you by Say Mmm.
WP Recipe Maker
wp-recipe-maker
The easy and user-friendly recipe plugin for everyone. Automatic JSON-LD metadata for food AND how-to recipes will improve your SEO!
The SGDiet TDEE Calculator Developer Profile
4 plugins · 30 total installs
How We Detect The SGDiet TDEE Calculator
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/sgdiet-tdee-calculator/assets/css/tdee-calculator.css/wp-content/plugins/sgdiet-tdee-calculator/assets/js/tdee-calculator.jssgdiet-tdee-calculator/assets/css/tdee-calculator.css?ver=sgdiet-tdee-calculator/assets/js/tdee-calculator.js?ver=HTML / DOM Fingerprints
knowhalim_form_sectionform_rowfield_labelfield_inputname="intention"value="lose weight and be healthy"value="just lose weight"value="just be healthy"value="just maintain weight"value="maintain weight healthily"+7 more