
TWG AMP Related Posts Security & Risk Analysis
wordpress.org/plugins/twg-amp-related-postsDisplay related posts on AMP pages with images and titles. Allows customization of the number of related posts, sorting order, and thumbnail display.
Is TWG AMP Related Posts Safe to Use in 2026?
Generally Safe
Score 92/100TWG AMP Related Posts has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "twg-amp-related-posts" v1.3 plugin exhibits a strong security posture based on the provided static analysis and vulnerability history. The absence of any identified AJAX handlers, REST API routes, shortcodes, or cron events significantly limits its attack surface. Furthermore, the code shows good practices with no dangerous functions, all SQL queries using prepared statements, and a high percentage of output escaping. The lack of file operations and external HTTP requests further reduces potential risks.
The vulnerability history is equally reassuring, with zero known CVEs recorded, indicating a lack of previously discovered vulnerabilities. This, combined with the clean static analysis, suggests the developers have likely followed secure coding principles. However, the complete absence of nonce checks and capability checks, while not directly exploitable in the current configuration due to the zero attack surface, represents a potential weakness if the plugin were to be expanded in the future without these security measures.
In conclusion, the plugin is currently assessed as very low risk. Its strengths lie in its minimal attack surface and robust coding practices for the existing components. The primary concern, though not currently exploitable, is the absence of authentication checks (nonces, capabilities) which would be crucial for any future development that introduces user-facing entry points.
Key Concerns
- No nonce checks detected
- No capability checks detected
TWG AMP Related Posts Security Vulnerabilities
TWG AMP Related Posts Release Timeline
TWG AMP Related Posts Code Analysis
Output Escaping
TWG AMP Related Posts Attack Surface
WordPress Hooks 4
Maintenance & Trust
TWG AMP Related Posts Maintenance & Trust
Maintenance Signals
Community Trust
TWG AMP Related Posts Alternatives
reGenerate Thumbnails Advanced
regenerate-thumbnails-advanced
Regenerate thumbnails quickly and easily, including forced regeneration; very useful when changing a theme or adding new thumbnail sizes.
Related Posts Thumbnails Plugin for WordPress
related-posts-thumbnails
Related Posts by WPBrigade is The Best Customizable plugin, that nicely displays related posts thumbnails under the post.
Disable Bloat for WordPress & WooCommerce
disable-dashboard-for-woocommerce
All-in-One solution to speed up your WordPress & WooCommerce. Remove unnecessary features and make your site faster and cleaner.
Related Posts by Taxonomy
related-posts-by-taxonomy
Display a list of related posts on your site based on the most terms in common. Supports thumbnails, shortcodes, a widget and more.
YITH Custom Login
yith-custom-login
YITH Custom Login give you the ability to customize the login page of wordpress.
TWG AMP Related Posts Developer Profile
3 plugins · 80 total installs
How We Detect TWG AMP Related Posts
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/twg-amp-related-posts/twg-amp-related-posts.phpHTML / DOM Fingerprints
twg-amp-related-postsrelated-post-itemrelated-post-imagerelated-post-titleamp-custom<div class="twg-amp-related-posts"><h3>Related Posts</h3><div class="related-post-item"><div class="related-post-image">