Soft Hyphen Inserter Security & Risk Analysis

wordpress.org/plugins/soft-hyphen-inserter

Gives you full control over word hyphenation in Gutenberg Editor

0 active installs v1.1 PHP 8.0+ WP 6.9+ Updated Apr 1, 2026
blocksgutenbergheadingparagraph
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Soft Hyphen Inserter Safe to Use in 2026?

Generally Safe

Score 100/100

Soft Hyphen Inserter has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The plugin 'soft-hyphen-inserter' v1.1 demonstrates an exceptionally strong security posture based on the provided static analysis and vulnerability history. The complete absence of any identified attack surface (AJAX, REST API, shortcodes, cron events) significantly minimizes the potential for external exploitation. Furthermore, the code signals indicate robust security practices, with all SQL queries using prepared statements, all outputs properly escaped, and no dangerous functions or file operations detected. The presence of capability checks, even if only one, is also a positive sign of privilege management consideration.

The lack of any identified taint flows, dangerous functions, or file operations, combined with zero known vulnerabilities (CVEs) and no historical security incidents, suggests a highly secure and well-maintained plugin. This suggests the developers have a strong understanding of secure coding principles and have likely implemented them diligently. The plugin's strengths lie in its minimal attack surface and adherence to fundamental security best practices.

While the analysis reveals an excellent security profile, the absence of nonce checks is a minor area for potential improvement, especially if any future functionality might involve user-initiated actions. However, given the current zero attack surface, this is a very low risk. Overall, 'soft-hyphen-inserter' v1.1 appears to be a very safe plugin with no immediate security concerns.

Key Concerns

  • No nonce checks identified
Vulnerabilities
None known

Soft Hyphen Inserter Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Soft Hyphen Inserter Release Timeline

v1.1Current
v1.0
Code Analysis
Analyzed Apr 16, 2026

Soft Hyphen Inserter Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
12 escaped
Nonce Checks
0
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped12 total outputs
Attack Surface

Soft Hyphen Inserter Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 4
actionadmin_initsettings.php:15
actionadmin_menusettings.php:107
actionenqueue_block_editor_assetssoft-hyphen-toolbar.php:31
actionenqueue_block_assetssoft-hyphen-toolbar.php:70
Maintenance & Trust

Soft Hyphen Inserter Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedApr 1, 2026
PHP min version8.0
Downloads51

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Soft Hyphen Inserter Developer Profile

nicmare

2 plugins · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Soft Hyphen Inserter

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/soft-hyphen-inserter/build/soft-hyphen-inserter.js
Script Paths
/wp-content/plugins/soft-hyphen-inserter/build/soft-hyphen-inserter.js

HTML / DOM Fingerprints

CSS Classes
soft-hyphen-inserter-no-wp-hyphens
JS Globals
window.LMDM_SOFT_HYPHEN_SETTINGS
FAQ

Frequently Asked Questions about Soft Hyphen Inserter