Sweet Map Security & Risk Analysis

wordpress.org/plugins/sweet-map

🗺️ Interactive map with a visual marker editor. No API keys, no registration, completely free. Gutenberg block + shortcode.

0 active installs v1.0.1 PHP 7.4+ WP 5.8+ Updated Mar 28, 2026
address-searchinteractive-mapleafletmapmarkers
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Sweet Map Safe to Use in 2026?

Generally Safe

Score 100/100

Sweet Map has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The "sweet-map" plugin version 1.0.1 exhibits a strong security posture based on the provided static analysis. It demonstrates excellent adherence to WordPress security best practices, with no detected dangerous functions, all SQL queries using prepared statements, and an overwhelming majority of output properly escaped. The absence of file operations and external HTTP requests further limits potential attack vectors. The presence of both nonce and capability checks on its entry points suggests a good understanding of secure development principles, contributing to a low risk of direct code execution or unauthorized data manipulation through its defined interfaces.

Vulnerabilities
None known

Sweet Map Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Sweet Map Release Timeline

v1.0.1Current
v1.0
Code Analysis
Analyzed Apr 16, 2026

Sweet Map Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
1
88 escaped
Nonce Checks
4
Capability Checks
3
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

99% escaped89 total outputs
Data Flows · Security
All sanitized

Data Flow Analysis

2 flows
swmap_render_page (sweet-map.php:286)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Sweet Map Attack Surface

Entry Points2
Unprotected0

REST API Routes 1

POST/wp-json/swmap/v1/save-markerssweet-map.php:225

Shortcodes 1

[sweet_map] sweet-map.php:214
WordPress Hooks 8
actionadmin_enqueue_scriptsguide.php:4
actioninitsweet-map.php:23
actionadmin_initsweet-map.php:36
actionadmin_menusweet-map.php:73
actionadmin_enqueue_scriptssweet-map.php:158
actionenqueue_block_editor_assetssweet-map.php:184
filterscript_loader_tagsweet-map.php:201
actionrest_api_initsweet-map.php:224
Maintenance & Trust

Sweet Map Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 28, 2026
PHP min version7.4
Downloads102

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Sweet Map Developer Profile

ivangrishov

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Sweet Map

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/sweet-map/assets/dist/index.css/wp-content/plugins/sweet-map/assets/dist/style.css/wp-content/plugins/sweet-map/assets/dist/index.js/wp-content/plugins/sweet-map/assets/admin.css/wp-content/plugins/sweet-map/blocks/index.js
Script Paths
/wp-content/plugins/sweet-map/assets/dist/index.js/wp-content/plugins/sweet-map/blocks/index.js
Version Parameters
sweet-map/assets/dist/index.css?ver=sweet-map/assets/dist/style.css?ver=sweet-map/assets/dist/index.js?ver=sweet-map/assets/admin.css?ver=sweet-map/blocks/index.js?ver=

HTML / DOM Fingerprints

CSS Classes
swmap-map-rootswmap-toolbarswmap-toggle-toolbar
Data Attributes
data-map-id
JS Globals
sweetMapDataswmapBlockData
REST Endpoints
/wp-json/swmap/v1/save-markers
Shortcode Output
<div class="swmap-map-root" data-map-id="
FAQ

Frequently Asked Questions about Sweet Map