Social Linkz – Lightweight and fast social media sharing plugin Security & Risk Analysis

wordpress.org/plugins/social-linkz

Social Linkz plugin helps you easily share your content to social media.

90 active installs v1.8.9 PHP 5.6.4+ WP 5.0.0+ Updated Sep 16, 2025
share-buttonsshare-iconssharingsocial-mediasocial-share
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Social Linkz – Lightweight and fast social media sharing plugin Safe to Use in 2026?

Generally Safe

Score 100/100

Social Linkz – Lightweight and fast social media sharing plugin has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 6mo ago
Risk Assessment

The social-linkz plugin v1.8.9 exhibits a generally good security posture based on the provided static analysis. There are no identified critical or high severity vulnerabilities from taint analysis, and the plugin has no recorded vulnerability history, indicating a stable and potentially well-maintained codebase. The use of prepared statements for all SQL queries and the presence of nonce and capability checks are positive security practices. However, there are areas for concern that warrant attention. Notably, 49% of output operations are not properly escaped, presenting a risk of Cross-Site Scripting (XSS) vulnerabilities if user-supplied data is not sufficiently sanitized before being displayed. Furthermore, two flows with unsanitized paths were identified, which could potentially lead to path traversal or other file-related vulnerabilities, although the absence of file operations in the static analysis mitigates this risk in the current version.

While the plugin boasts a zero attack surface in terms of AJAX, REST API, shortcodes, and cron events, this analysis might not be exhaustive. The bundling of the Freemius library at version 1.0 is a potential concern if it's an older version and contains known vulnerabilities, though no specific information on its version's security status is provided. The balanced conclusion is that while the plugin avoids common pitfalls like raw SQL and a broad attack surface, the unescaped output and unsanitized path flows represent tangible risks that should be addressed to further strengthen its security.

Key Concerns

  • Insufficient output escaping detected
  • Unsanitized paths found in taint analysis
  • Bundled library potentially outdated (Freemius v1.0)
Vulnerabilities
None known

Social Linkz – Lightweight and fast social media sharing plugin Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Social Linkz – Lightweight and fast social media sharing plugin Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
5 prepared
Unescaped Output
53
55 escaped
Nonce Checks
3
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
1

Bundled Libraries

Freemius1.0

SQL Query Safety

100% prepared5 total queries

Output Escaping

51% escaped108 total outputs
Data Flows
2 unsanitized

Data Flow Analysis

4 flows2 with unsanitized paths
dismiss_admin_notice (lite\includes\Admin.php:264)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Social Linkz – Lightweight and fast social media sharing plugin Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 27
filterwpsf_register_settings_kc_sllite\includes\Admin\admin-settings.php:24
actionadmin_menulite\includes\Admin\Settings.php:27
actionadmin_noticeslite\includes\Feedback.php:42
actionadmin_initlite\includes\Install.php:29
actionadmin_initlite\includes\Install.php:30
actionadmin_enqueue_scriptslite\includes\Plugin.php:127
actionadmin_enqueue_scriptslite\includes\Plugin.php:128
actionadmin_menulite\includes\Plugin.php:130
actionadmin_print_scriptslite\includes\Plugin.php:132
actionadmin_initlite\includes\Plugin.php:133
actionadmin_initlite\includes\Plugin.php:134
actionadmin_noticeslite\includes\Plugin.php:135
actionadmin_noticeslite\includes\Plugin.php:136
filteradmin_footer_textlite\includes\Plugin.php:138
actionin_plugin_update_message-social-linkz/social-linkz.phplite\includes\Plugin.php:140
actioninitlite\includes\Plugin.php:144
actionenqueue_block_editor_assetslite\includes\Plugin.php:145
actionwp_enqueue_scriptslite\includes\Plugin.php:159
actionwp_enqueue_scriptslite\includes\Plugin.php:160
actionthe_contentlite\includes\Plugin.php:162
actionadmin_initlite\includes\Settings.php:98
actionadmin_noticeslite\includes\Settings.php:106
actionadmin_enqueue_scriptslite\includes\Settings.php:108
actionafter_uninstalllite\includes\Uninstall.php:14
filterplugin_iconsocial-linkz.php:92
actionadmin_noticessocial-linkz.php:120
actionplugins_loadedsocial-linkz.php:174
Maintenance & Trust

Social Linkz – Lightweight and fast social media sharing plugin Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedSep 16, 2025
PHP min version5.6.4
Downloads52K

Community Trust

Rating70/100
Number of ratings2
Active installs90
Developer Profile

Social Linkz – Lightweight and fast social media sharing plugin Developer Profile

KaizenCoders

14 plugins · 31K total installs

70
trust score
Avg Security Score
87/100
Avg Patch Time
153 days
View full developer profile
Detection Fingerprints

How We Detect Social Linkz – Lightweight and fast social media sharing plugin

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/social-linkz/lite/dist/styles/app.css/wp-content/plugins/social-linkz/lite/dist/styles/social-linkz-admin.css/wp-content/plugins/social-linkz/lite/dist/styles/social-linkz.css/wp-content/plugins/social-linkz/lite/dist/scripts/app.js/wp-content/plugins/social-linkz/lite/dist/scripts/social-linkz.js/wp-content/plugins/social-linkz/lite/dist/scripts/social-linkz-admin.js
Script Paths
/wp-content/plugins/social-linkz/lite/dist/scripts/app.js/wp-content/plugins/social-linkz/lite/dist/scripts/social-linkz.js/wp-content/plugins/social-linkz/lite/dist/scripts/social-linkz-admin.js
Version Parameters
social-linkz/lite/dist/styles/app.css?ver=social-linkz/lite/dist/styles/social-linkz-admin.css?ver=social-linkz/lite/dist/styles/social-linkz.css?ver=social-linkz/lite/dist/scripts/app.js?ver=social-linkz/lite/dist/scripts/social-linkz.js?ver=social-linkz/lite/dist/scripts/social-linkz-admin.js?ver=

HTML / DOM Fingerprints

CSS Classes
social-linkz-main-wrapsocial-linkz-wrapsocial-linkz-containersocial-linkz-itemsocial-linkz-labelsocial-linkz-iconsocial-linkz-sharesocial-linkz-social-icon
HTML Comments
This function is provided for demonstration purposes only.An instance of this class should be passed to the run() functiondefined in Social Linkz_Loader as all of the hooks are definedin that particular class.+3 more
Data Attributes
data-social-linkz-iddata-social-linkz-type
JS Globals
SocialLinkzAppsocial_linkz_admin_object
FAQ

Frequently Asked Questions about Social Linkz – Lightweight and fast social media sharing plugin