Smart Copyright Year (Lite) – Auto Current Year Updater Shortcode Security & Risk Analysis

wordpress.org/plugins/smart-copyright-year

Smart Copyright Year is a super lite plugin which provides [year] shortcode to auto-display current year in copyright info.

200 active installs v1.0.2 PHP 5.6+ WP 5.0+ Updated Oct 31, 2025
auto-year-shortcodecurrent-yearsmart-yearyearyear-shortcode
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Smart Copyright Year (Lite) – Auto Current Year Updater Shortcode Safe to Use in 2026?

Generally Safe

Score 100/100

Smart Copyright Year (Lite) – Auto Current Year Updater Shortcode has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5mo ago
Risk Assessment

The "smart-copyright-year" v1.0.2 plugin exhibits a generally strong security posture based on the provided static analysis. The absence of dangerous functions, proper use of prepared statements for any SQL queries, and 100% output escaping are significant strengths. The plugin also demonstrates no file operations or external HTTP requests, further reducing its attack surface.

However, there are some areas for improvement. The plugin lacks nonce checks and capability checks entirely. While the static analysis indicates zero AJAX handlers and REST API routes without authorization, the absence of these checks creates a latent risk if new endpoints are added in the future or if the existing shortcode's functionality were to be extended in a way that could be exploited without proper authorization. The taint analysis showing zero flows is positive, but this is contingent on the initial analysis being comprehensive and not missing any subtle data flow paths.

With no recorded vulnerabilities or CVEs in its history, the plugin appears to have a clean track record, which is a positive indicator. Nonetheless, the lack of fundamental security checks like nonces and capability checks represents a potential weakness that could be exploited, especially in larger or more complex WordPress environments. Overall, while the plugin has a good foundation, these missing checks are notable concerns that prevent it from achieving a perfect security score.

Key Concerns

  • Missing nonce checks
  • Missing capability checks
Vulnerabilities
None known

Smart Copyright Year (Lite) – Auto Current Year Updater Shortcode Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Smart Copyright Year (Lite) – Auto Current Year Updater Shortcode Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
1 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped1 total outputs
Attack Surface

Smart Copyright Year (Lite) – Auto Current Year Updater Shortcode Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[year] smart-copyright-year.php:52
WordPress Hooks 1
actioninitsmart-copyright-year.php:56
Maintenance & Trust

Smart Copyright Year (Lite) – Auto Current Year Updater Shortcode Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedOct 31, 2025
PHP min version5.6
Downloads2K

Community Trust

Rating100/100
Number of ratings2
Active installs200
Developer Profile

Smart Copyright Year (Lite) – Auto Current Year Updater Shortcode Developer Profile

Nisaurl Amin Naim

1 plugin · 200 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Smart Copyright Year (Lite) – Auto Current Year Updater Shortcode

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

Shortcode Output
current year
FAQ

Frequently Asked Questions about Smart Copyright Year (Lite) – Auto Current Year Updater Shortcode