Sophia Twitter Auto Post Security & Risk Analysis

wordpress.org/plugins/sophia-twitter-auto-post

This plugin provides an easy way to send to twitter every new post you make on your site using the codebird auth library

0 active installs v1.0.0 PHP 5.2.4+ WP 4.6+ Updated Nov 26, 2018
codebirdfacebooksharesocial-mediatwitter
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Sophia Twitter Auto Post Safe to Use in 2026?

Generally Safe

Score 85/100

Sophia Twitter Auto Post has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 7yr ago
Risk Assessment

The "sophia-twitter-auto-post" v1.0.0 plugin exhibits a mixed security posture. On the positive side, it demonstrates good practices by exclusively using prepared statements for SQL queries and incorporating nonce checks for its AJAX handlers. The absence of known CVEs and a clean vulnerability history are also strong indicators of a relatively secure past. However, significant concerns arise from the output escaping, where only 50% of outputs are properly escaped. This indicates a substantial risk of cross-site scripting (XSS) vulnerabilities if user-supplied data is not handled carefully in the unescaped outputs. Furthermore, the taint analysis reveals four flows with unsanitized paths, which, despite not being classified as critical or high severity in this analysis, represent potential avenues for data manipulation or injection if exploited.

Key Concerns

  • Half of output operations are not properly escaped
  • Multiple flows with unsanitized paths identified
Vulnerabilities
None known

Sophia Twitter Auto Post Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Sophia Twitter Auto Post Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
6 prepared
Unescaped Output
400
398 escaped
Nonce Checks
5
Capability Checks
0
File Operations
13
External Requests
15
Bundled Libraries
0

SQL Query Safety

100% prepared6 total queries

Output Escaping

50% escaped798 total outputs
Data Flows
4 unsanitized

Data Flow Analysis

7 flows4 with unsanitized paths
save_network_page (admin\redux-framework\framework.php:581)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Sophia Twitter Auto Post Attack Surface

Entry Points5
Unprotected0

AJAX Handlers 5

noprivwp_ajax_redux_padmin\redux-framework\inc\class.p.php:7
authwp_ajax_redux_padmin\redux-framework\inc\class.p.php:8
authwp_ajax_redux_hide_admin_noticeadmin\redux-framework\inc\class.redux_admin_notices.php:32
authwp_ajax_redux_allow_trackingadmin\redux-framework\inc\tracking.php:499
authwp_ajax_redux_support_hashadmin\redux-framework\inc\welcome\welcome.php:25
WordPress Hooks 49
actionwp_dashboard_setupadmin\redux-framework\core\dashboard.php:13
actionredux/initadmin\redux-framework\framework.php:30
actionadmin_menuadmin\redux-framework\framework.php:341
actionnetwork_admin_menuadmin\redux-framework\framework.php:345
actionadmin_bar_menuadmin\redux-framework\framework.php:349
actionadmin_initadmin\redux-framework\framework.php:355
actionadmin_initadmin\redux-framework\framework.php:360
actionadmin_noticesadmin\redux-framework\framework.php:365
actionadmin_initadmin\redux-framework\framework.php:368
actionadmin_enqueue_scriptsadmin\redux-framework\framework.php:372
actionwp_headadmin\redux-framework\framework.php:378
actionwp_enqueue_scriptsadmin\redux-framework\framework.php:379
actionlogin_headadmin\redux-framework\framework.php:384
actionlogin_enqueue_scriptsadmin\redux-framework\framework.php:385
actionadmin_headadmin\redux-framework\framework.php:390
actionadmin_enqueue_scriptsadmin\redux-framework\framework.php:391
actionwp_print_scriptsadmin\redux-framework\framework.php:395
actionadmin_enqueue_scriptsadmin\redux-framework\framework.php:396
actionadmin_bar_menuadmin\redux-framework\framework.php:404
actionadmin_headadmin\redux-framework\framework.php:1735
filteradmin_footer_textadmin\redux-framework\framework.php:1738
actionafter_setup_themeadmin\redux-framework\inc\class.redux_api.php:47
actioninitadmin\redux-framework\inc\class.redux_api.php:48
actionswitch_themeadmin\redux-framework\inc\class.redux_api.php:49
actionredux/constructadmin\redux-framework\inc\class.redux_instances.php:60
actioncustomize_registeradmin\redux-framework\inc\extensions\customizer\extension_customizer.php:113
actionwp_headadmin\redux-framework\inc\extensions\customizer\extension_customizer.php:118
actioncustomize_save_afteradmin\redux-framework\inc\extensions\customizer\extension_customizer.php:122
actioncustomize_controls_print_scriptsadmin\redux-framework\inc\extensions\customizer\extension_customizer.php:125
actioncustomize_controls_initadmin\redux-framework\inc\extensions\customizer\extension_customizer.php:127
filterupload_mimesadmin\redux-framework\inc\extensions\import_export\extension_import_export.php:97
filterredux/font-iconsadmin\redux-framework\inc\fields\select\elusive-icons.php:312
actionadmin_enqueue_scriptsadmin\redux-framework\inc\themecheck\class.redux_themecheck.php:74
actionadmin_enqueue_scriptsadmin\redux-framework\inc\themecheck\class.redux_themecheck.php:75
actionthemecheck_checks_loadedadmin\redux-framework\inc\themecheck\class.redux_themecheck.php:77
actionthemecheck_checks_loadedadmin\redux-framework\inc\themecheck\class.redux_themecheck.php:78
actionadmin_enqueue_scriptsadmin\redux-framework\inc\tracking.php:81
actionadmin_enqueue_scriptsadmin\redux-framework\inc\tracking.php:83
actionredux_trackingadmin\redux-framework\inc\tracking.php:100
actionadmin_print_footer_scriptsadmin\redux-framework\inc\tracking.php:110
actionadmin_print_footer_scriptsadmin\redux-framework\inc\tracking.php:119
filterredux/tracking/optionsadmin\redux-framework\inc\tracking.php:475
actioninitadmin\redux-framework\inc\validation\unique_slug\validation_unique_slug.php:60
actionredux/loadedadmin\redux-framework\inc\welcome\welcome.php:23
actionadmin_menuadmin\redux-framework\inc\welcome\welcome.php:35
filteradmin_footer_textadmin\redux-framework\inc\welcome\welcome.php:41
actionadmin_headadmin\redux-framework\inc\welcome\welcome.php:42
actioninitadmin\redux-framework\inc\welcome\welcome.php:93
actionnew_to_publishindex.php:17

Scheduled Events 1

redux_tracking
Maintenance & Trust

Sophia Twitter Auto Post Maintenance & Trust

Maintenance Signals

WordPress version tested5.0.25
Last updatedNov 26, 2018
PHP min version5.2.4
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Sophia Twitter Auto Post Developer Profile

Jordi Cuevas

2 plugins · 10 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Sophia Twitter Auto Post

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/sophia-twitter-auto-post/admin/assets/css/sophia-twitter-auto-post.css/wp-content/plugins/sophia-twitter-auto-post/admin/assets/js/sophia-twitter-auto-post.js
Script Paths
/wp-content/plugins/sophia-twitter-auto-post/admin/assets/js/sophia-twitter-auto-post.js
Version Parameters
sophia-twitter-auto-post/admin/assets/css/sophia-twitter-auto-post.css?ver=sophia-twitter-auto-post/admin/assets/js/sophia-twitter-auto-post.js?ver=

HTML / DOM Fingerprints

CSS Classes
sophia-twitter-auto-post-settings
JS Globals
sophia_twitter_auto_post_settings
FAQ

Frequently Asked Questions about Sophia Twitter Auto Post