Team Member Block Security & Risk Analysis

wordpress.org/plugins/team-member-block

Present your team members beautifully & gain instant credibility.

1K active installs v1.2.1 PHP + WP 5.6+ Updated Jul 29, 2024
blockblockseditorgutenbergteam
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Team Member Block Safe to Use in 2026?

Generally Safe

Score 92/100

Team Member Block has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

Based on the provided static analysis and vulnerability history, the 'team-member-block' plugin v1.2.1 exhibits a strong security posture. The absence of any identified AJAX handlers, REST API routes, shortcodes, cron events, or dangerous functions, coupled with the fact that all SQL queries use prepared statements and all output is properly escaped, indicates excellent secure coding practices. The plugin also demonstrates a lack of file operations and external HTTP requests, further reducing its attack surface. Furthermore, the vulnerability history is clean, with no recorded CVEs, suggesting a consistent commitment to security. The presence of one capability check is a positive sign of access control being considered, although the lack of specific details about its implementation prevents a deeper analysis.

While the static analysis shows no critical security flaws, the complete lack of analyzed taint flows (0 flows analyzed) is a potential area for concern. This could mean either the analysis tool was not configured to cover these aspects or the plugin's code is very simple. The absence of any nonce checks on the identified entry points, though the entry points themselves are zero, could become a weakness if new entry points were introduced without proper security measures. However, with the current attack surface being zero, these are theoretical risks rather than immediate threats. The plugin's strengths lie in its minimal attack surface and secure handling of data within its current scope. The absence of vulnerabilities in its history is a significant positive indicator of its reliability. Overall, 'team-member-block' v1.2.1 appears to be a very secure plugin in its current version, with its main weakness being the lack of comprehensive taint flow analysis in the provided report.

Key Concerns

  • No taint flow analysis performed
  • No nonce checks on identified entry points
Vulnerabilities
None known

Team Member Block Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Team Member Block Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

Team Member Block Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 5
filterrender_blockincludes\font-loader.php:31
actionwp_footerincludes\font-loader.php:33
actionadmin_enqueue_scriptsincludes\helpers.php:29
filterinitincludes\post-meta.php:12
actioninitteam-member-block.php:125
Maintenance & Trust

Team Member Block Maintenance & Trust

Maintenance Signals

WordPress version tested6.6.5
Last updatedJul 29, 2024
PHP min version
Downloads28K

Community Trust

Rating100/100
Number of ratings1
Active installs1K
Developer Profile

Team Member Block Developer Profile

WPDeveloper

46 plugins · 4.0M total installs

73
trust score
Avg Security Score
91/100
Avg Patch Time
163 days
View full developer profile
Detection Fingerprints

How We Detect Team Member Block

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/team-member-block/dist/index.js/wp-content/plugins/team-member-block/assets/js/eb-animation-load.js/wp-content/plugins/team-member-block/assets/css/animate.min.css/wp-content/plugins/team-member-block/assets/css/fontawesome/css/all.min.css/wp-content/plugins/team-member-block/assets/css/hover-min.css/wp-content/plugins/team-member-block/dist/style.css
Script Paths
/wp-content/plugins/team-member-block/dist/index.js/wp-content/plugins/team-member-block/assets/js/eb-animation-load.js
Version Parameters
ver=1.2.1team-member-block/dist/index.asset.php?ver=team-member-block/dist/index.js?ver=team-member-block/assets/js/eb-animation-load.js?ver=1.2.1team-member-block/assets/css/animate.min.css?ver=1.2.1team-member-block/assets/css/fontawesome/css/all.min.css?ver=1.2.1team-member-block/assets/css/hover-min.css?ver=1.2.1team-member-block/dist/style.css?ver=

HTML / DOM Fingerprints

CSS Classes
essential-blocks-team-membereb-team-member-wrapper
HTML Comments
<!-- wp:essential-blocks/team-member --><!-- /wp:essential-blocks/team-member -->
Data Attributes
data-block="team-member-block/team-member-block"
JS Globals
window.EB_Team_Member_Font_Loader
FAQ

Frequently Asked Questions about Team Member Block