[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fdvlTl-liHy-yZR4diHm_leRYrEYln7D3QZS_Pl30ZVY":3,"$fyIFBImWt6wwESX7eP3ifEYnucjK_gRq_5U2Mwl-3HoY":231,"$fyhaq5Zr8B9AjgOFMsZTnAJ8SrU1vv9jQ-Sc0OOMASMs":236},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":11,"num_ratings":13,"last_updated":14,"tested_up_to":15,"requires_at_least":16,"requires_php":17,"tags":18,"homepage":24,"download_link":25,"security_score":26,"vuln_count":27,"unpatched_count":27,"last_vuln_date":28,"fetched_at":29,"discovery_status":30,"vulnerabilities":31,"developer":32,"crawl_stats":28,"alternatives":37,"analysis":145,"fingerprints":210},"statsfa-analytics","StatsFA Analytics – افزونه آمارگیر","1.3","StatsFA","https:\u002F\u002Fprofiles.wordpress.org\u002Fartaweb\u002F","\u003Cp>The official StatsFA plugin for WordPress. Adds your site to the StatsFA analytics platform and shows key metrics like unique visitors, pageviews, and top pages directly in your dashboard.\u003C\u002Fp>\n\u003Cp>StatsFA is built for fast, privacy-friendly analytics hosted inside Iran. It works without cookies or heavy scripts, and it’s optimized for local performance and reliability.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Key Features:\u003C\u002Fstrong>\u003Cbr \u002F>\n– Real-time stats: Today, this week, this month\u003Cbr \u002F>\n– Lightweight and privacy-focused\u003Cbr \u002F>\n– Hosted entirely on Iranian infrastructure\u003Cbr \u002F>\n– Simple API-based integration\u003Cbr \u002F>\n– Dashboard widget showing key metrics at a glance\u003C\u002Fp>\n\u003Ch3>توضیحات فارسی\u003C\u002Fh3>\n\u003Cp>افزونه رسمی استتســفا برای وردپرس به شما امکان می‌دهد آمار دقیق و لحظه‌ای وب‌سایت خود را مستقیماً در پیشخوان مدیریت مشاهده کنید. این آمار شامل بازدید یکتا، بازدید صفحات و صفحات پربازدید است.\u003C\u002Fp>\n\u003Cp>استتســفا بر بستر سرورهای ایرانی میزبانی می‌شود و هیچ اطلاعاتی به خارج از کشور ارسال نمی‌شود. افزونه بدون نیاز به کوکی یا اسکریپت‌های سنگین، آمار بازدیدها را با دقت بالا نمایش می‌دهد.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>ویژگی‌ها:\u003C\u002Fstrong>\u003Cbr \u002F>\n– آمار زنده برای امروز، این هفته و این ماه\u003Cbr \u002F>\n– بسیار سبک و سریع، بدون کاهش سرعت سایت\u003Cbr \u002F>\n– بدون استفاده از کوکی و سازگار با قوانین حفظ حریم خصوصی\u003Cbr \u002F>\n– میزبانی کامل روی زیرساخت ایرانی\u003Cbr \u002F>\n– نمایش آمار مهم در پنل مدیریت وردپرس\u003C\u002Fp>\n\u003Ch3>راهنمای نصب\u003C\u002Fh3>\n\u003Cp>۱. پوشه افزونه را در مسیر \u003Ccode>\u002Fwp-content\u002Fplugins\u002F\u003C\u002Fcode> آپلود کنید\u003Cbr \u002F>\n۲. از بخش «افزونه‌ها» در پیشخوان وردپرس، افزونه را فعال کنید\u003Cbr \u002F>\n۳. به تنظیمات > استتســفا بروید و کلید API خود را وارد کنید\u003C\u002Fp>\n\u003Ch3>External services\u003C\u002Fh3>\n\u003Cp>This plugin connects to the StatsFA API to fetch and display website analytics inside the WordPress dashboard.\u003C\u002Fp>\n\u003Cp>It sends the domain name and API key to the following API endpoints:\u003Cbr \u002F>\n– \u003Ccode>https:\u002F\u002Fstatsfa.com\u002Fapi\u002Fv1\u002Fstats\u002F\u003C\u002Fcode> – used to fetch visit metrics (e.g. pageviews, top pages, visitors)\u003Cbr \u002F>\n– \u003Ccode>https:\u002F\u002Fstatsfa.com\u002Fapi\u002Fv1\u002Fwebsites\u002F\u003C\u002Fcode> – used to retrieve website profiles connected to your API key\u003Cbr \u002F>\n– \u003Ccode>https:\u002F\u002Fstatsfa.com\u002Fjs\u002Fscript.js\u003C\u002Fcode> – tracking script loaded to collect analytics data\u003C\u002Fp>\n\u003Cp>These are provided by StatsFA:\u003Cbr \u002F>\n– Terms: https:\u002F\u002Fstatsfa.com\u002Fpages\u002Fterms\u003Cbr \u002F>\n– Privacy: https:\u002F\u002Fstatsfa.com\u002Fpages\u002Fprivacy\u003C\u002Fp>\n","افزونه رسمی آمارگیر وب‌سایت StatsFA برای وردپرس. نمایش آمار بازدید یکتا، بازدید صفحات و صفحات برتر در پیشخوان مدیریت.",100,1265,1,"2025-08-11T08:54:00.000Z","6.8.6","5.5","",[19,20,21,22,23],"analytics","farsi","statistics","stats","visitors","https:\u002F\u002Fstatsfa.com\u002Fplugins","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fstatsfa-analytics.1.3.zip",92,0,null,"2026-07-22T17:31:50.256Z","no_bundle",[],{"slug":33,"display_name":7,"profile_url":8,"plugin_count":13,"total_installs":11,"avg_security_score":26,"avg_patch_time_days":34,"trust_score":35,"computed_at":36},"artaweb",30,88,"2026-08-25T17:50:51.200Z",[38,56,80,101,124],{"slug":39,"name":40,"version":41,"author":42,"author_profile":43,"description":44,"short_description":45,"active_installs":46,"downloaded":47,"rating":27,"num_ratings":27,"last_updated":48,"tested_up_to":49,"requires_at_least":50,"requires_php":51,"tags":52,"homepage":54,"download_link":55,"security_score":11,"vuln_count":27,"unpatched_count":27,"last_vuln_date":28,"fetched_at":29},"lolacore-for-statistics","LolaCore for Statistics","1.2.2","Fran Barbero","https:\u002F\u002Fprofiles.wordpress.org\u002Fvanguardhive\u002F","\u003Cp>WP Statistics already records every visit, source, page and referrer on your site. The problem was never the data. The problem was opening the admin screen, picking a date range, opening another screen, comparing two periods by eye, and trying to remember if last Tuesday’s spike was a real visitor or a bot sweep.\u003C\u002Fp>\n\u003Cp>LolaCore for Statistics moves that work into a sentence inside wp-admin. You ask. Lola reads what WP Statistics already stores and tells you what it means.\u003C\u002Fp>\n\u003Cp>Same plugin. Same data. You stopped clicking and started asking.\u003C\u002Fp>\n\u003Cp>When something matters across domains, Lola can connect a traffic finding with what she remembers about your SEO, content, or commerce activity on the same site. Her memory lives inside your WordPress install.\u003C\u002Fp>\n\u003Cp>This is an addon. It needs \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Flolacore\" rel=\"ugc\">LolaCore\u003C\u002Fa> and \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fwp-statistics\u002F\" rel=\"ugc\">WP Statistics\u003C\u002Fa> active on the same site.\u003C\u002Fp>\n\u003Cp>For walkthroughs and example conversations, see \u003Ca href=\"https:\u002F\u002Flolacore.com\u002Flolacore-for-statistics\" rel=\"nofollow ugc\">lolacore.com\u002Flolacore-for-statistics\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch4>Third-party addon, not affiliated with WP Statistics\u003C\u002Fh4>\n\u003Cp>WP Statistics is developed by Verona Labs. LolaCore for Statistics is an independent addon built by LolaCore. It is not affiliated with, endorsed by, or sponsored by Verona Labs. You install WP Statistics separately from WordPress.org.\u003C\u002Fp>\n\u003Ch4>18 base abilities (+4 when WP Statistics add-ons are active)\u003C\u002Fh4>\n\u003Cp>\u003Cstrong>Read what WP Statistics records\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Site summary: visitors, views, online now, top pages, trend at a glance.\u003C\u002Fli>\n\u003Cli>Traffic trend: daily visitors and views, with change against the previous period.\u003C\u002Fli>\n\u003Cli>Geographic breakdown: countries, cities, regions.\u003C\u002Fli>\n\u003Cli>Device breakdown: browsers, operating systems, device categories.\u003C\u002Fli>\n\u003Cli>Traffic sources: referrers, search engines, social media, source categories.\u003C\u002Fli>\n\u003Cli>Content performance: top pages and posts by views and visitors.\u003C\u002Fli>\n\u003Cli>Page insights: one page or post in depth (bounce rate, entry\u002Fexit, referrers).\u003C\u002Fli>\n\u003Cli>Category and author performance.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Cstrong>Surface what deserves attention\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Find declining pages: compare two date ranges and pull out pages whose views dropped enough to matter.\u003C\u002Fli>\n\u003Cli>Detect traffic anomalies: sensitive-page bursts, single-visitor site sweeps, geographic concentration, daily spikes. Each finding ships with a type, a severity and a suggested next step. Not a raw log dump.\u003C\u002Fli>\n\u003Cli>Investigate visitor pattern: take a sweep finding and follow it into a journey summary with device and geographic context.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Cstrong>Configure WP Statistics without opening its settings screens\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Read and update allowlisted tracking toggles (logged-in tracking, page tracking, bot filtering) with dry-run preview and confirmation.\u003C\u002Fli>\n\u003Cli>Manage exclusions for IPs, URLs, countries, and user roles — the remediation step after anomaly detection.\u003C\u002Fli>\n\u003Cli>Set privacy options (IP anonymization, hashing, DNT) with GDPR warnings on destructive changes.\u003C\u002Fli>\n\u003Cli>Tracking health check: recording status, recent exclusion counts, top 404 URLs.\u003C\u002Fli>\n\u003Cli>Privacy audit snapshot from WP Statistics compliance panel.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Cstrong>WP Statistics add-ons (registered only when active)\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Goals performance: conversion goal completions via the Marketing add-on.\u003C\u002Fli>\n\u003Cli>Campaign performance: UTM campaign visitors and views via the Marketing add-on.\u003C\u002Fli>\n\u003Cli>Link tracker: outbound link clicks via the DataPlus add-on.\u003C\u002Fli>\n\u003Cli>Download tracker: file download events via the DataPlus add-on.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Cstrong>Cross-domain context\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Registered affinity with SEO, content and commerce domains. When a traffic drop or unusual pattern overlaps with something Lola has seen elsewhere on your site, she says so.\u003C\u002Fli>\n\u003Cli>Built-in analyst skill (\u003Ccode>lolacore-statistics-analyst\u003C\u002Fcode>) so Lola routes each question to the right ability and interprets the result instead of dumping a table.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Analytics reads are safe by default. Config writes use an allowlist, always preview with a dry-run first, and require your confirmation before anything changes in WP Statistics.\u003C\u002Fp>\n\u003Ch4>Analyst companion, not a security product\u003C\u002Fh4>\n\u003Cp>Lola reads patterns and explains what she sees. She does not block visitors, ban IPs or act as a firewall. When a pattern looks like reconnaissance or a compliance probe, she describes what is happening and suggests sensible next steps you can take in WP Statistics or your existing security tools. She never claims to have stopped a threat.\u003C\u002Fp>\n\u003Ch4>Privacy\u003C\u002Fh4>\n\u003Cp>Every read runs against the WP Statistics tables on your own server. Your analytics database is not sent to LolaCore. When WP Statistics anonymizes or hashes IP addresses, visitor investigation depth is limited accordingly, and Lola says so out loud instead of pretending to know more than the data allows.\u003C\u002Fp>\n\u003Ch4>You stay in wp-admin\u003C\u002Fh4>\n\u003Cp>You chat with Lola in the LolaCore panel inside WordPress admin. You describe what you want in plain language, she picks the right read ability, and you stay in wp-admin. Your AI provider is configured once in WordPress (Settings -> Connectors, WordPress 7.0+). This addon adds no API keys and no usage quotas of its own.\u003C\u002Fp>\n\u003Ch4>Requirements\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>WordPress 7.0+\u003C\u002Fli>\n\u003Cli>PHP 8.1+\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Flolacore\" rel=\"ugc\">LolaCore\u003C\u002Fa>, active\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fwp-statistics\u002F\" rel=\"ugc\">WP Statistics\u003C\u002Fa>, active\u003C\u002Fli>\n\u003C\u002Ful>\n","Ask Lola what your traffic did this week, and whether last Tuesday's spike came from real visitors or bots.",40,122,"2026-06-28T18:32:00.000Z","7.0.2","7.0","8.1",[19,21,22,53,23],"traffic","https:\u002F\u002Flolacore.com\u002Flolacore-for-statistics","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Flolacore-for-statistics.1.2.2.zip",{"slug":57,"name":58,"version":59,"author":60,"author_profile":61,"description":62,"short_description":63,"active_installs":64,"downloaded":65,"rating":66,"num_ratings":67,"last_updated":68,"tested_up_to":49,"requires_at_least":69,"requires_php":70,"tags":71,"homepage":75,"download_link":76,"security_score":77,"vuln_count":78,"unpatched_count":27,"last_vuln_date":79,"fetched_at":29},"wp-statistics","WP Statistics – Simple, privacy-friendly Google Analytics alternative","14.16.9","VeronaLabs","https:\u002F\u002Fprofiles.wordpress.org\u002Fveronalabs\u002F","\u003Cp>Discover GDPR-compliant analytics with \u003Ca href=\"https:\u002F\u002Fwp-statistics.com\u002F?utm_source=wporg&utm_medium=link&utm_campaign=website\" rel=\"nofollow ugc\">WP Statistics\u003C\u002Fa>, the top choice for WordPress users seeking an alternative to Google Analytics. No external accounts, unlimited visitor tracking, and full data ownership—all stored directly in your WordPress database.\u003C\u002Fp>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwp-statistics.com\u002Fdemo\" rel=\"nofollow ugc\">Checkout Demo\u003C\u002Fa> | \u003Ca href=\"#screenshots\" rel=\"nofollow ugc\">View Screenshots\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch4>GDPR Compliant (Data Privacy)\u003C\u002Fh4>\n\u003Cp>WP Statistics is GDPR, CCPA, PECR, and cookie compliance by default.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>We do not use cookies\u003C\u002Fli>\n\u003Cli>We do not store personally identifiable information (PII) by default\u003C\u002Fli>\n\u003Cli>100% data ownership. Data is entirely created and stored on your server\u003C\u002Fli>\n\u003Cli>Enhance IP Hashing with Random Daily Salt Mechanism\u003C\u002Fli>\n\u003Cli>Features to export and delete data for GDPR\u003C\u002Fli>\n\u003Cli>Respect for User Privacy with Do Not Track (DNT)\u003C\u002Fli>\n\u003Cli>Privacy Audit Tool for compliance with privacy laws\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Your site won’t need to have a cookie popup since WP Statistics uses \u003Ca href=\"https:\u002F\u002Fwp-statistics.com\u002Fresources\u002Fcounting-unique-visitors-without-cookies\u002F?utm_source=wporg&utm_medium=link&utm_campaign=doc\" rel=\"nofollow ugc\">cookie-less tracking\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>You can find more information in “\u003Ca href=\"https:\u002F\u002Fwp-statistics.com\u002Fresources\u002Fwhat-we-collect\u002F?utm_source=wporg&utm_medium=link&utm_campaign=doc\" rel=\"nofollow ugc\">What we collect\u003C\u002Fa>“.\u003C\u002Fp>\n\u003Ch4>Top Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Fully integrate with your WordPress and your content structure and you have the all reports all in your WP dashboard\u003C\u002Fli>\n\u003Cli>Content and Category Analytics: Track performance based on your site’s content and categories.\u003C\u002Fli>\n\u003Cli>Simple analytics dashboard\u003C\u002Fli>\n\u003Cli>Super easy to install. No coding or technical knowledge needed\u003C\u002Fli>\n\u003Cli>Advanced data privacy settings that are customizable to fit your needs, in compliance with diverse data protection laws\u003C\u002Fli>\n\u003Cli>Track URL parameters, including UTMs, for campaign analysis\u003C\u002Fli>\n\u003Cli>With configurable settings, manage large amounts of data on high-traffic websites\u003C\u002Fli>\n\u003Cli>Monitor live online user traffic in real-time\u003C\u002Fli>\n\u003Cli>Fully customized overview dashboard page\u003C\u002Fli>\n\u003Cli>Shows your most popular posts and pages\u003C\u002Fli>\n\u003Cli>Referrals Tracking: Track and analyze referrals with five reports: Referred Visitors, Referrers, Search Engines, Social Media, and Source Categories. The new Source Categories report includes support for Organic Search, Paid Search, Organic Social, Paid Social, and more.\u003C\u002Fli>\n\u003Cli>Lists your top referral sources such as search engines\u003C\u002Fli>\n\u003Cli>Author Analytics: Measures author performance.\u003C\u002Fli>\n\u003Cli>Geographic Reports: Location-based analytics, including countries, cities, European countries, US states, and regions within your country.\u003C\u002Fli>\n\u003Cli>Devices Report: Detailed device-specific analytics covering browsers, operating systems, device categories and device models.\u003C\u002Fli>\n\u003Cli>Bypass Ad Blockers: Dynamically load the tracking script with a unique name and address to bypass ad blockers.\u003C\u002Fli>\n\u003Cli>Integrate with WP Consent API: Ensures compatibility with consent plugins like Complianz and Cookiebot.\u003C\u002Fli>\n\u003Cli>Email reports with customizable content\u003C\u002Fli>\n\u003Cli>Customize role-based access to view analytics and modify settings.\u003C\u002Fli>\n\u003Cli>Advanced Filtering & Exceptions: By user roles, IPs, countries, URLs, and more.\u003C\u002Fli>\n\u003Cli>Premium Add-on: \u003Ca href=\"https:\u002F\u002Fwp-statistics.com\u002Fproduct\u002Fwp-statistics-data-plus?utm_source=wporg&utm_medium=link&utm_campaign=dp\" rel=\"nofollow ugc\">Data Plus\u003C\u002Fa>\n\u003Cul>\n\u003Cli>\u003Cstrong>Custom Post Type Tracking\u003C\u002Fstrong>: DataPlus extends WP Statistics’ tracking to include all custom post types in addition to Posts and Pages.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Custom Taxonomy Analytics\u003C\u002Fstrong>: In addition to monitoring default taxonomies like Categories and Tags, DataPlus also tracks custom taxonomies.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Link Tracker\u003C\u002Fstrong>: Find out which outbound links your audience clicks on, giving you insights into their preferences and behaviors.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Download Tracker\u003C\u002Fstrong>: Keep track of what’s being downloaded, who’s downloading it, and when.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Individual Author Performance\u003C\u002Fstrong>: Detailed metrics on the performance of individual authors.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Detailed Analytics for Each Country\u003C\u002Fstrong>: In-depth analytics for each country to enhance geographical reporting.\u003C\u002Fli>\n\u003Cli>And more!\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>Premium Add-on: \u003Ca href=\"https:\u002F\u002Fwp-statistics.com\u002Fproduct\u002Fwp-statistics-marketing\u002F?utm_source=wporg&utm_medium=link&utm_campaign=marketing\" rel=\"nofollow ugc\">Marketing\u003C\u002Fa>\n\u003Cul>\n\u003Cli>\u003Cstrong>Campaign Analytics\u003C\u002Fstrong>: Track UTM-tagged links and see which campaigns drive the most visitors.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Google Search Console Integration\u003C\u002Fstrong>: Monitor impressions, clicks, and queries.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Custom Event Tracking\u003C\u002Fstrong>: Create goals based on clicks, pageviews, or events and monitor conversions.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Built-in UTM Link Builder\u003C\u002Fstrong>: Generate and validate campaign URLs inside your dashboard.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Cstrong>Get the most out of your website analytics by using WP Statistics Premium Add-ons\u003C\u002Fstrong>\u003Cbr \u002F>\nUpgrade your analytics toolkit with our range of premium add-ons, including \u003Ca href=\"https:\u002F\u002Fwp-statistics.com\u002Fproduct\u002Fwp-statistics-data-plus?utm_source=wporg&utm_medium=link&utm_campaign=dp\" rel=\"nofollow ugc\">Data Plus\u003C\u002Fa>, \u003Ca href=\"https:\u002F\u002Fwp-statistics.com\u002Fproduct\u002Fwp-statistics-advanced-reporting\u002F?utm_source=wporg&utm_medium=link&utm_campaign=adv-report\" rel=\"nofollow ugc\">Advanced Reporting\u003C\u002Fa>, \u003Ca href=\"https:\u002F\u002Fwp-statistics.com\u002Fproduct\u002Fwp-statistics-realtime-stats\u002F?utm_source=wporg&utm_medium=link&utm_campaign=realtime\" rel=\"nofollow ugc\">Real-Time Stats\u003C\u002Fa>, \u003Ca href=\"https:\u002F\u002Fwp-statistics.com\u002Fproduct\u002Fwp-statistics-mini-chart\u002F?utm_source=wporg&utm_medium=link&utm_campaign=mini-chart\" rel=\"nofollow ugc\">Mini Chart\u003C\u002Fa>, \u003Ca href=\"https:\u002F\u002Fwp-statistics.com\u002Fproduct\u002Fwp-statistics-marketing\u002F?utm_source=wporg&utm_medium=link&utm_campaign=marketing\" rel=\"nofollow ugc\">Marketing\u003C\u002Fa>, and \u003Ca href=\"https:\u002F\u002Fwp-statistics.com\u002Fadd-ons\u002F?utm_source=wporg&utm_medium=link&utm_campaign=add-ons\" rel=\"nofollow ugc\">more\u003C\u002Fa>. Making informed decisions is easier with these powerful tools.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Special Offer:\u003C\u002Fstrong> Save up to 60% on all premium features when you purchase \u003Ca href=\"https:\u002F\u002Fwp-statistics.com\u002Fpricing\u002F?utm_source=wporg&utm_medium=link&utm_campaign=premium\" rel=\"nofollow ugc\">WP Statistics Premium\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch4>Report Bugs\u003C\u002Fh4>\n\u003Cp>Having trouble with a bug? Please \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fwp-statistics\u002Fwp-statistics\u002Fissues\u002Fnew\" rel=\"nofollow ugc\">create an issue\u003C\u002Fa> on GitHub. Kindly note that \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fwp-statistics\u002Fwp-statistics\" rel=\"nofollow ugc\">GitHub\u003C\u002Fa> is exclusively for bug reports; other inquiries will be closed.\u003C\u002Fp>\n\u003Cp>For security vulnerabilities, please report them through the \u003Ca href=\"https:\u002F\u002Fpatchstack.com\u002Fdatabase\u002Fwordpress\u002Fplugin\u002Fwp-statistics\u002Fvdp\" rel=\"nofollow ugc\">Patchstack Vulnerability Disclosure Program\u003C\u002Fa>. The Patchstack team will validate, triage, and handle any security issues.\u003C\u002Fp>\n","Get website traffic insights with GDPR\u002FCCPA compliant, privacy-friendly analytics. Includes visitor data, stunning graphs, and no data sharing.",600000,36370522,82,757,"2026-07-21T10:52:00.000Z","6.6","7.4",[19,72,73,74,22],"google-analytics","insights","site-visitors","https:\u002F\u002Fwp-statistics.com\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwp-statistics.14.16.9.zip",76,38,"2026-06-01 00:00:00",{"slug":81,"name":82,"version":83,"author":84,"author_profile":85,"description":86,"short_description":87,"active_installs":88,"downloaded":89,"rating":90,"num_ratings":91,"last_updated":92,"tested_up_to":93,"requires_at_least":94,"requires_php":95,"tags":96,"homepage":99,"download_link":100,"security_score":11,"vuln_count":27,"unpatched_count":27,"last_vuln_date":28,"fetched_at":29},"statify","Statify","1.8.5","pluginkollektiv","https:\u002F\u002Fprofiles.wordpress.org\u002Fpluginkollektiv\u002F","\u003Cp>Statify provides a straightforward and compact access to the number of site views. It is privacy-friendly as it uses neither cookies nor a third party.\u003C\u002Fp>\n\u003Cp>An interactive chart is followed by lists of the most common reference sources and target pages. The period of statistics and length of lists can be set directly in the dashboard widget.\u003C\u002Fp>\n\u003Ch3>Data Privacy\u003C\u002Fh3>\n\u003Cp>In direct comparison to statistics services such as \u003Cem>Google Analytics\u003C\u002Fem>, \u003Cem>WordPress.com Stats\u003C\u002Fem> and \u003Cem>Matomo (Piwik)\u003C\u002Fem> \u003Cem>Statify\u003C\u002Fem> doesn’t process and store personal data as e.g. IP addresses – \u003Cem>Statify\u003C\u002Fem> counts site views, not visitors.\u003C\u002Fp>\n\u003Cp>Absolute privacy compliance coupled with transparent procedures: A locally in WordPress created database table consists of only four fields (ID, date, source, target) and can be viewed at any time, cleaned up and cleared by the administrator.\u003C\u002Fp>\n\u003Cp>Due to this tracking approach, Statify is 100% compliant with GDPR and serves as an lightweight alternative to other tracking services.\u003C\u002Fp>\n\u003Ch3>Display of the widget\u003C\u002Fh3>\n\u003Cp>The plugin configuration can be changed directly in the \u003Cem>Statify\u003C\u002Fem> Widget on the dashboard by clicking the \u003Cem>Configure\u003C\u002Fem> link.\u003C\u002Fp>\n\u003Cp>The amount of links shown in the \u003Cem>Statify\u003C\u002Fem> Widget can be set as well as the option to only count views from today. Of course, older entries are not deleted when changing this setting.\u003C\u002Fp>\n\u003Cp>The statistics for the dashboard widget are cached for four minutes.\u003C\u002Fp>\n\u003Ch3>Period of data saving\u003C\u002Fh3>\n\u003Cp>\u003Cem>Statify\u003C\u002Fem> stores the data only for a limited period (default: two weeks), longer intervals can be selected as option in the widget. Data which is older than the selected period is deleted by a daily cron job.\u003C\u002Fp>\n\u003Cp>An increase in the database volume can be expected because all statistic values are collected and managed in the local WordPress database (especially if you increase the period of data saving).\u003C\u002Fp>\n\u003Ch3>JavaScript tracking for caching compatibility\u003C\u002Fh3>\n\u003Cp>For compatibility with caching plugins like \u003Ca href=\"http:\u002F\u002Fcachify.de\" rel=\"nofollow ugc\">Cachify\u003C\u002Fa> \u003Cem>Statify\u003C\u002Fem> offers an optional switchable tracking via JavaScript. This function allows reliable count of cached blog pages.\u003C\u002Fp>\n\u003Cp>For this to work correctly, the active theme has to call \u003Ccode>wp_footer()\u003C\u002Fcode>, typically in a file named \u003Ccode>footer.php\u003C\u002Fcode>.\u003C\u002Fp>\n\u003Ch3>Skip tracking for spam referrers\u003C\u002Fh3>\n\u003Cp>The comment blacklist can be enabled to skip tracking for views with a referrer URL listed in comment blacklist, i. e. which considered as spam.\u003C\u002Fp>\n\u003Ch3>Support\u003C\u002Fh3>\n\u003Cp>If you’ve problems or think you’ve found a bug (e.g. you’re experiencing unexpected behavior), please post at the \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fsupport\u002Fplugin\u002Fstatify\" rel=\"ugc\">support forums\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch3>Contribute\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>Active development of this plugin is handled \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fpluginkollektiv\u002Fstatify\" rel=\"nofollow ugc\">on GitHub\u003C\u002Fa>.\u003C\u002Fli>\n\u003Cli>Pull requests for documented bugs are highly appreciated.\u003C\u002Fli>\n\u003Cli>If you want to help us translate this plugin you can do so \u003Ca href=\"https:\u002F\u002Ftranslate.wordpress.org\u002Fprojects\u002Fwp-plugins\u002Fstatify\" rel=\"nofollow ugc\">on WordPress Translate\u003C\u002Fa>.\u003C\u002Fli>\n\u003C\u002Ful>\n","Visitor statistics for WordPress with focus on data protection, transparency and clarity. Perfect as a widget in your WordPress Dashboard.",100000,2409383,96,51,"2025-12-21T16:02:00.000Z","6.9.5","4.7","5.2",[19,97,98,21,22],"pageviews","privacy","https:\u002F\u002Fstatify.pluginkollektiv.org\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fstatify.1.8.5.zip",{"slug":102,"name":103,"version":104,"author":105,"author_profile":106,"description":107,"short_description":108,"active_installs":109,"downloaded":110,"rating":111,"num_ratings":112,"last_updated":113,"tested_up_to":114,"requires_at_least":115,"requires_php":17,"tags":116,"homepage":119,"download_link":120,"security_score":121,"vuln_count":122,"unpatched_count":27,"last_vuln_date":123,"fetched_at":29},"wp-piwik","Connect Matomo – Analytics Dashboard for WordPress","1.1.9","matomoteam","https:\u002F\u002Fprofiles.wordpress.org\u002Fmatomoteam\u002F","\u003Cp>\u003Cstrong>Version 1.1.7 includes a security related fix, it is highly recommended to update to this or a later version.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>If you are not yet using Matomo On-Premise, Matomo Cloud or hosting your own instance of Matomo, please use the \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fmatomo\u002F\" rel=\"ugc\">Matomo for WordPress plugin\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>This plugin uses the Matomo API to show your Matomo statistics in your WordPress dashboard. It’s also able to add the Matomo tracking code to your blog and to do some modifications to the tracking code. Additionally, WP-Matomo supports WordPress networks and manages multiple sites and their tracking codes.\u003C\u002Fp>\n\u003Cp>To use this plugin the Matomo web analytics application is required. If you do not already have a Matomo setup (e.g., provided by your web hosting service), you have two simple options: use either a \u003Ca href=\"http:\u002F\u002Fmatomo.org\u002F\" rel=\"nofollow ugc\">self-hosted Matomo\u003C\u002Fa> or a \u003Ca href=\"https:\u002F\u002Fwww.innocraft.cloud\u002F?pk_campaign=WP-Piwik\" rel=\"nofollow ugc\">cloud-hosted Matomo by InnoCraft\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Requirements:\u003C\u002Fstrong> PHP 7.0 (or higher), WordPress 5.0 (or higher), Matomo 4.0 (or higher)\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Languages:\u003C\u002Fstrong> English, Albanian, Chinese, Dutch, French, German, Greek, Hungarian, Italian, Polish, Portuguese (Brazil). Partially supported: Azerbaijani, Belarusian, Hindi, Lithuanian, Luxembourgish, Norwegian, Persian, Romanian, Russian, Spanish, Swedish, Turkish, Ukrainian\u003C\u002Fp>\n\u003Ch4>What is Matomo?\u003C\u002Fh4>\n\u003Cp>\u003Cspan class=\"embed-youtube\" style=\"text-align:center; display: block;\">\u003Ciframe loading=\"lazy\" class=\"youtube-player\" width=\"750\" height=\"422\" src=\"https:\u002F\u002Fwww.youtube.com\u002Fembed\u002FQc2kooLNDiU?version=3&rel=1&showsearch=0&showinfo=1&iv_load_policy=1&fs=1&hl=en-US&autohide=2&wmode=transparent\" allowfullscreen=\"true\" style=\"border:0;\" sandbox=\"allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox\">\u003C\u002Fiframe>\u003C\u002Fspan>\u003Cbr \u002F>\n\u003Ca href=\"https:\u002F\u002Fmatomo.org\u002Fwhat-is-matomo\u002F\" rel=\"nofollow ugc\">Learn more.\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch4>First steps\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Learn how to install your own Matomo instance: \u003Ca href=\"https:\u002F\u002Fmatomo.org\u002Fdocs\u002Frequirements\u002F\" rel=\"nofollow ugc\">Requirements\u003C\u002Fa>, \u003Ca href=\"https:\u002F\u002Fmatomo.org\u002Fdocs\u002Finstallation-optimization\u002F\" rel=\"nofollow ugc\">Installation\u003C\u002Fa>.\u003C\u002Fli>\n\u003Cli>If you need support about Matomo, please have a look at the \u003Ca href=\"https:\u002F\u002Fforum.matomo.org\u002F\" rel=\"nofollow ugc\">Matomo forums\u003C\u002Fa>.\u003C\u002Fli>\n\u003Cli>Finally, you can start \u003Ca href=\"https:\u002F\u002Fmatomo.org\u002Fblog\u002F2015\u002F05\u002Fwordpress-integration-wp-piwik-1-0\u002F\" rel=\"nofollow ugc\">setting up WP-Matomo\u003C\u002Fa>.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Shortcodes\u003C\u002Fh4>\n\u003Cp>You can use following shortcodes if activated:\u003C\u002Fp>\n\u003Cpre>\u003Ccode>[wp-piwik module=\"overview\" title=\"\" period=\"day\" date=\"yesterday\"]\n\u003C\u002Fcode>\u003C\u002Fpre>\n\u003Cp>Shows overview table like WP-Matomo’s overview dashboard. See Matomo API documentation on VisitsSummary.get to get more information on period and day. Multiple data arrays will be cumulated. If you fill the title attribute, its content will be shown in the table’s title.\u003C\u002Fp>\n\u003Cpre>\u003Ccode>[wp-piwik module=\"opt-out\" language=\"en\" width=\"100%\" height=\"200px\"]\n\u003C\u002Fcode>\u003C\u002Fpre>\n\u003Cp>Shows the Matomo opt-out Iframe. You can change the Iframe’s language by the language attribute (e.g. de for German language) and its width and height using the corresponding attributes.\u003C\u002Fp>\n\u003Cpre>\u003Ccode>[wp-piwik module=\"post\" range=\"last30\" key=\"sum_daily_nb_uniq_visitors\"]\n\u003C\u002Fcode>\u003C\u002Fpre>\n\u003Cp>Shows the chosen keys value related to the current post. You can define a range (format: lastN, previousN or YYYY-MM-DD,YYYY-MM-DD) and the desired value’s key (e.g., sum_daily_nb_uniq_visitors, nb_visits or nb_hits – for details see Matomo’s API method Actions.getPageUrl using a range).\u003C\u002Fp>\n\u003Cpre>\u003Ccode>[wp-piwik]\n\u003C\u002Fcode>\u003C\u002Fpre>\n\u003Cp>is equal to \u003Cem>[wp-piwik module=”overview” title=”” period=”day” date=”yesterday”]\u003C\u002Fem>.\u003C\u002Fp>\n\u003Ch4>Credits and Acknowledgements\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Graphs powered by \u003Ca href=\"https:\u002F\u002Fwww.chartjs.org\" rel=\"nofollow ugc\">Chart.js\u003C\u002Fa> (MIT License).\u003C\u002Fli>\n\u003Cli>All translators at Transifex and WordPress.\u003C\u002Fli>\n\u003Cli>Anyone who donates to the WP-Matomo project, including the Matomo team!\u003C\u002Fli>\n\u003Cli>All users who send me mails containing criticism, commendation, feature requests and bug reports – you help me to make WP-Matomo much better!\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Thank you all!\u003C\u002Fp>\n","Adds Matomo (former Piwik) statistics to your WordPress dashboard and is also able to add the Matomo Tracking Code to your blog.",60000,3266364,90,95,"2026-06-30T01:53:00.000Z","7.0.0","5.0",[19,117,21,22,118],"matomo","tracking","http:\u002F\u002Fwordpress.org\u002Fextend\u002Fplugins\u002Fwp-piwik\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwp-piwik.1.1.9.zip",97,5,"2023-09-21 00:00:00",{"slug":125,"name":126,"version":127,"author":128,"author_profile":129,"description":130,"short_description":131,"active_installs":132,"downloaded":133,"rating":134,"num_ratings":135,"last_updated":136,"tested_up_to":49,"requires_at_least":137,"requires_php":17,"tags":138,"homepage":17,"download_link":142,"security_score":111,"vuln_count":143,"unpatched_count":27,"last_vuln_date":144,"fetched_at":29},"visitors-traffic-real-time-statistics","Visitor Traffic Real Time Statistics","8.11","wp-buy","https:\u002F\u002Fprofiles.wordpress.org\u002Fwp-buy\u002F","\u003Cp>\u003Cstrong>Visitor Traffic Real-Time Statistics for WordPress\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>Unlock powerful insights into your website traffic with\u003Cstrong>Visitor Traffic Real-Time Statistics\u003C\u002Fstrong>, the ultimate WordPress plugin for tracking visitors, visits, browsers, operating systems, and more — all in one intuitive dashboard.\u003C\u002Fp>\n\u003Cp>With real-time data and easy-to-use shortcodes, you’ll get a complete picture of your site’s performance without the complexity. Whether you’re a blogger, business owner, or marketer, this plugin gives you the tools to understand your audience better and make smarter decisions.\u003C\u002Fp>\n\u003Ch3>\u003Cstrong>Why Choose Visitor Traffic Real-Time Statistics?\u003C\u002Fstrong>\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Cstrong>Real-Time Visitor Tracking:\u003C\u002Fstrong> See who’s visiting your site and when — in real-time.  \u003C\u002Fli>\n\u003Cli>\u003Cstrong>User-Friendly Dashboard:\u003C\u002Fstrong> All your key insights are displayed on a single, easy-to-navigate dashboard.  \u003C\u002Fli>\n\u003Cli>\u003Cstrong>Comprehensive Analytics:\u003C\u002Fstrong> Track visitors by country, device, browser, operating system, referrer, and more.  \u003C\u002Fli>\n\u003Cli>\u003Cstrong>Shortcode Integration:\u003C\u002Fstrong> Display visitor stats anywhere on your site with simple shortcodes.  \u003C\u002Fli>\n\u003Cli>\u003Cstrong>SEO Insights:\u003C\u002Fstrong> Monitor keywords, search engine referrals, and traffic sources to improve your SEO performance.  \u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>\u003Cstrong>Available Shortcodes (Simple & Flexible)\u003C\u002Fstrong>\u003C\u002Fh3>\n\u003Cp>Add these shortcodes to any post, page, or widget to showcase your traffic stats:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Ccode>[ahc_stats_widget]\u003C\u002Fcode> – Display a site-wide statistics widget on the front end.  \u003C\u002Fli>\n\u003Cli>\u003Ccode>[ahc_stats_widget title=\"Your Title\" fontsize=\"16\" display_today_visitors=true display_total_visitors=true]\u003C\u002Fcode> – Customize the widget with your own parameters.  \u003C\u002Fli>\n\u003Cli>\u003Ccode>[ahc_today_visitors]\u003C\u002Fcode> – Display today’s visitors.  \u003C\u002Fli>\n\u003Cli>\u003Ccode>[ahc_today_visits]\u003C\u002Fcode> – Display today’s page views.  \u003C\u002Fli>\n\u003Cli>\u003Ccode>[ahc_total_visitors]\u003C\u002Fcode> – Show your all-time visitor count.  \u003C\u002Fli>\n\u003Cli>\u003Ccode>[ahc_total_visits]\u003C\u002Fcode> – Display total visits to your site.  \u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>\u003Cstrong>Free Version Features:\u003C\u002Fstrong>\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>Real-time visitor tracking and stats.  \u003C\u002Fli>\n\u003Cli>Insights into browsers, countries, hits, referrals, and searches.  \u003C\u002Fli>\n\u003Cli>Track daily, weekly, and monthly visitor trends.  \u003C\u002Fli>\n\u003Cli>Shortcodes to display key stats on your site.  \u003C\u002Fli>\n\u003Cli>Track top referring websites and keywords.  \u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>\u003Cstrong>Upgrade to Pro for Even More Power!\u003C\u002Fstrong>\u003C\u002Fh3>\n\u003Cp>Take your analytics to the next level with\u003Cstrong>Visitor Traffic Real-Time Statistics Pro\u003C\u002Fstrong>:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Multisite Support:\u003C\u002Fstrong> Track traffic across multiple sites in one place.  \u003C\u002Fli>\n\u003Cli>\u003Cstrong>Live User Tracking:\u003C\u002Fstrong> See how many people are online right now.  \u003C\u002Fli>\n\u003Cli>\u003Cstrong>Interactive Google Maps:\u003C\u002Fstrong> Visualize visitor locations globally.  \u003C\u002Fli>\n\u003Cli>\u003Cstrong>Advanced Page Tracking:\u003C\u002Fstrong> Identify your most popular posts and pages.  \u003C\u002Fli>\n\u003Cli>\u003Cstrong>Detailed Visit Graphs:\u003C\u002Fstrong> Analyze visitor activity by the hour.  \u003C\u002Fli>\n\u003Cli>\u003Cstrong>Advanced SEO Insights:\u003C\u002Fstrong> Discover the keywords driving traffic to your site.  \u003C\u002Fli>\n\u003Cli>\u003Cstrong>Customizable Reports:\u003C\u002Fstrong> Get actionable insights with easy-to-read reports.  \u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>\u003Cstrong>Who Can Benefit?\u003C\u002Fstrong>\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>Bloggers who want to track reader engagement.  \u003C\u002Fli>\n\u003Cli>E-commerce store owners looking to understand customer behavior.  \u003C\u002Fli>\n\u003Cli>Marketers seeking to optimize SEO strategies.  \u003C\u002Fli>\n\u003Cli>Website administrators who need detailed traffic analysis.  \u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>\u003Cstrong>Get Started Today!\u003C\u002Fstrong>\u003C\u002Fh3>\n\u003Cp>\u003Cstrong>Install the plugin now\u003C\u002Fstrong> to gain valuable insights into your site traffic and grow your online presence.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>\u003Ca href=\"https:\u002F\u002Fwww.wp-buy.com\u002Fproduct\u002Fvisitors-traffic-real-time-statistics-pro\u002F#gopro\" rel=\"nofollow ugc\">Go PRO Now\u003C\u002Fa>\u003C\u002Fstrong> to unlock all premium features and maximize your analytics potential!\u003C\u002Fp>\n\u003Cp>\u003Cstrong>\u003Ca href=\"https:\u002F\u002Fwww.wp-buy.com\u002Fsupport-center\u002F\" rel=\"nofollow ugc\">Visit Our Support Center\u003C\u002Fa>\u003C\u002Fstrong> for any assistance.\u003C\u002Fp>\n\u003Cp>Your website is getting visitors. Don’t miss out on the insights that can help your business grow.\u003C\u002Fp>\n","This plugin will help you to track your visitors, browsers, operating systems, visits and much more in one dashboard page.",30000,1942746,84,232,"2026-07-07T08:42:00.000Z","3.0.1",[139,21,140,53,141],"hits-counter","stats-analytics","visitor","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fvisitors-traffic-real-time-statistics.8.11.zip",8,"2026-04-03 22:10:48",{"attackSurface":146,"codeSignals":192,"taintFlows":201,"riskAssessment":202,"analyzedAt":209},{"hooks":147,"ajaxHandlers":180,"restRoutes":188,"shortcodes":189,"cronEvents":190,"entryPointCount":191,"unprotectedCount":191},[148,154,159,162,167,170,173,175,178],{"type":149,"name":150,"callback":151,"file":152,"line":153},"action","admin_enqueue_scripts","statsfa_enqueue_dashboard_assets","admin\\dashboard-widget.php",3,{"type":149,"name":155,"callback":156,"file":157,"line":158},"admin_notices","closure","admin\\settings-page.php",13,{"type":149,"name":160,"callback":156,"file":161,"line":34},"wp_enqueue_scripts","statsfa-analytics.php",{"type":163,"name":164,"callback":156,"priority":165,"file":161,"line":166},"filter","script_loader_tag",10,39,{"type":149,"name":168,"callback":156,"file":161,"line":169},"admin_menu",56,{"type":149,"name":171,"callback":156,"file":161,"line":172},"admin_init",73,{"type":149,"name":174,"callback":156,"file":161,"line":35},"wp_dashboard_setup",{"type":149,"name":174,"callback":156,"priority":176,"file":161,"line":177},99,93,{"type":149,"name":150,"callback":156,"file":161,"line":179},103,[181,185],{"action":182,"nopriv":183,"callback":156,"hasNonce":183,"hasCapCheck":183,"file":161,"line":184},"statsfa_get_stats",false,116,{"action":186,"nopriv":183,"callback":156,"hasNonce":183,"hasCapCheck":183,"file":161,"line":187},"statsfa_get_top_pages",162,[],[],[],2,{"dangerousFunctions":193,"sqlUsage":194,"outputEscaping":196,"fileOperations":27,"externalRequests":199,"nonceChecks":153,"capabilityChecks":27,"bundledLibraries":200},[],{"prepared":27,"raw":27,"locations":195},[],{"escaped":197,"rawEcho":27,"locations":198},14,[],4,[],[],{"summary":203,"deductions":204},"The statsfa-analytics plugin v1.3 exhibits a mixed security posture. On the positive side, it demonstrates strong adherence to secure coding practices by utilizing prepared statements for all SQL queries and properly escaping all output. The absence of known vulnerabilities in its history is also a positive indicator. However, significant concerns arise from its attack surface. With two identified AJAX handlers, both lacking authentication checks, there is a clear pathway for unauthorized actions if these handlers can be triggered by unauthenticated users. While taint analysis showed no critical or high severity issues, this could be due to the limited scope of analysis or the absence of exploitable data flows in the current version. The lack of capability checks on its AJAX endpoints further amplifies the risk, as any user, regardless of their role, could potentially interact with these functions.\n\nWhile the plugin's foundation in secure SQL and output handling is commendable, the unprotected AJAX endpoints represent a critical vulnerability that could lead to unauthorized data access or modification depending on the functionality of these endpoints. The absence of capability checks means that even the limited attack surface exposed is not adequately secured. The vulnerability history being clear of any past issues suggests a generally well-maintained codebase or a lack of discovery, but it does not negate the immediate risks identified in the static analysis. The plugin has strengths in its core data handling but weaknesses in its access control for critical entry points.",[205,207],{"reason":206,"points":165},"AJAX handlers without auth checks",{"reason":208,"points":165},"AJAX handlers without capability checks","2026-03-16T20:29:54.284Z",{"wat":211,"direct":219},{"assetPaths":212,"generatorPatterns":214,"scriptPaths":215,"versionParams":217},[213],"\u002Fwp-content\u002Fplugins\u002Fstatsfa-analytics\u002Fassets\u002Fstatsfa-dashboard.js",[],[216],"https:\u002F\u002Fstatsfa.com\u002Fjs\u002Fscript.js",[218],"statsfa-dashboard.js?ver=1.3",{"cssClasses":220,"htmlComments":221,"htmlAttributes":222,"restEndpoints":226,"jsGlobals":228,"shortcodeOutput":230},[],[],[223,224,225],"data-host","data-dnt","id=\"ZwSg9rf6GA\"",[227],"\u002Fwp-json\u002Fstatsfa-analytics\u002Fv1",[229],"statsfaAjax",[],{"error":232,"url":233,"statusCode":234,"statusMessage":235,"message":235},true,"http:\u002F\u002Flocalhost\u002Fapi\u002Fplugins\u002Fstatsfa-analytics\u002Fbundle",404,"no bundle for this plugin yet",{"slug":4,"current_version":6,"total_versions":13,"versions":237},[238],{"version":6,"download_url":25,"svn_tag_url":239,"released_at":28,"has_diff":183,"diff_files_changed":240,"diff_lines":28,"trac_diff_url":28,"vulnerabilities":241,"is_current":232},"https:\u002F\u002Fplugins.svn.wordpress.org\u002Fstatsfa-analytics\u002Ftags\u002F1.3\u002F",[],[]]