SoundNode Sticky Player for laut.fm Security & Risk Analysis

wordpress.org/plugins/soundnode-sticky-player-for-laut-fm

A customizable sticky audio player for any laut.fm radio station. Stream live radio directly on your WordPress site.

0 active installs v1.5.0 PHP 7.4+ WP 5.8+ Updated Apr 6, 2026
laut-fmplayerradiostreamwebradio
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is SoundNode Sticky Player for laut.fm Safe to Use in 2026?

Generally Safe

Score 100/100

SoundNode Sticky Player for laut.fm has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The "soundnode-sticky-player-for-laut-fm" plugin v1.5.0 demonstrates a generally strong security posture based on the provided static analysis. The plugin boasts no direct SQL injection vulnerabilities as all queries utilize prepared statements, and it has a very high rate of properly escaped output, minimizing cross-site scripting risks. Furthermore, the limited attack surface of two AJAX handlers, both of which appear to have authorization checks (based on 1 nonce check and 1 capability check), is commendable. The absence of any recorded vulnerabilities in its history, including CVEs, suggests a well-maintained and secure codebase. However, the presence of external HTTP requests, while not inherently risky, warrants attention as they represent potential points of failure or indirect attack vectors if the external service is compromised or misbehaves. The total absence of taint analysis results could be due to the analysis tool's limitations or the plugin's simple structure, making it difficult to definitively rule out more complex vulnerabilities.

Key Concerns

  • External HTTP requests present
Vulnerabilities
None known

SoundNode Sticky Player for laut.fm Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

SoundNode Sticky Player for laut.fm Release Timeline

v1.5.0Current
v1.4.0
Code Analysis
Analyzed Apr 16, 2026

SoundNode Sticky Player for laut.fm Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
5
107 escaped
Nonce Checks
1
Capability Checks
1
File Operations
0
External Requests
3
Bundled Libraries
0

Output Escaping

96% escaped112 total outputs
Attack Surface

SoundNode Sticky Player for laut.fm Attack Surface

Entry Points2
Unprotected0

AJAX Handlers 2

authwp_ajax_lfsp_get_song_dataincludes/class-sticky-player.php:17
noprivwp_ajax_lfsp_get_song_dataincludes/class-sticky-player.php:18
WordPress Hooks 7
actionadmin_menuincludes/class-admin-settings.php:16
actionadmin_initincludes/class-admin-settings.php:17
actionadmin_enqueue_scriptsincludes/class-admin-settings.php:18
actionwp_enqueue_scriptsincludes/class-sticky-player.php:22
actionwp_footerincludes/class-sticky-player.php:23
actionwp_footersoundnode-sticky-player-for-laut-fm.php:83
actionplugins_loadedsoundnode-sticky-player-for-laut-fm.php:90
Maintenance & Trust

SoundNode Sticky Player for laut.fm Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedApr 6, 2026
PHP min version7.4
Downloads123

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

SoundNode Sticky Player for laut.fm Developer Profile

Matthes Vogel

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect SoundNode Sticky Player for laut.fm

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/soundnode-sticky-player-for-laut-fm/assets/css/admin.css/wp-content/plugins/soundnode-sticky-player-for-laut-fm/assets/js/admin.js/wp-content/plugins/soundnode-sticky-player-for-laut-fm/assets/js/sticky-player.js
Script Paths
/wp-content/plugins/soundnode-sticky-player-for-laut-fm/assets/js/admin.js/wp-content/plugins/soundnode-sticky-player-for-laut-fm/assets/js/sticky-player.js
Version Parameters
soundnode-sticky-player-for-laut-fm/assets/css/admin.css?ver=soundnode-sticky-player-for-laut-fm/assets/js/admin.js?ver=soundnode-sticky-player-for-laut-fm/assets/js/sticky-player.js?ver=

HTML / DOM Fingerprints

CSS Classes
lfsp-playerlfsp-playinglfsp-pausedlfsp-hiddenlfsp-sticky-playerlfsp-player-position-bottomlfsp-player-position-toplfsp-player-position-left+10 more
HTML Comments
<!-- Sticky Player --><!-- End Sticky Player -->
Data Attributes
data-station-namedata-slogandata-color-accent-1data-color-accent-2data-color-bgdata-color-text+11 more
JS Globals
lfsp_player_settings
REST Endpoints
/wp-json/lfsp/v1/station-info//wp-json/lfsp/v1/song-info/
Shortcode Output
[soundnode_player]
FAQ

Frequently Asked Questions about SoundNode Sticky Player for laut.fm