
Snorkel Security & Risk Analysis
wordpress.org/plugins/snorkelSnorkel combines your sales data and chat transcripts to show you ROI on conversations as well as other crucial sales insights.
Is Snorkel Safe to Use in 2026?
Generally Safe
Score 100/100Snorkel has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "snorkel" v1.0 plugin presents a strong initial security posture, with no apparent vulnerabilities identified in the static analysis or its historical record. The absence of dangerous functions, the exclusive use of prepared statements for SQL queries, and the proper escaping of all output are excellent indicators of secure coding practices. Furthermore, the plugin exhibits a minimal attack surface, with no registered AJAX handlers, REST API routes, shortcodes, or cron events. This lack of entry points significantly reduces the potential for malicious actors to interact with the plugin.
While the code analysis is positive, it's important to note the complete absence of nonce and capability checks. While this is not a direct vulnerability given the current attack surface, it represents a missed opportunity for robust security if the plugin were to evolve and introduce new entry points. The bundling of Guzzle, a third-party library, also warrants attention; while not flagged as an issue here, ensuring this library is kept up-to-date is crucial for maintaining security. Overall, "snorkel" v1.0 appears secure based on the provided data, but the lack of essential security checks suggests a potential weakness if its functionality expands.
Key Concerns
- Missing nonce checks
- Missing capability checks
- Bundled outdated library (Guzzle)
Snorkel Security Vulnerabilities
Snorkel Code Analysis
Bundled Libraries
Output Escaping
Snorkel Attack Surface
WordPress Hooks 20
Maintenance & Trust
Snorkel Maintenance & Trust
Maintenance Signals
Community Trust
Snorkel Alternatives
HubSpot All-In-One Marketing – Forms, Popups, Live Chat
leadin
The CRM, Sales, and Marketing WordPress plugin to grow your business better. Capture and engage web visitors with free live chat, forms, CRM, email ma …
Datalayer for WooCommerce FREE
datalayer-for-ecommerce-free
The Data Layer is an object that makes available in real time the information that is executed by users while browsing the WooCommerce Store.
Export Customers Data
export-customers-data
Easily export WooCommerce customers' data to CSV or XLSX with advanced filters and smart field support.
GoSquared – Marketing Automation, CRM, Analytics and Live Chat for WordPress
gosquared-official
This is the official Wordpress plugin for GoSquared. The leading software platform for real-time analytics, live chat and lead capture.
RAEK First-Party Data Collection
raek-real-time-identification
One tool to collect, organize and utilize your first-party data, so you can turn more visitors into buyers.
Snorkel Developer Profile
1 plugin · 0 total installs
How We Detect Snorkel
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/snorkel/css/snorkel-admin.csssnorkel-admin.css?ver=HTML / DOM Fingerprints
/wp-json/wp/v2/users/wp-json/wp/v2/users/me