Templatic-Google-AMP Security & Risk Analysis

wordpress.org/plugins/templatic-google-amp

To work with Templatic AMP plugin just type 'amp' keyword after any archive, category, details or any page URL it will display AMP version o …

10 active installs v0.0.2 PHP + WP 3.5+ Updated Oct 27, 2018
accelerated-mobile-pagesampgoogle-amptemplatic
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Templatic-Google-AMP Safe to Use in 2026?

Generally Safe

Score 85/100

Templatic-Google-AMP has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 7yr ago
Risk Assessment

The "templatic-google-amp" plugin v0.0.2 exhibits a generally positive security posture based on the provided static analysis. The absence of known vulnerabilities, dangerous functions, and direct SQL queries is commendable. Furthermore, the plugin demonstrates good practices by utilizing prepared statements for its SQL queries. However, a significant concern arises from the taint analysis, which identified two flows with unsanitized paths. While these did not escalate to critical or high severity, they represent potential avenues for exploitation if an attacker can control user input that feeds into these paths. The lack of nonces and capability checks on any identified entry points, coupled with a low percentage of properly escaped output, also present potential weaknesses. The limited attack surface is a mitigating factor, but the presence of unsanitized flows and weak output handling warrants attention.

Key Concerns

  • Unsanitized paths in taint analysis
  • Low output escaping rate
  • No nonce checks
  • No capability checks
Vulnerabilities
None known

Templatic-Google-AMP Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Templatic-Google-AMP Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
19
10 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

34% escaped29 total outputs
Data Flows
2 unsanitized

Data Flow Analysis

2 flows2 with unsanitized paths
tmpl_amp_frontend_add_canonical (templatic-amp.php:209)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Templatic-Google-AMP Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 19
actionadmin_enqueue_scriptsincludes\core\admin-functions.php:3
actionadmin_menuincludes\core\admin-functions.php:13
actiontmpl_amp_custom_styleincludes\core\functions.php:10
actiontmpl_amp_custom_scriptsincludes\core\functions.php:47
actiontmpl_amp_custom_headerincludes\core\functions.php:59
actiontmpl_amp_include_amp_iframe_scriptincludes\core\functions.php:68
actiontmpl_amp_custom_footerincludes\core\functions.php:77
filterthe_contentincludes\core\handler\common_filter.php:24
filtertheme_rootincludes\core\tmpl-amp-render.php:22
filtertheme_root_uriincludes\core\tmpl-amp-render.php:23
filtertemplateincludes\core\tmpl-amp-render.php:24
actioninittemplatic-amp.php:74
filterrewrite_rules_arraytemplatic-amp.php:85
actionadmin_inittemplatic-amp.php:90
filterpost_type_linktemplatic-amp.php:148
filterpage_linktemplatic-amp.php:149
filterpost_linktemplatic-amp.php:150
filterterm_linktemplatic-amp.php:151
actionwp_headtemplatic-amp.php:207
Maintenance & Trust

Templatic-Google-AMP Maintenance & Trust

Maintenance Signals

WordPress version tested5.0.25
Last updatedOct 27, 2018
PHP min version
Downloads6K

Community Trust

Rating100/100
Number of ratings1
Active installs10
Developer Profile

Templatic-Google-AMP Developer Profile

templatic1

6 plugins · 2K total installs

86
trust score
Avg Security Score
88/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Templatic-Google-AMP

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/templatic-google-amp/includes/core/admin-functions.php/wp-content/plugins/templatic-google-amp/includes/core/functions.php/wp-content/plugins/templatic-google-amp/includes/core/tmpl-amp-core.php

HTML / DOM Fingerprints

REST Endpoints
/wp-json/amp/v1/posts
FAQ

Frequently Asked Questions about Templatic-Google-AMP