Snillrik Skolmaten.se Security & Risk Analysis

wordpress.org/plugins/skolmaten

Fetch your schools lunch menu from skolmaten.se

0 active installs v2.0.0 PHP + WP 4.5+ Updated Jan 6, 2026
dinskolmatlunchmeny
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Snillrik Skolmaten.se Safe to Use in 2026?

Generally Safe

Score 100/100

Snillrik Skolmaten.se has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4mo ago
Risk Assessment

The "skolmaten" v2.0.0 plugin exhibits a strong security posture based on the provided static analysis. The absence of dangerous functions, all SQL queries utilizing prepared statements, and 100% properly escaped output are excellent security practices. The plugin also demonstrates good security by avoiding direct file operations and external HTTP requests where possible, and importantly, all identified entry points (shortcodes) appear to have implicit or explicit protection mechanisms, as none are listed as unprotected. The vulnerability history being entirely clean further reinforces this positive assessment.

Despite the positive indicators, there are a few areas that warrant attention. The complete absence of nonce checks and capability checks across all identified code signals is a significant concern. While the current attack surface is small and seemingly protected, this omission leaves the plugin vulnerable to CSRF attacks and privilege escalation if any future functionality introduces new entry points or if the existing implicit protections are bypassed. The lack of taint analysis results, while potentially indicating no critical flows, also means there's no specific assurance that unsanitized data isn't being processed in unexpected ways.

In conclusion, "skolmaten" v2.0.0 is well-developed with a clear focus on secure coding practices regarding SQL and output sanitization. However, the lack of explicit authorization and CSRF protection mechanisms in its codebase represents a notable weakness that could be exploited. Addressing these omissions would significantly enhance the plugin's overall security.

Key Concerns

  • Missing nonce checks
  • Missing capability checks
Vulnerabilities
None known

Snillrik Skolmaten.se Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Snillrik Skolmaten.se Release Timeline

v2.0.0Current
v1.9.0
v1.8.1
v1.8.0
v1.7.1
Code Analysis
Analyzed Apr 16, 2026

Snillrik Skolmaten.se Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
1 prepared
Unescaped Output
0
58 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
1
Bundled Libraries
0

SQL Query Safety

100% prepared1 total queries

Output Escaping

100% escaped58 total outputs
Attack Surface

Snillrik Skolmaten.se Attack Surface

Entry Points2
Unprotected0

Shortcodes 2

[skolmaten_vecka] classes/shortcodes.php:17
[skolmaten_day] classes/shortcodes.php:18
WordPress Hooks 7
actionadmin_noticesclasses/skolmaten_api.php:40
actioninitclasses/widgets.php:14
actionwidgets_initclasses/widgets.php:15
actionadmin_menusettings.php:6
actionadmin_initsettings.php:15
actionwp_enqueue_scriptsskolmaten.php:30
actionadmin_enqueue_scriptsskolmaten.php:36
Maintenance & Trust

Snillrik Skolmaten.se Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedJan 6, 2026
PHP min version
Downloads2K

Community Trust

Rating90/100
Number of ratings2
Active installs0
Alternatives

Snillrik Skolmaten.se Alternatives

No alternatives data available yet.

Developer Profile

Snillrik Skolmaten.se Developer Profile

mattiaspkallio

4 plugins · 30 total installs

78
trust score
Avg Security Score
98/100
Avg Patch Time
404 days
View full developer profile
Detection Fingerprints

How We Detect Snillrik Skolmaten.se

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/skolmaten/css/skolmaten.css/wp-content/plugins/skolmaten/css/admin.css/wp-content/plugins/skolmaten/css/settings-page.css

HTML / DOM Fingerprints

CSS Classes
skolmaten_listskolmaten_fromtowidget-title
HTML Comments
Shortcodes for skolmatenShortcodes for skolmaten
Data Attributes
skolmaten-adminskolmaten-admin-settingsskolmaten_listskolmaten_fromto
Shortcode Output
[skolmaten_vecka[skolmaten_day
FAQ

Frequently Asked Questions about Snillrik Skolmaten.se