Team Showcase – Team Members & Staff Profiles Showcase Security & Risk Analysis

wordpress.org/plugins/team-showcase-awesome

Create and display team members and staff profiles showcase. Easy to create. Easy to customize

200 active installs v1.0.4 PHP 5.6+ WP 5.4+ Updated Jun 25, 2024
employeesprofilesstaffteam-showcaseteams
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Team Showcase – Team Members & Staff Profiles Showcase Safe to Use in 2026?

Generally Safe

Score 92/100

Team Showcase – Team Members & Staff Profiles Showcase has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The "team-showcase-awesome" v1.0.4 plugin exhibits a strong security posture in several key areas, indicating good development practices. It impressively reports zero known CVEs, no dangerous functions, and all SQL queries are handled with prepared statements. Furthermore, the absence of file operations and external HTTP requests reduces the attack surface. The static analysis shows a high percentage of properly escaped output, which is a positive sign for preventing cross-site scripting vulnerabilities.

However, there are areas that warrant attention. The plugin has a single shortcode, which represents an entry point into the application. While the static analysis reports no unprotected entry points, the lack of explicit mention of capability checks or nonce checks on this shortcode is a potential concern. If this shortcode's functionality is sensitive or processes user-supplied data without proper authorization and input validation, it could be a vector for vulnerabilities. The taint analysis showing zero flows analyzed is also a weakness, as it means this powerful analysis technique was not effectively utilized, potentially leaving vulnerabilities undetected.

Given the plugin's clean vulnerability history, it's plausible that the current implementation is robust. However, the lack of comprehensive security checks on the shortcode and the underutilization of taint analysis suggest that while the current version might be safe, future updates or changes could introduce risks if these practices are not consistently maintained. The overall assessment is that the plugin is generally secure but has potential blind spots that should be addressed.

Key Concerns

  • Shortcode without explicit auth/nonce checks
  • Taint analysis not effectively utilized
Vulnerabilities
None known

Team Showcase – Team Members & Staff Profiles Showcase Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Team Showcase – Team Members & Staff Profiles Showcase Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
9
129 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

93% escaped138 total outputs
Attack Surface

Team Showcase – Team Members & Staff Profiles Showcase Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[team_awesome] team-awesome.php:211
WordPress Hooks 16
actionadmin_menuadmin\class-team-awesome-admin.php:55
actionplugins_loadedincludes\class-team-awesome.php:142
actionadmin_enqueue_scriptsincludes\class-team-awesome.php:157
actionadmin_enqueue_scriptsincludes\class-team-awesome.php:158
actionwp_enqueue_scriptsincludes\class-team-awesome.php:173
actionwp_enqueue_scriptsincludes\class-team-awesome.php:174
actionelementor/initincludes\element-helper.php:14
actioninitteam-awesome-post-type.php:7
actioncarbon_fields_register_fieldsteam-awesome-post-type.php:52
actionelementor/widgets/widgets_registeredteam-awesome.php:85
filtermanage_team-awesome_posts_columnsteam-awesome.php:105
actionmanage_team-awesome_posts_custom_columnteam-awesome.php:109
filtersingle_templateteam-awesome.php:113
actionafter_setup_themeteam-awesome.php:124
actionelementor/preview/enqueue_stylesteam-awesome.php:130
actionwp_headteam-awesome.php:232
Maintenance & Trust

Team Showcase – Team Members & Staff Profiles Showcase Maintenance & Trust

Maintenance Signals

WordPress version tested6.5.8
Last updatedJun 25, 2024
PHP min version5.6
Downloads5K

Community Trust

Rating0/100
Number of ratings0
Active installs200
Developer Profile

Team Showcase – Team Members & Staff Profiles Showcase Developer Profile

themesawesome

11 plugins · 3K total installs

86
trust score
Avg Security Score
89/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Team Showcase – Team Members & Staff Profiles Showcase

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/team-showcase-awesome/public/css/swiper.css/wp-content/plugins/team-showcase-awesome/public/css/hovers.css/wp-content/plugins/team-showcase-awesome/public/css/fontawesome.min.css/wp-content/plugins/team-showcase-awesome/public/css/thaw-flexgrid.css/wp-content/plugins/team-showcase-awesome/public/css/team-awesome-public.css/wp-content/plugins/team-showcase-awesome/public/js/stopExecution.js
Script Paths
public/js/stopExecution.js
Version Parameters
team-awesome-public.css?ver=1.0.4

HTML / DOM Fingerprints

CSS Classes
team-awesome-public
Data Attributes
team_style_choice
JS Globals
TEAM_AWESOME_VERSIONTEAM_AWESOMETEAM_AWESOME_BASENAMETEAM_AWESOME_NAMETEAM_AWESOME_DIR
Shortcode Output
[team_awesome id="
FAQ

Frequently Asked Questions about Team Showcase – Team Members & Staff Profiles Showcase