
TokenLink SSO Login for Zendesk Security & Risk Analysis
wordpress.org/plugins/tokenlink-sso-login-for-zendeskProvides secure JWT-based single sign-on (SSO) between WordPress and Zendesk. No third-party plugins, no tracking, no bloat. Totally free.
Is TokenLink SSO Login for Zendesk Safe to Use in 2026?
Generally Safe
Score 100/100TokenLink SSO Login for Zendesk has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The tokenlink-sso-login-for-zendesk plugin version 1.0.9 exhibits a strong security posture based on the provided static analysis. The absence of dangerous functions, direct SQL queries, file operations, and external HTTP requests, coupled with 100% proper output escaping, indicates good development practices. The plugin also has no recorded vulnerabilities, which is a positive indicator.
However, a significant concern arises from the complete lack of capability checks and nonce checks across all identified entry points. While the static analysis did not reveal any directly exploitable vulnerabilities in this specific version, this absence of standard WordPress security measures creates a latent risk. If any of the entry points were to introduce vulnerabilities in future versions, they would be far more accessible and exploitable due to the missing authorization and integrity checks. The single shortcode, while not inherently dangerous, is an entry point that lacks any explicit security validation, which could be a future vector if not handled carefully in subsequent updates.
In conclusion, the plugin is currently secure due to its clean code and lack of historical vulnerabilities. However, the reliance on the absence of vulnerabilities rather than robust security controls like capability and nonce checks presents a notable weakness. This means the plugin is more susceptible to future attacks if new vulnerabilities are introduced. For a truly secure plugin, these fundamental checks should be implemented.
Key Concerns
- No capability checks implemented
- No nonce checks implemented
- Shortcode without security checks
TokenLink SSO Login for Zendesk Security Vulnerabilities
TokenLink SSO Login for Zendesk Code Analysis
Output Escaping
TokenLink SSO Login for Zendesk Attack Surface
Shortcodes 1
WordPress Hooks 2
Maintenance & Trust
TokenLink SSO Login for Zendesk Maintenance & Trust
Maintenance Signals
Community Trust
TokenLink SSO Login for Zendesk Alternatives
Twelve Legs Marketing SSO
twelve-legs-marketing-sso
Single sign-on plugin for WordPress that accepts RS256 JWTs from the TWL SSO application for secure authentication.
SAML Single Sign On – SSO Login
miniorange-saml-20-single-sign-on
SAML SSO (Single Sign On) for WordPress Login with Okta, Entra ID, Azure AD/B2C, G-Suite, Shibboleth, OneLogin, Keycloak, Salesforce [24/7 Support]
OAuth Single Sign On – SSO (OAuth Client)
miniorange-login-with-eve-online-google-facebook
WordPress SSO (Single Sign On) with Azure, Azure B2C, Cognito, Okta, Classlink, Discord, Clever, Keycloak, OAuth & OpenID Providers [24/7 SUPPORT].
SAML IDP (Identity Provider) – Login with Website Users
miniorange-wp-as-saml-idp
Single sign on (SSO) login with WordPress Users into any Service Provider like Tableau, Thinkific, Zoom, Moodle LMS, Canvas LMS, Absorb LMS, TalentLMS
Tim's Nextcloud SSO OAuth2
tims-nextcloud-sso-oauth2
Enables you to login to your WordPress site with your Nextcloud account with OAuth2
TokenLink SSO Login for Zendesk Developer Profile
1 plugin · 0 total installs
How We Detect TokenLink SSO Login for Zendesk
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/tokenlink-sso-login-for-zendesk/css/about-page.css/wp-content/plugins/tokenlink-sso-login-for-zendesk/css/tokenlink-settings.css/wp-content/plugins/tokenlink-sso-login-for-zendesk/js/settings-page.js/wp-content/plugins/tokenlink-sso-login-for-zendesk/js/settings-page.jstokenlink-sso-login-for-zendesk/css/about-page.css?ver=tokenlink-sso-login-for-zendesk/css/tokenlink-settings.css?ver=tokenlink-sso-login-for-zendesk/js/settings-page.js?ver=HTML / DOM Fingerprints
tokenlink-outer-tabstokenlink-outer-tab-linktokenlink-outer-tab-contenttokenlink-about-wraptokenlink-about-maintokenlink-about-sidebartokenlink-herotokenlink-version-badge+8 more<!-- Settings page under Settings → Zendesk SSO --><!-- Adds a Settings link to the plugin action links. --><!-- Renders the TokenLink Zendesk SSO settings page in the WordPress admin. --><!-- Renders the General settings tab content. -->+1 moredata-tabtokenlink_zendesk_sso_settings