
SkillTriks Security & Risk Analysis
wordpress.org/plugins/skilltriksTransform your WordPress site into a dynamic Learning Management System (LMS) using our innovative WordPress LMS Plugin.
Is SkillTriks Safe to Use in 2026?
Generally Safe
Score 100/100SkillTriks has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'skilltriks' v1.2 plugin demonstrates a generally good security posture with a strong emphasis on secure coding practices. The plugin utilizes prepared statements for the vast majority of its SQL queries and properly escapes output with a high success rate. The absence of known historical vulnerabilities and the presence of numerous nonce and capability checks are positive indicators. However, a significant concern arises from the static analysis, which reveals one AJAX handler that lacks authentication checks. Furthermore, taint analysis identified two flows with unsanitized paths, both classified as high severity. These unsanitized paths represent potential vulnerabilities where user-controlled data could be used in a dangerous way, even if the overall number of such flows is low.
While the plugin has no recorded CVEs, indicating a history of responsible development or a lack of past discovery, the current taint analysis findings cannot be ignored. The lack of authentication on an AJAX handler is a direct entry point that could be exploited if malicious data is sent. The high-severity unsanitized paths, although few, suggest specific areas within the codebase that require immediate attention to ensure proper sanitization and validation of input. In conclusion, 'skilltriks' v1.2 has strong foundations in secure coding, but the identified unprotected AJAX handler and high-severity unsanitized paths introduce notable risks that must be addressed.
Key Concerns
- AJAX handler without auth check
- High severity unsanitized taint flows
SkillTriks Security Vulnerabilities
SkillTriks Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
SkillTriks Attack Surface
AJAX Handlers 20
WordPress Hooks 104
Scheduled Events 4
Maintenance & Trust
SkillTriks Maintenance & Trust
Maintenance Signals
Community Trust
SkillTriks Alternatives
LearnPress – Course Review
learnpress-course-review
LearnPress Course Review - An extension plugin for LearnPress.
LearnPress – Course Wishlist
learnpress-wishlist
LearnPress Wishlist add wishlist feature to your LearnPress course in your site.
LearnPress – Prerequisites Courses
learnpress-prerequisites-courses
LearnPress Prerequisites is an add-on for LearnPress allow you to set prerequisite courses for a certain course in a LearnPress site.
LearnPress – bbPress Integration
learnpress-bbpress
bbPress addon for LearnPress is a plugin which bring bbPress features to LearnPress - WordPress LMS Plugin.
LearnPress – BuddyPress Integration
learnpress-buddypress
LearnPress buddyPress bring wonderful profile page for LearnPress.
SkillTriks Developer Profile
13 plugins · 17K total installs
How We Detect SkillTriks
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/skilltriks/assets/css/style.css/wp-content/plugins/skilltriks/assets/js/admin.js/wp-content/plugins/skilltriks/assets/js/admin.jsskilltriks/style.css?ver=skilltriks/admin.js?ver=HTML / DOM Fingerprints
stlms_settingsdata-stlms-ajax-urlSTLMS_SETTINGstlms_options