FOMO & Social Proof Notifications by TrustPulse – Best WordPress FOMO Plugin Security & Risk Analysis

wordpress.org/plugins/trustpulse-api

TrustPulse is a FOMO social proof plugin that leverages the power of social proof to instantly boost site conversions by up to 15%!

20K active installs v1.2.5 PHP 5.3+ WP 3.5.1+ Updated Aug 11, 2025
ecommercefomomembershipsocial-proofwoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is FOMO & Social Proof Notifications by TrustPulse – Best WordPress FOMO Plugin Safe to Use in 2026?

Generally Safe

Score 100/100

FOMO & Social Proof Notifications by TrustPulse – Best WordPress FOMO Plugin has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 7mo ago
Risk Assessment

The 'trustpulse-api' v1.2.5 plugin exhibits a generally good security posture with some notable concerns. The complete absence of known CVEs and a strong adherence to prepared statements for SQL queries are positive indicators. However, the presence of a single unprotected AJAX handler represents a significant attack vector that could be exploited if not properly secured. While the plugin performs a high number of output operations, the fact that only 53% are properly escaped suggests a potential for cross-site scripting (XSS) vulnerabilities, especially considering the lack of taint analysis data which limits a full understanding of data flow risks. The plugin's history of zero vulnerabilities is a strength, implying diligent development or a fortunate lack of discovery, but this should not lead to complacency given the identified unprotected entry point and the percentage of unescaped output.

Key Concerns

  • Unprotected AJAX handler
  • Low percentage of properly escaped output
Vulnerabilities
None known

FOMO & Social Proof Notifications by TrustPulse – Best WordPress FOMO Plugin Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

FOMO & Social Proof Notifications by TrustPulse – Best WordPress FOMO Plugin Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
2 prepared
Unescaped Output
47
52 escaped
Nonce Checks
3
Capability Checks
3
File Operations
0
External Requests
1
Bundled Libraries
0

SQL Query Safety

100% prepared2 total queries

Output Escaping

53% escaped99 total outputs
Attack Surface
1 unprotected

FOMO & Social Proof Notifications by TrustPulse – Best WordPress FOMO Plugin Attack Surface

Entry Points1
Unprotected1

AJAX Handlers 1

authwp_ajax_am_notification_dismissincludes\class-am-notification.php:68
WordPress Hooks 21
actioninitincludes\class-am-notification.php:65
actionadmin_initincludes\class-am-notification.php:66
actionadmin_noticesincludes\class-am-notification.php:67
actionadmin_initTPAPI\Actions.php:56
actionduplicator_after_activationTPAPI\Actions.php:60
actionadmin_noticesTPAPI\Actions.php:76
actionadmin_noticesTPAPI\Actions.php:83
actionadmin_menuTPAPI\AdminPage.php:67
actionadmin_menuTPAPI\AdminPage.php:68
actionin_admin_headerTPAPI\AdminPage.php:71
filteradmin_body_classTPAPI\AdminPage.php:72
actionadmin_enqueue_scriptsTPAPI\AdminPage.php:73
actionadmin_headTPAPI\AdminPage.php:74
actioninittrustpulse.php:199
actionwp_enqueue_scriptstrustpulse.php:212
actiongive_post_formtrustpulse.php:215
filterwoocommerce_rest_prepare_shop_order_objecttrustpulse.php:218
actionrest_api_inittrustpulse.php:220
actionadmin_inittrustpulse.php:235
filterscript_loader_tagtrustpulse.php:293
filterclean_urltrustpulse.php:295
Maintenance & Trust

FOMO & Social Proof Notifications by TrustPulse – Best WordPress FOMO Plugin Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedAug 11, 2025
PHP min version5.3
Downloads630K

Community Trust

Rating90/100
Number of ratings35
Active installs20K
Developer Profile

FOMO & Social Proof Notifications by TrustPulse – Best WordPress FOMO Plugin Developer Profile

Syed Balkhi

94 plugins · 23.5M total installs

73
trust score
Avg Security Score
91/100
Avg Patch Time
795 days
View full developer profile
Detection Fingerprints

How We Detect FOMO & Social Proof Notifications by TrustPulse – Best WordPress FOMO Plugin

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/trustpulse-api/assets/css/trustpulse-admin-styles.css/wp-content/plugins/trustpulse-api/assets/js/trustpulse-admin-script.js/wp-content/plugins/trustpulse-api/assets/js/trustpulse-admin-settings.js/wp-content/plugins/trustpulse-api/assets/js/trustpulse-admin-woocommerce-settings.js/wp-content/plugins/trustpulse-api/assets/js/trustpulse-admin-dashboard.js/wp-content/plugins/trustpulse-api/assets/js/trustpulse-admin-notices.js
Script Paths
https://a.trstplse.com/app/js/api.min.js
Version Parameters
trustpulse-api/assets/css/trustpulse-admin-styles.css?ver=trustpulse-api/assets/js/trustpulse-admin-script.js?ver=trustpulse-api/assets/js/trustpulse-admin-settings.js?ver=trustpulse-api/assets/js/trustpulse-admin-woocommerce-settings.js?ver=trustpulse-api/assets/js/trustpulse-admin-dashboard.js?ver=trustpulse-api/assets/js/trustpulse-admin-notices.js?ver=

HTML / DOM Fingerprints

CSS Classes
trustpulse-api-admin-menutrustpulse-api-admin-menu-icon
HTML Comments
TrustPulse API PluginAutoload the class files.Store base file locationMain plugin class.+25 more
Data Attributes
data-trustpulse-iddata-tp-id
JS Globals
trustpulseApiSettingstrustpulseApi
REST Endpoints
/wp-json/trustpulse-api/v1/settings/wp-json/trustpulse-api/v1/verification/wp-json/trustpulse-api/v1/status/wp-json/trustpulse-api/v1/admin
FAQ

Frequently Asked Questions about FOMO & Social Proof Notifications by TrustPulse – Best WordPress FOMO Plugin