
SMARTLY Security & Risk Analysis
wordpress.org/plugins/smartly스마틀리는 보다 똑똑한 제품소개를 위해 개발 되었습니다.
Is SMARTLY Safe to Use in 2026?
Generally Safe
Score 85/100SMARTLY has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "smartly" v1.0.0 plugin exhibits a generally strong security posture, particularly in its handling of SQL queries and the presence of nonce and capability checks. The absence of any recorded vulnerabilities, including critical or high severity ones, and a clean vulnerability history, suggests a diligent approach to secure coding practices by the developers. Furthermore, the static analysis reveals no direct attack surface through common vectors like AJAX handlers, REST API routes, shortcodes, or cron events that lack authentication or permission checks. The limited number of taint flows analyzed, with none exhibiting critical or high severity, also points to a low immediate risk.
Key Concerns
- Untrusted data in file operations
- Unsanitized paths found in taint flows
- Proper output escaping is not 100%
SMARTLY Security Vulnerabilities
SMARTLY Code Analysis
Output Escaping
Data Flow Analysis
SMARTLY Attack Surface
WordPress Hooks 14
Maintenance & Trust
SMARTLY Maintenance & Trust
Maintenance Signals
Community Trust
SMARTLY Alternatives
No alternatives data available yet.
SMARTLY Developer Profile
3 plugins · 40 total installs
How We Detect SMARTLY
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/smartly/assets/js/admin-script.js/wp-content/plugins/smartly/assets/css/admin-style.css/wp-content/plugins/smartly/assets/js/admin-script.jssmartly/assets/js/admin-script.js?ver=smartly/assets/css/admin-style.css?ver=HTML / DOM Fingerprints
smartly_catalogue_file_fieldsmartly_attachment_field_containerssmartly_data_metaboxsmt_attachment_id_fieldsmt_attachment_name_fieldsmt_attachment_type_fieldsmt_attachment_size_readablesmt_attachment_size_bytes+5 moredata-uploader-titledata-uploader-button-textsmt_script_vars