
SQL To CPT Security & Risk Analysis
wordpress.org/plugins/sql-to-cptImport & Convert SQL tables to Custom Post Types (CPT). Migrate legacy SQL table data to WordPress custom post types of your choice. It's super fast!
Is SQL To CPT Safe to Use in 2026?
Generally Safe
Score 100/100SQL To CPT has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'sql-to-cpt' plugin v1.3.3 exhibits an excellent security posture based on the provided static analysis. The absence of any AJAX handlers, REST API routes, shortcodes, or cron events significantly limits the potential attack surface. Crucially, the code adheres to best practices by utilizing prepared statements for all SQL queries and properly escaping all output, eliminating common SQL injection and cross-site scripting (XSS) vulnerabilities. The presence of nonce and capability checks further reinforces its security, indicating a developer conscious of access control.
While the static analysis reveals no critical or high-severity issues, the presence of a file operation without further context warrants a minor consideration. However, given the lack of external HTTP requests and the absence of any recorded vulnerabilities or CVEs in its history, this plugin appears to be exceptionally well-secured. The clean vulnerability history suggests a consistent commitment to security by the developers. Overall, 'sql-to-cpt' v1.3.3 presents a very low-risk profile, with strengths far outweighing any minor points of consideration.
Key Concerns
- File operation without context
SQL To CPT Security Vulnerabilities
SQL To CPT Code Analysis
Output Escaping
SQL To CPT Attack Surface
WordPress Hooks 7
Maintenance & Trust
SQL To CPT Maintenance & Trust
Maintenance Signals
Community Trust
SQL To CPT Alternatives
Post Type Converter
post-type-converter
Allows you to convert the post type of objects while in the edit screen.
Search & Replace
search-and-replace
Search & Replace data in your database with WordPress admin, replace domains/URLs of your WordPress installation.
Add From Server
add-from-server
Add From Server is designed to help ease the pain of bad web hosts, allowing you to upload files via FTP or SSH and later import them into WordPress.
RSS Aggregator – RSS Import, News Feeds, Feed to Post, and Autoblogging
wp-rss-aggregator
The #1 WordPress RSS aggregator to quickly import RSS feeds, build a news aggregator, and for easy autoblogging.
Categories to Tags Converter
wpcat2tag-importer
Convert existing categories to tags or tags to categories, selectively.
SQL To CPT Developer Profile
13 plugins · 5K total installs
How We Detect SQL To CPT
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/sql-to-cpt/dist/app.jssql-to-cptsql-to-cpt/dist/app.js?ver=1.2.0HTML / DOM Fingerprints
sqlt/wp-json/sql-to-cpt/v1/import/wp-json/sql-to-cpt/v1/parse/wp-json/sql-to-cpt/v1/purge