
Store Directory Security & Risk Analysis
wordpress.org/plugins/store-directoryA simple, flexible plugin for keeping a store/location directory and searching for them by radius.
Is Store Directory Safe to Use in 2026?
Generally Safe
Score 85/100Store Directory has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "store-directory" plugin v0.1 exhibits an excellent security posture based on the provided static analysis. There are no identified entry points for external interaction (AJAX, REST API, shortcodes, cron), eliminating many common attack vectors. The code also demonstrates strong security practices with a complete absence of dangerous functions, secure SQL query handling using prepared statements, and a high percentage of properly escaped output. File operations and external HTTP requests are also not present, further reducing the attack surface.
The vulnerability history is equally positive, with zero known CVEs, indicating a strong track record. This suggests diligent development and a lack of previously discovered exploitable flaws. While the taint analysis shows zero flows, this is likely due to the limited attack surface identified in the static analysis. It's important to note that the absence of nonce and capability checks on the zero identified entry points isn't a direct risk given their absence, but it does mean that if any entry points were to be introduced in the future without these checks, it would be a significant oversight.
Overall, "store-directory" v0.1 appears to be a very secure plugin. Its strengths lie in its minimal attack surface and robust coding practices. The primary area for continued vigilance would be to ensure that any future expansions of functionality include appropriate authentication and authorization checks, even if none are currently necessary.
Key Concerns
- No nonce checks on entry points
- No capability checks on entry points
- Unescaped output (12% of total)
Store Directory Security Vulnerabilities
Store Directory Release Timeline
Store Directory Code Analysis
Output Escaping
Store Directory Attack Surface
Maintenance & Trust
Store Directory Maintenance & Trust
Maintenance Signals
Community Trust
Store Directory Alternatives
WP Maps – Store Locator,Google Maps,OpenStreetMap,Mapbox,Listing,Directory & Filters
wp-google-map-plugin
WordPress map plugin for Google Maps, OpenStreetMap & Mapbox with store locator, filterable listings & custom markers.
Store Locator WordPress
agile-store-locator
Agile Store Locator is a premium store finder plugin designed to offer you immediate access to all the best stores in your local area.
Store Locator for WordPress📍
storelocator
Create a store locator for your website in minutes. Add all the store locations in google sheets and embed map on your website.
CM Map Locations – Visualize and share your locations in a few clicks
cm-map-locations
Display locations on an interactive map with Google Maps. Use as a store locator, showcase business locations, and improve navigation.
Pazzey's Store Locator
pazzeys-store-locator
Store Locator Plugin that lets you embed a Google Maps powered store locator.
Store Directory Developer Profile
8 plugins · 8K total installs
How We Detect Store Directory
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/store-directory/css/store-directory.css/wp-content/plugins/store-directory/js/store-directory.js/wp-content/plugins/store-directory/js/store-directory.jsstore-directory/css/store-directory.css?ver=store-directory/js/store-directory.js?ver=HTML / DOM Fingerprints
store-directorystoreDirectoryWPSD_URL