smallcase oEmbed Provider Security & Risk Analysis

wordpress.org/plugins/smallcase-oembed-provider

The plugin extends Wordpress's automatic embed feature, allowing you to directly embed smallcase cards from the embed URL

0 active installs v1.1 PHP 7.0+ WP 2.9+ Updated Mar 12, 2021
embedoembedprovidersmallcase
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is smallcase oEmbed Provider Safe to Use in 2026?

Generally Safe

Score 85/100

smallcase oEmbed Provider has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5yr ago
Risk Assessment

The smallcase-oembed-provider v1.1 plugin exhibits a strong security posture based on the provided static analysis. The absence of any identified dangerous functions, raw SQL queries, unescaped output, file operations, external HTTP requests, or nonce/capability checks suggests a very limited and well-secured codebase. The total lack of entry points and unprotected entry points further reinforces this positive assessment, indicating that the plugin has been designed with security in mind by minimizing its potential attack surface. The vulnerability history also shows no recorded CVEs, which is an excellent sign of ongoing security diligence or a lack of exploitable weaknesses.

While the static analysis and vulnerability history are overwhelmingly positive, the complete absence of any taint analysis results (0 flows analyzed) prevents a comprehensive evaluation of how user-supplied data might be handled. This could be an indication that the plugin is extremely simple and doesn't process user input in a way that would trigger taint analysis, or it could be a gap in the analysis itself. However, given the other strong indicators, the plugin appears to be very secure, with no immediate exploitable vulnerabilities identified in the provided data. The strengths lie in its minimal attack surface and the absence of common vulnerability patterns.

Vulnerabilities
None known

smallcase oEmbed Provider Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

smallcase oEmbed Provider Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

smallcase oEmbed Provider Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 1
actioninitsmallcase-oembed-provider.php:18
Maintenance & Trust

smallcase oEmbed Provider Maintenance & Trust

Maintenance Signals

WordPress version tested5.6.17
Last updatedMar 12, 2021
PHP min version7.0
Downloads839

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

smallcase oEmbed Provider Developer Profile

smallcase

1 plugin · 0 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect smallcase oEmbed Provider

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Version Parameters
smallcase-oembed-provider/style.css?ver=1.1smallcase-oembed-provider/script.js?ver=1.1

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about smallcase oEmbed Provider