
User Taxonomy & Directory Security & Risk Analysis
wordpress.org/plugins/user-tagsUser Taxonomy & Directory helps you effortlessly manage user taxonomies on your WordPress website. With a user-friendly interface, it simplifies t …
Is User Taxonomy & Directory Safe to Use in 2026?
Generally Safe
Score 85/100User Taxonomy & Directory has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "user-tags" v2.0 plugin exhibits a generally strong security posture based on the provided static analysis and vulnerability history. The plugin has a minimal attack surface, with only one AJAX handler and no exposed REST API routes, shortcodes, or cron events. Crucially, this single entry point has a nonce check, indicating good practice in preventing CSRF attacks. The code analysis also reveals responsible use of SQL queries, with 100% utilizing prepared statements and a high percentage of output escaping, mitigating common injection and XSS risks. The absence of any known CVEs, historical vulnerabilities, or critical taint flows further reinforces its secure design.
While the plugin's current state appears secure, the analysis points to potential areas for continued vigilance. Although the single AJAX handler has a nonce check, the fact that it's the only entry point means any potential future vulnerabilities introduced here would be directly accessible. The 91% output escaping rate, while high, still leaves a small margin for potential XSS if the unescaped outputs are exploitable. Overall, "user-tags" v2.0 demonstrates a commitment to secure coding practices. The lack of historical issues and a robust static analysis suggests a well-maintained plugin, making it a relatively low-risk option for WordPress users. However, as with any software, ongoing monitoring and updates are always recommended to maintain this strong security standing.
User Taxonomy & Directory Security Vulnerabilities
User Taxonomy & Directory Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
User Taxonomy & Directory Attack Surface
AJAX Handlers 1
WordPress Hooks 20
Maintenance & Trust
User Taxonomy & Directory Maintenance & Trust
Maintenance Signals
Community Trust
User Taxonomy & Directory Alternatives
Attachment Taxonomies
attachment-taxonomies
This plugin adds categories and tags to the WordPress media library - lightweight and developer-friendly.
WP Required Taxonomies – Categories and Tags Mandatory
required-taxonomies
Force users to select a taxonomy term when publishing posts. For example, make category or tags required
TagPages
tagpages
Adds post-tags functionality for pages.
Simple Taxonomy Refreshed
simple-taxonomy-refreshed
This plugin provides a no-code facility to manage your taxonomies - either by defining your own or by adding additional function to existing ones.
Term Taxonomy Converter
term-taxonomy-converter
Copy or convert terms between taxonomies.
User Taxonomy & Directory Developer Profile
2 plugins · 60 total installs
How We Detect User Taxonomy & Directory
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/user-tags/assets/css/block.min.css/wp-content/plugins/user-tags/assets/css/main.min.css/wp-content/plugins/user-tags/assets/js/user_taxonomy.js/wp-content/plugins/user-tags/assets/js/user_taxonomy.jsuser-tags/assets/css/block.min.css?ver=user-tags/assets/css/main.min.css?ver=user-tags/assets/js/user_taxonomy.js?ver=HTML / DOM Fingerprints
wp-block-user-tags-user-directorydata-block="user-tags/user-directory"wp_ut