Simple Export to Markdown Security & Risk Analysis

wordpress.org/plugins/simple-export-md

Adds a Gutenberg editor panel to export any post or page content to Markdown format (.md file or clipboard).

100 active installs v0.1.2 PHP 7.4+ WP 6.0+ Updated Dec 3, 2025
clipboardcontenteditorexportmarkdown
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Simple Export to Markdown Safe to Use in 2026?

Generally Safe

Score 100/100

Simple Export to Markdown has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4mo ago
Risk Assessment

Based on the static analysis and vulnerability history, the 'simple-export-md' v0.1.2 plugin exhibits a strong security posture. The code analysis reveals no dangerous functions, no raw SQL queries, all SQL queries use prepared statements, and all output is properly escaped. Furthermore, there are no file operations, external HTTP requests, or bundled libraries that could introduce vulnerabilities. The absence of an attack surface through AJAX handlers, REST API routes, shortcodes, or cron events is a significant strength, as it minimizes potential entry points for attackers.

The plugin's vulnerability history is also remarkably clean, with no recorded CVEs of any severity. This, combined with the lack of detected taint flows and unsanitized paths in the static analysis, suggests a well-written and securely developed plugin. The complete lack of nonce checks and capability checks is notable; while this could be a concern in plugins with broader functionality or public-facing entry points, in this case, with zero attack surface, it does not immediately translate to a concrete risk. The plugin's design appears to focus on a narrow, internal function without exposing it to external manipulation, which is a commendable security practice. Overall, 'simple-export-md' v0.1.2 presents as a low-risk plugin due to its minimal attack surface and clean security record.

Key Concerns

  • No Nonce Checks Found
  • No Capability Checks Found
Vulnerabilities
None known

Simple Export to Markdown Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Simple Export to Markdown Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
5 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped5 total outputs
Attack Surface

Simple Export to Markdown Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 3
actionadmin_noticessimple-export-md.php:39
actionadmin_initsimple-export-md.php:51
actionenqueue_block_editor_assetssimple-export-md.php:115
Maintenance & Trust

Simple Export to Markdown Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 3, 2025
PHP min version7.4
Downloads454

Community Trust

Rating0/100
Number of ratings0
Active installs100
Developer Profile

Simple Export to Markdown Developer Profile

Pavel Sherer

2 plugins · 100 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Simple Export to Markdown

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/simple-export-md/assets/turndown.min.js/wp-content/plugins/simple-export-md/assets/turndown.js/wp-content/plugins/simple-export-md/assets/export-md.js/wp-content/plugins/simple-export-md/assets/export-md.min.js
Script Paths
assets/turndown.min.jsassets/turndown.jsassets/export-md.jsassets/export-md.min.js
Version Parameters
simple-export-md/assets/turndown.min.js?ver=simple-export-md/assets/turndown.js?ver=simple-export-md/assets/export-md.js?ver=simple-export-md/assets/export-md.min.js?ver=

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Simple Export to Markdown