Torknado Page Excerpt Security & Risk Analysis

wordpress.org/plugins/torknado-page-excerpt

Pages, like Posts, can have an Excerpt field to override the automatic "first 55 words" excerpt. However, many themes don't enable edit …

30 active installs v1.0 PHP 7.4+ WP 5.0+ Updated Feb 19, 2022
excerptsearch
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Torknado Page Excerpt Safe to Use in 2026?

Generally Safe

Score 85/100

Torknado Page Excerpt has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4yr ago
Risk Assessment

The 'torknado-page-excerpt' plugin, version 1.0, presents a seemingly secure posture based on the static analysis results. There are no identified entry points such as AJAX handlers, REST API routes, shortcodes, or cron events. Crucially, the analysis indicates a complete absence of dangerous functions, raw SQL queries, unescaped output, file operations, external HTTP requests, nonce checks, and capability checks. Taint analysis also revealed no vulnerabilities. The plugin's vulnerability history is clean, with no recorded CVEs of any severity, suggesting a lack of historical security issues.

While the absence of identified vulnerabilities and adherence to good coding practices like prepared statements and output escaping are commendable, the complete lack of any entry points raises a question about the plugin's actual functionality. If the plugin performs no actions or has no user-facing elements, then the analysis would naturally yield zero findings. However, if the plugin is intended to have features, the lack of any security checks (like nonces or capability checks) on those potential features would be a significant oversight. The current data suggests a strong security posture due to the absence of identifiable risks, but the minimal attack surface and lack of specific security control implementations could be areas for concern if the plugin is more active than the analysis suggests.

In conclusion, based purely on the provided static analysis and vulnerability history, 'torknado-page-excerpt' v1.0 appears to be highly secure. The code signals indicate best practices are followed where applicable, and there is no historical data to suggest otherwise. However, the minimal attack surface and the absence of explicit security checks (which were not deemed necessary due to zero identified entry points) warrant a cautious interpretation. If the plugin offers any form of interaction or data handling not captured in this analysis, then the lack of comprehensive security controls could become a risk.

Vulnerabilities
None known

Torknado Page Excerpt Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Torknado Page Excerpt Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

Torknado Page Excerpt Attack Surface

Entry Points0
Unprotected0
Maintenance & Trust

Torknado Page Excerpt Maintenance & Trust

Maintenance Signals

WordPress version tested5.9.13
Last updatedFeb 19, 2022
PHP min version7.4
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs30
Developer Profile

Torknado Page Excerpt Developer Profile

Tyler Tork

2 plugins · 5K total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Torknado Page Excerpt

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Torknado Page Excerpt