Taro iframe Block Security & Risk Analysis

wordpress.org/plugins/taro-iframe-block

Add iframe block for your editor. Responsive and keeping aspect ratio.

10 active installs v1.1.2 PHP 7.2+ WP 5.9+ Updated Aug 13, 2025
block-editorgutenbergiframe
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Taro iframe Block Safe to Use in 2026?

Generally Safe

Score 100/100

Taro iframe Block has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 7mo ago
Risk Assessment

The "taro-iframe-block" v1.1.2 plugin exhibits a strong security posture based on the provided static analysis and vulnerability history. The absence of AJAX handlers, REST API routes, shortcodes, and cron events significantly limits the potential attack surface. Furthermore, the code demonstrates good practices by not utilizing dangerous functions, performing all SQL queries using prepared statements, and properly escaping all outputs. There are no file operations or external HTTP requests, and the plugin also avoids bundling external libraries. The taint analysis reveals no critical or high severity flows, indicating no immediate risks from data handling within the plugin.

The vulnerability history is also very positive, with zero recorded CVEs. This lack of historical vulnerabilities, combined with the strong static analysis results, suggests a well-developed and securely coded plugin. The plugin's core functionality seems to be implemented in a way that minimizes security risks. There are no explicit security concerns highlighted by the provided data, making it appear robust.

In conclusion, based on the provided data, "taro-iframe-block" v1.1.2 appears to be a secure plugin. Its limited attack surface, adherence to secure coding practices, and lack of any reported vulnerabilities paint a picture of a low-risk addition to a WordPress site. Users can likely install and use this plugin with confidence, as no specific security weaknesses were identified in the analysis.

Vulnerabilities
None known

Taro iframe Block Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Taro iframe Block Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
4 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped4 total outputs
Attack Surface

Taro iframe Block Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 4
filterload_script_textdomain_relative_pathtaro-iframe-block.php:43
actioninittaro-iframe-block.php:193
actionenqueue_block_editor_assetstaro-iframe-block.php:194
actionenqueue_block_assetstaro-iframe-block.php:195
Maintenance & Trust

Taro iframe Block Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedAug 13, 2025
PHP min version7.2
Downloads8K

Community Trust

Rating80/100
Number of ratings1
Active installs10
Developer Profile

Taro iframe Block Developer Profile

TAROSKY INC.

12 plugins · 680 total installs

91
trust score
Avg Security Score
96/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Taro iframe Block

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/taro-iframe-block/dist/js/block.js/wp-content/plugins/taro-iframe-block/dist/css/editor.css/wp-content/plugins/taro-iframe-block/dist/css/style.css
Script Paths
wp-content/plugins/taro-iframe-block/dist/js/block.js
Version Parameters
taro-iframe-block/dist/js/block.js?ver=taro-iframe-block/dist/css/editor.css?ver=taro-iframe-block/dist/css/style.css?ver=

HTML / DOM Fingerprints

CSS Classes
taro-iframe-block-wrappertaro-iframe-responsivetaro-iframe-responsive-spacer
Data Attributes
data-block="taro/iframe-block"
JS Globals
TaroIframeBlockEditor
FAQ

Frequently Asked Questions about Taro iframe Block