Static menus | inventivo Security & Risk Analysis

wordpress.org/plugins/static-menus-inventivo

Save WordPress menus as static files for faster page loading times.

10 active installs v0.0.4 PHP + WP 3.0+ Updated Aug 27, 2019
page-speedstatic-menus
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Static menus | inventivo Safe to Use in 2026?

Generally Safe

Score 85/100

Static menus | inventivo has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 6yr ago
Risk Assessment

The static analysis of 'static-menus-inventivo' v0.0.4 reveals a remarkably clean codebase with no identified dangerous functions, SQL injection vulnerabilities, or output escaping issues. The absence of external HTTP requests and a lack of critical or high-severity taint flows further contribute to a positive security posture. The plugin also demonstrates good practices by utilizing prepared statements for all its SQL queries. However, the analysis does flag two file operations, and the complete absence of nonce and capability checks across all identified entry points (even though the attack surface is currently zero) is a significant concern for future expandability and security. The plugin's vulnerability history is also clean, with no recorded CVEs, suggesting a history of secure development or a lack of prior in-depth security scrutiny.

While the current version appears secure due to its minimal attack surface and diligent coding practices in certain areas, the lack of fundamental security checks like nonces and capability checks presents a latent risk. If the plugin were to introduce any new entry points or functionality in the future without implementing these checks, it could become vulnerable to various attacks. The presence of file operations, though not explicitly detailed as risky in this analysis, warrants attention. The overall security is good in its current state, but the lack of defensive programming for potential future expansion is a weakness.

Key Concerns

  • No nonce checks present
  • No capability checks present
  • File operations present
Vulnerabilities
None known

Static menus | inventivo Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Static menus | inventivo Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
2
External Requests
0
Bundled Libraries
0
Attack Surface

Static menus | inventivo Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 1
actionwp_update_nav_menuinventivo-static-menus.php:42
Maintenance & Trust

Static menus | inventivo Maintenance & Trust

Maintenance Signals

WordPress version tested5.2.24
Last updatedAug 27, 2019
PHP min version
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Static menus | inventivo Developer Profile

Nils Harder

5 plugins · 260 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Static menus | inventivo

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

CSS Classes
nav-menu
FAQ

Frequently Asked Questions about Static menus | inventivo