
Show user name Security & Risk Analysis
wordpress.org/plugins/show-user-nameAdd the shortcode [name] in the Header, footer ore on any post and page. With this plugin you can display the logged in user name.
Is Show user name Safe to Use in 2026?
Generally Safe
Score 100/100Show user name has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "show-user-name" v1.0 plugin demonstrates a generally good security posture based on the provided static analysis. The code avoids dangerous functions, utilizes prepared statements for all SQL queries, and properly escapes all identified outputs. There are no file operations or external HTTP requests, which are common vectors for vulnerabilities. The absence of any taint analysis findings further suggests that data handling within the plugin is likely secure.
However, there are notable areas for concern. The plugin has a complete lack of nonce checks and capability checks. While the reported attack surface is small (only one shortcode) and appears to have no direct authentication checks on entry points, the absence of these fundamental security mechanisms is a significant weakness. In the event that the shortcode's functionality becomes more complex or is extended in the future, the lack of these checks could easily lead to vulnerabilities such as Cross-Site Request Forgery (CSRF) or unauthorized access. The plugin's vulnerability history is clean, indicating past security diligence or simply a lack of exploitation attempts thus far. Nevertheless, the current implementation presents inherent risks due to the missing authorization and noncing controls.
Key Concerns
- Missing nonce checks
- Missing capability checks
Show user name Security Vulnerabilities
Show user name Code Analysis
Output Escaping
Show user name Attack Surface
Shortcodes 1
Maintenance & Trust
Show user name Maintenance & Trust
Maintenance Signals
Community Trust
Show user name Alternatives
No alternatives data available yet.
Show user name Developer Profile
18 plugins · 330 total installs
How We Detect Show user name
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
[name]