
TDLM Title Case Security & Risk Analysis
wordpress.org/plugins/tdlm-title-caseChange your post title to correct title case or all lowercase or all uppercase.
Is TDLM Title Case Safe to Use in 2026?
Generally Safe
Score 85/100TDLM Title Case has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "tdlm-title-case" v1.0.1 plugin exhibits a strong adherence to secure coding practices regarding its attack surface and data handling. The absence of any AJAX handlers, REST API routes, shortcodes, or cron events significantly minimizes potential entry points for attackers. Furthermore, the fact that all SQL queries utilize prepared statements is a commendable practice that prevents common SQL injection vulnerabilities. The lack of external HTTP requests and file operations also reduces exposure to network-based and filesystem-based attacks.
However, a significant concern arises from the complete lack of output escaping (0% properly escaped). This means any data processed and displayed by the plugin is vulnerable to Cross-Site Scripting (XSS) attacks, as user-supplied input or processed data is not sanitized before being rendered in the browser. The absence of nonce and capability checks across all identified code signals also indicates a potential weakness if any future functionality were to be added that required authorization or protection against CSRF attacks.
The plugin's vulnerability history is clean, with no recorded CVEs. This, coupled with the generally secure code practices observed, suggests a generally well-maintained and potentially low-risk plugin. However, the critical flaw in output escaping overshadows this positive history. The plugin's strengths lie in its minimal attack surface and secure database interaction, but its weakness in output sanitization poses a substantial XSS risk that needs immediate attention.
Key Concerns
- Output escaping is not implemented
- No nonce checks found
- No capability checks found
TDLM Title Case Security Vulnerabilities
TDLM Title Case Release Timeline
TDLM Title Case Code Analysis
Output Escaping
TDLM Title Case Attack Surface
WordPress Hooks 6
Maintenance & Trust
TDLM Title Case Maintenance & Trust
Maintenance Signals
Community Trust
TDLM Title Case Alternatives
Capitalize My Title WordPress Plugin
capitalize-my-title
This plugin allows you to automatically capitalize your titles in Title Case and sentence case with .
WP Title Case
wp-title-case
Automatically applied title case rules to WordPress titles. This plugin automatically updates Page and Post titles to follow title casing rules.
Auto Title Case
auto-title-case
Automatically converts post and image titles to title case.
FriendlyCase
friendlycase
Reformat titles from 'ALL CAPS' to 'All Caps' and enable friendly, word capitalization in posts, pages and more.
Product Title Capitalize
product-title-capitalize
Effortlessly capitalize product titles on single product pages in your WooCommerce store for a polished and professional appearance.
TDLM Title Case Developer Profile
1 plugin · 10 total installs
How We Detect TDLM Title Case
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
tdlm-title-case/tdlm-title-case.php?ver=1.0.1HTML / DOM Fingerprints
button-tdlm-change-case