
LAPDI Authors Note Security & Risk Analysis
wordpress.org/plugins/tsp-authors-noteAuthor's Note allows you to add author's notes and after-thoughts to your blog posts and pages.
Is LAPDI Authors Note Safe to Use in 2026?
Generally Safe
Score 85/100LAPDI Authors Note has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "tsp-authors-note" plugin, version 1.0.4, demonstrates a generally good security posture based on the provided static analysis. The complete absence of AJAX handlers, REST API routes, shortcodes, and cron events significantly limits the potential attack surface. Furthermore, the reported lack of dangerous functions, SQL queries without prepared statements, file operations, and external HTTP requests are all positive indicators. The presence of a nonce check is also a good security practice.
However, a critical concern arises from the output escaping analysis. With 100% of outputs not being properly escaped, this plugin is highly susceptible to Cross-Site Scripting (XSS) vulnerabilities. Any user-supplied data that is displayed on the frontend without proper sanitization can be exploited by attackers to inject malicious scripts. While the taint analysis shows no unsanitized flows, this is likely due to the limited attack surface and could be misleading if more complex interactions were present. The lack of recorded vulnerabilities in its history might suggest a low profile or a recent security oversight.
Key Concerns
- Output escaping is not properly handled
LAPDI Authors Note Security Vulnerabilities
LAPDI Authors Note Code Analysis
Output Escaping
LAPDI Authors Note Attack Surface
WordPress Hooks 1
Maintenance & Trust
LAPDI Authors Note Maintenance & Trust
Maintenance Signals
Community Trust
LAPDI Authors Note Alternatives
Private Notes
private-notes
Lets an author keep private notes with a post.
Edit Author Slug
edit-author-slug
Allows an admin (or capable user) to edit the author slug of a user, and change the author base.
WP Meta and Date Remover
wp-meta-and-date-remover
Remove meta author and date information from posts and pages. Hide from Humans and Search engines.SEO friendly and most advance plugin.
Simple Author Box
simple-author-box
Add a responsive author box or guest author box with social icons to any post. Great author box for any site!
Print Invoice & Delivery Notes for WooCommerce
woocommerce-delivery-notes
Create and print PDF invoices, delivery notes and receipts for your WooCommerce orders. Choose your document format from multiple templates.
LAPDI Authors Note Developer Profile
7 plugins · 220 total installs
How We Detect LAPDI Authors Note
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/tsp-authors-note/tsp-authors-note.csstsp-authors-note.css?ver=HTML / DOM Fingerprints
name="tsp-authors-note"id="tsp-authors-note"name="tsp-authors-note_nonce_name"name="tsp-authors-note_form_submit"TSP_Easy_Dev_Options_Authors_NoteTSP_Easy_Dev_Widget_Authors_Note