
Slug or PostID Security & Risk Analysis
wordpress.org/plugins/slug-or-postidThis plugin uses Slug or PostID for PostName. It is done automatically.
Is Slug or PostID Safe to Use in 2026?
Generally Safe
Score 85/100Slug or PostID has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "slug-or-postid" v1.0 plugin exhibits an exceptionally strong security posture based on the provided static analysis. There are no identified attack vectors through AJAX, REST API, shortcodes, or cron events. Furthermore, the code demonstrates excellent security practices by not utilizing dangerous functions, all SQL queries are prepared, and all outputs are properly escaped. The absence of file operations, external HTTP requests, and particularly the lack of nonce and capability checks on any entry points (as there are none) further solidify this. The taint analysis also reveals no concerning data flows.
The vulnerability history is equally pristine, with zero known CVEs and no recorded vulnerabilities of any kind. This indicates a well-developed and likely rigorously tested plugin, or a plugin that has not yet attracted malicious attention due to its perceived simplicity or lack of complex functionality. The complete absence of any identified weaknesses in the static analysis and vulnerability history suggests a high level of confidence in its security.
In conclusion, "slug-or-postid" v1.0 appears to be a highly secure plugin. Its strengths lie in its minimal attack surface and the absence of any flagged vulnerabilities or risky code patterns. The only potential area for slight concern, though not a direct finding in this analysis, is the complete lack of any capability or nonce checks, which is a direct consequence of having no entry points to check. This is not a vulnerability in itself but reflects the plugin's design. Overall, this plugin presents a very low security risk.
Slug or PostID Security Vulnerabilities
Slug or PostID Code Analysis
Slug or PostID Attack Surface
WordPress Hooks 2
Maintenance & Trust
Slug or PostID Maintenance & Trust
Maintenance Signals
Community Trust
Slug or PostID Alternatives
VK All in One Expansion Unit
vk-all-in-one-expansion-unit
This plug-in is an integrated plug-in with a variety of features that make it powerful your web site.
WP Editor
wp-editor
WP Editor is a plugin for WordPress that replaces the default plugin and theme editors as well as the page/post editor.
Plugin Organizer
plugin-organizer
Change plugin order and selectively enable/disable plugins on each post/page.
Remove CPT base
remove-cpt-base
Remove custom post type base slug from url
WP Dummy Content Generator
wp-dummy-content-generator
Generate realistic dummy content for WordPress quickly. Ideal for developers and designers to populate sites for testing and development.
Slug or PostID Developer Profile
1 plugin · 600 total installs
How We Detect Slug or PostID
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.