
Show Your GitHub Activities Security & Risk Analysis
wordpress.org/plugins/show-your-github-activitieshttp://syga.kjirou.net/
Is Show Your GitHub Activities Safe to Use in 2026?
Generally Safe
Score 85/100Show Your GitHub Activities has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "show-your-github-activities" plugin version 0.0.6 exhibits a concerning security posture despite having no recorded vulnerabilities or identified taint flows. The static analysis reveals a complete absence of entry points such as AJAX handlers, REST API routes, shortcodes, and cron events, which is generally a positive sign for limiting the attack surface. However, the analysis also highlights critical weaknesses. Notably, 100% of the identified outputs are not properly escaped, posing a significant risk of Cross-Site Scripting (XSS) vulnerabilities. Furthermore, there are no apparent nonce or capability checks implemented across any code paths, leaving any potential future entry points or existing code vulnerable to unauthorized actions and privilege escalation. The complete lack of dangerous functions, raw SQL queries, file operations, and external HTTP requests are positive indicators, but they are overshadowed by the severe output escaping and authorization issues.
Key Concerns
- No output escaping
- No nonce checks
- No capability checks
Show Your GitHub Activities Security Vulnerabilities
Show Your GitHub Activities Code Analysis
Output Escaping
Show Your GitHub Activities Attack Surface
WordPress Hooks 1
Maintenance & Trust
Show Your GitHub Activities Maintenance & Trust
Maintenance Signals
Community Trust
Show Your GitHub Activities Alternatives
GitHub Mini Profile Widget
f13-github-mini-profile-widget
Add a snapshot of your GitHub profile to your website with with this widget.
GitHub User Repo Widget
github-user-repo-widget
A simple widget that will show a list of repos for a specified GitHub user.
Sync Footer Widget
sync-footer-widget
This plugin allows you to sync and display footer content from a GitHub Page URL in a widget area on your WordPress site.
Widget Github Profile
widget-github-profile
Shows your github profile in detail.
WP Github Commits
wp-github-commits
Displays the latest commits of a github repo in the sidebar.
Show Your GitHub Activities Developer Profile
1 plugin · 10 total installs
How We Detect Show Your GitHub Activities
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.