Synapse – Data Bridge for Automation Security & Risk Analysis

wordpress.org/plugins/synapse

The data bridge for WordPress. A powerful REST API to monitor sites and automate workflows with n8n, Zapier, Make, and your own scripts.

20 active installs v1.0.0 PHP 7.4+ WP 5.8+ Updated Oct 23, 2025
automationmakemonitoringn8nrest-api
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Synapse – Data Bridge for Automation Safe to Use in 2026?

Generally Safe

Score 100/100

Synapse – Data Bridge for Automation has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5mo ago
Risk Assessment

The Synapse plugin v1.0.0 exhibits a generally good security posture based on the static analysis and vulnerability history provided. The absence of any known CVEs and the plugin's diligent use of prepared statements for SQL queries, proper output escaping for the vast majority of outputs, and the presence of nonce and capability checks are significant strengths. The limited attack surface, with no apparent unprotected AJAX handlers, REST API routes, or shortcodes, further contributes to its positive security profile. However, the analysis does indicate some minor areas for attention. The presence of a single cron event, while not inherently insecure, warrants scrutiny to ensure it doesn't introduce vulnerabilities, especially if it interacts with external systems or user-supplied data without proper validation. Similarly, the file operation and external HTTP requests, while not flagged as issues, represent potential entry points that should be carefully reviewed for secure implementation. In conclusion, Synapse v1.0.0 appears to be a relatively secure plugin with a strong emphasis on core security practices. The lack of historical vulnerabilities further reinforces this. The limited number of potential issues are not critical but highlight the importance of ongoing vigilance and code review for any plugin, especially concerning its interaction with external systems or scheduled tasks.

Key Concerns

  • Single cron event exists
  • File operations present
  • External HTTP requests present
  • Minor output escaping concern (5% not escaped)
Vulnerabilities
None known

Synapse – Data Bridge for Automation Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Synapse – Data Bridge for Automation Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
1 prepared
Unescaped Output
3
56 escaped
Nonce Checks
3
Capability Checks
2
File Operations
1
External Requests
2
Bundled Libraries
0

SQL Query Safety

100% prepared1 total queries

Output Escaping

95% escaped59 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
handle_form_actions (includes\class-synapse-admin-settings.php:172)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Synapse – Data Bridge for Automation Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 17
filterrest_post_dispatchincludes\api-modules\class-synapse-activity-module.php:16
filterrest_post_dispatchincludes\api-modules\class-synapse-moderation-module.php:13
filterrest_post_dispatchincludes\api-modules\class-synapse-site-health-module.php:14
filterrest_post_dispatchincludes\api-modules\class-synapse-summary-module.php:14
filterrest_post_dispatchincludes\api-modules\class-synapse-updates-module.php:12
actionadmin_menuincludes\class-synapse-admin-settings.php:104
actionadmin_initincludes\class-synapse-admin-settings.php:105
actionadmin_enqueue_scriptsincludes\class-synapse-admin-settings.php:106
actionadmin_initincludes\class-synapse-admin-settings.php:107
actionadmin_enqueue_scriptsincludes\class-synapse-admin-settings.php:108
actioninitincludes\class-synapse-plugin.php:10
actionwp_loginincludes\class-synapse-plugin.php:11
actionactivated_pluginincludes\class-synapse-plugin.php:13
actiondeactivated_pluginincludes\class-synapse-plugin.php:14
actionupgrader_process_completeincludes\class-synapse-plugin.php:15
actionrest_api_initincludes\class-synapse-rest-manager.php:11
actionsynapse_update_plugin_tags_cache_hooksynapse.php:28

Scheduled Events 1

synapse_update_plugin_tags_cache_hook
Maintenance & Trust

Synapse – Data Bridge for Automation Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedOct 23, 2025
PHP min version7.4
Downloads224

Community Trust

Rating0/100
Number of ratings0
Active installs20
Developer Profile

Synapse – Data Bridge for Automation Developer Profile

DVYZR

1 plugin · 20 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Synapse – Data Bridge for Automation

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/synapse/admin/css/admin-styles.css/wp-content/plugins/synapse/admin/js/admin-scripts.js
Script Paths
/wp-content/plugins/synapse/admin/js/admin-scripts.js
Version Parameters
synapse-admin-stylessynapse-admin-js

HTML / DOM Fingerprints

CSS Classes
synapse-dashboardsynapse-settingssynapse-api-endpoints
Data Attributes
data-tab-target
JS Globals
synapse_i18n
REST Endpoints
/wp-json/synapse/v1/test-connection/wp-json/synapse/v1/summary/wp-json/synapse/v1/updates/wp-json/synapse/v1/site-health/wp-json/synapse/v1/moderation/wp-json/synapse/v1/activity/wp-json/synapse/v1/updates/wp-json/synapse/v1/users/wp-json/synapse/v1/stale-content/wp-json/synapse/v1/inactive-users/wp-json/synapse/v1/search
FAQ

Frequently Asked Questions about Synapse – Data Bridge for Automation