
Supaz Text Headlines – A simple text headlines plugin Security & Risk Analysis
wordpress.org/plugins/supaz-text-headlinesSupaz Text Headlines - A simple text headlines plugin
Is Supaz Text Headlines – A simple text headlines plugin Safe to Use in 2026?
Generally Safe
Score 85/100Supaz Text Headlines – A simple text headlines plugin has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "supaz-text-headlines" plugin v1.0.2 exhibits a generally good security posture based on the provided static analysis. The absence of dangerous functions, file operations, external HTTP requests, and raw SQL queries is a strong positive indicator. Furthermore, the plugin demonstrates a commitment to security by utilizing prepared statements for all SQL queries and having a high percentage of properly escaped output. The presence of nonce checks further strengthens its defenses. However, the complete lack of capability checks on any of its entry points, including the single shortcode, represents a significant potential weakness. While the current static and taint analysis did not reveal exploitable flaws, the absence of permission controls means that any user, regardless of their role, can interact with the plugin's functionality, which could lead to unintended consequences if the shortcode's functionality were to be misused or if future vulnerabilities were introduced.
Key Concerns
- No capability checks on any entry points
- 8% of output is not properly escaped
Supaz Text Headlines – A simple text headlines plugin Security Vulnerabilities
Supaz Text Headlines – A simple text headlines plugin Code Analysis
Output Escaping
Supaz Text Headlines – A simple text headlines plugin Attack Surface
Shortcodes 1
WordPress Hooks 6
Maintenance & Trust
Supaz Text Headlines – A simple text headlines plugin Maintenance & Trust
Maintenance Signals
Community Trust
Supaz Text Headlines – A simple text headlines plugin Alternatives
No alternatives data available yet.
Supaz Text Headlines – A simple text headlines plugin Developer Profile
2 plugins · 100 total installs
How We Detect Supaz Text Headlines – A simple text headlines plugin
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/supaz-text-headlines/css/backend.css/wp-content/plugins/supaz-text-headlines/css/font-awesome.min.css/wp-content/plugins/supaz-text-headlines/js/wp-color-picker-alpha.js/wp-content/plugins/supaz-text-headlines/js/backend.js/wp-content/plugins/supaz-text-headlines/css/frontend.css/wp-content/plugins/supaz-text-headlines/js/frontend.js/wp-content/plugins/supaz-text-headlines/js/wp-color-picker-alpha.js/wp-content/plugins/supaz-text-headlines/js/backend.js/wp-content/plugins/supaz-text-headlines/js/frontend.jssupaz-text-headlines/css/backend.css?ver=supaz-text-headlines/css/font-awesome.min.css?ver=supaz-text-headlines/js/wp-color-picker-alpha.js?ver=supaz-text-headlines/js/backend.js?ver=supaz-text-headlines/css/frontend.css?ver=supaz-text-headlines/js/frontend.js?ver=HTML / DOM Fingerprints
supaz-text-headline-mainsupaz-text-headline-main-wrapmh-font-awesome-style<!-- supaz text headlines starts --><!-- supaz text headlines ends -->data-mh-font-familydata-mh-main-font-sizedata-mh-nav-font-sizedata-mh-main-font-colordata-mh-nav-font-colordata-mh-left-border-style+5 more[supaz_text_headlines][supaz_text_headlines title="Main Headline"][supaz_text_headlines title="Main Headline" sub_title="Sub Headline"]