
User Social Profiles Security & Risk Analysis
wordpress.org/plugins/user-social-profilesPlugin adds social fields to user profile in admin panel (Dashboard > Users).
Is User Social Profiles Safe to Use in 2026?
Generally Safe
Score 85/100User Social Profiles has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
Based on the provided static analysis and vulnerability history, the 'user-social-profiles' plugin v0.1.5 currently exhibits a strong security posture. The static analysis reveals no identified attack surface points such as AJAX handlers, REST API routes, shortcodes, or cron events that are accessible to unauthorized users. Furthermore, the code signals indicate robust security practices, with no dangerous functions, all SQL queries utilizing prepared statements, and all output properly escaped. There are also no file operations, external HTTP requests, nonce checks, or capability checks detected, suggesting a minimal and potentially over-sanitized codebase in terms of interaction points.
The taint analysis also yields no concerning findings, with zero flows analyzed or flows with unsanitized paths, indicating no apparent vulnerabilities related to data manipulation or injection. The vulnerability history is equally positive, showing no known CVEs, unpatched vulnerabilities, or a history of common vulnerability types. This suggests the plugin has either been very secure historically or has not been subjected to extensive security auditing or real-world exploitation.
While the absence of identified vulnerabilities and a clean static analysis are positive indicators, the near-zero attack surface and lack of certain security mechanisms like capability checks or nonce checks on potential interaction points (if they existed) could also indicate a very limited functionality or an incomplete analysis. However, given the data, the plugin appears to be exceptionally secure. The primary strength is the absence of any detected security flaws. A potential weakness, though not directly a security flaw based on the data, is the lack of explicit security checks like capability checks, which might be a concern if the plugin's functionality were to expand in the future without proper security implementations. Overall, for its current reported state, the plugin presents a very low risk.
User Social Profiles Security Vulnerabilities
User Social Profiles Code Analysis
User Social Profiles Attack Surface
WordPress Hooks 1
Maintenance & Trust
User Social Profiles Maintenance & Trust
Maintenance Signals
Community Trust
User Social Profiles Alternatives
Simple Social Icons
simple-social-icons
This plugin provides two ways to display social icons: a traditional widget (available on all WordPress versions) and block variations for the core So …
Lightweight Social Icons
lightweight-social-icons
Looking to add simple social icons to your widget areas? Choose the size and color of your icons, and then choose from 47 different social profiles.
Socials Ignited
socials-ignited
The Socials Ignited plugin gives you a widget, allowing you to display and link icons on your website of more than 50 social networks.
More Widgets
more-widgets
The More Widgets plugin adds extra widgets to use with your widgetized areas within your WordPress site. Use this plugin instead of built-in theme wid …
SocialWiggle
social-wiggle
Display your social network profiles using catchy looking Metro tiles that wiggle to catch your visitor's attention
User Social Profiles Developer Profile
8 plugins · 1K total installs
How We Detect User Social Profiles
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
user-social-profiles/style.css?ver=user-social-profiles/script.js?ver=