Social Planner Security & Risk Analysis

wordpress.org/plugins/social-planner

Social Planner is a WordPress plugin for scheduling announcements of posts to your social networks accounts.

50 active installs v1.4.0 PHP 5.6+ WP 5.3+ Updated Jul 28, 2024
auto-postfacebooklinkedinsocial-networkstwitter
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Social Planner Safe to Use in 2026?

Generally Safe

Score 92/100

Social Planner has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The "social-planner" plugin v1.4.0 exhibits a strong security posture based on the provided static analysis and vulnerability history. The absence of any identified dangerous functions, raw SQL queries, or unsanitized taint flows is highly commendable. Furthermore, the complete and proper escaping of all output, along with the use of prepared statements for SQL queries, indicates diligent development practices aimed at preventing common web vulnerabilities. The plugin also demonstrates a good understanding of WordPress security by implementing nonce and capability checks where applicable.

However, the analysis does highlight a potential area for concern: the plugin has a total of 6 file operations. While the static analysis doesn't explicitly state these are insecure, file operations can be a vector for vulnerabilities if not handled with extreme care, particularly concerning user-supplied input or unintended directory traversal. The presence of 8 external HTTP requests also warrants attention; ensuring these requests are made to trusted endpoints and that responses are validated is crucial to prevent potential exploits.

Overall, "social-planner" v1.4.0 appears to be a securely developed plugin with no known historical vulnerabilities. Its strengths lie in its clean code, absence of critical static analysis findings, and adherence to core WordPress security principles. The minor concerns related to file operations and external requests are areas to monitor and ensure are robustly implemented against potential threats, but do not represent immediate or critical risks based on the current data.

Key Concerns

  • File operations present, potential for insecure handling
  • External HTTP requests made, requires validation
Vulnerabilities
None known

Social Planner Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Social Planner Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
39 escaped
Nonce Checks
2
Capability Checks
1
File Operations
6
External Requests
8
Bundled Libraries
0

Output Escaping

100% escaped39 total outputs
Attack Surface

Social Planner Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 14
actioninitclasses\class-core.php:30
actionwp_dashboard_setupclasses\class-dashboard.php:31
actionadmin_enqueue_scriptsclasses\class-dashboard.php:56
actionadmin_enqueue_scriptsclasses\class-dashboard.php:57
actionadd_meta_boxesclasses\class-metabox.php:54
actionsave_postclasses\class-metabox.php:55
actionadmin_enqueue_scriptsclasses\class-metabox.php:85
actionadmin_enqueue_scriptsclasses\class-metabox.php:86
actionadmin_menuclasses\class-settings.php:51
actionadmin_initclasses\class-settings.php:52
filterplugin_action_linksclasses\class-settings.php:55
actionpre_update_optionclasses\class-settings.php:58
actionadmin_enqueue_scriptsclasses\class-settings.php:106
actionadmin_enqueue_scriptsclasses\class-settings.php:107
Maintenance & Trust

Social Planner Maintenance & Trust

Maintenance Signals

WordPress version tested6.5.8
Last updatedJul 28, 2024
PHP min version5.6
Downloads5K

Community Trust

Rating86/100
Number of ratings4
Active installs50
Developer Profile

Social Planner Developer Profile

Anton Lukin

2 plugins · 650 total installs

91
trust score
Avg Security Score
96/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Social Planner

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/social-planner/assets/styles/dashboard.css/wp-content/plugins/social-planner/assets/scripts/dashboard.js/wp-content/plugins/social-planner/assets/scripts/metabox.js
Script Paths
/wp-content/plugins/social-planner/assets/scripts/dashboard.js/wp-content/plugins/social-planner/assets/scripts/metabox.js
Version Parameters
social-planner/assets/styles/dashboard.css?ver=social-planner/assets/scripts/dashboard.js?ver=social-planner/assets/scripts/metabox.js?ver=

HTML / DOM Fingerprints

CSS Classes
social-planner-metabox
Data Attributes
data-plugin-url
JS Globals
socialPlannerDashboard
FAQ

Frequently Asked Questions about Social Planner