
Time Since Shortcode Security & Risk Analysis
wordpress.org/plugins/time-since-shortcodeThis shortcode displays the years since the date provided.
Is Time Since Shortcode Safe to Use in 2026?
Generally Safe
Score 85/100Time Since Shortcode has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "time-since-shortcode" v1.0 plugin exhibits a strong security posture based on the provided static analysis. It demonstrates excellent adherence to secure coding practices, with no dangerous functions, SQL queries utilizing prepared statements, and all outputs properly escaped. The absence of file operations and external HTTP requests further reduces the potential attack surface. Crucially, there are no identified taint flows, indicating that user-supplied data is not being handled in a way that could lead to code injection or other vulnerabilities.
The plugin's vulnerability history is also pristine, with no recorded CVEs, which is a positive indicator of its security. The minimal attack surface, consisting of a single shortcode with no explicit authentication checks, is noted. However, the lack of nonce and capability checks on this shortcode, while not leading to immediate exploitable vulnerabilities in this static analysis, represents a potential area for enhancement if the shortcode's functionality were to become more sensitive or handle user-controlled data in the future.
Overall, this plugin appears to be very secure out-of-the-box. Its strengths lie in its clean code and lack of known vulnerabilities. The primary area for consideration is the potential for future risks if the shortcode's functionality were to evolve, given the absence of robust input validation and authorization mechanisms on its single entry point. For its current version and functionality, the security risks are minimal.
Key Concerns
- Shortcode without nonce/capability checks
Time Since Shortcode Security Vulnerabilities
Time Since Shortcode Code Analysis
Time Since Shortcode Attack Surface
Shortcodes 1
Maintenance & Trust
Time Since Shortcode Maintenance & Trust
Maintenance Signals
Community Trust
Time Since Shortcode Alternatives
Duplicate Page
duplicate-page
Duplicate Posts, Pages and Custom Posts easily using single click
Post Types Order
post-types-order
Sort posts and custom post type objects using a drag-and-drop, sortable JavaScript AJAX interface, or through the default WordPress dashboard
Intuitive Custom Post Order
intuitive-custom-post-order
Intuitively reorder Posts, Pages, Custom Post Types, Taxonomies, and Sites with a simple drag-and-drop interface.
WP Shortcodes Plugin — Shortcodes Ultimate
shortcodes-ultimate
A comprehensive collection of visual components for your site
Duplicate Post
copy-delete-posts
Duplicate post
Time Since Shortcode Developer Profile
4 plugins · 150 total installs
How We Detect Time Since Shortcode
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
time-since-shortcode/timesince.php?ver=1.0HTML / DOM Fingerprints
<br /><br />************No date provided************<br /><br />