
VRTs – Visual Regression Tests Security & Risk Analysis
wordpress.org/plugins/visual-regression-testsKeep your WordPress websites bug-free with automatic screenshots, daily comparisons, and instant tests after WordPress and plugin updates.
Is VRTs – Visual Regression Tests Safe to Use in 2026?
Generally Safe
Score 100/100VRTs – Visual Regression Tests has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'visual-regression-tests' plugin v2.0.5 exhibits a generally strong security posture, with excellent practices observed in output escaping and the use of prepared statements for SQL queries. The plugin also has a clean vulnerability history, indicating a commitment to security over time. However, the presence of two AJAX handlers without authentication checks presents a significant concern. While the total attack surface is relatively small, these unprotected entry points could be exploited by unauthenticated users to trigger unintended actions within the plugin, potentially leading to unauthorized functionality or information disclosure if the specific actions performed by these handlers are sensitive.
The taint analysis shows no critical or high severity flows, which is highly positive. The plugin also avoids dangerous functions and external HTTP requests that are often associated with security risks. The limited number of file operations is also a good sign. Despite the generally good security indicators, the unprotected AJAX handlers are a specific area that requires attention and remediation to ensure a robust security profile.
Key Concerns
- Unprotected AJAX handlers
VRTs – Visual Regression Tests Security Vulnerabilities
VRTs – Visual Regression Tests Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
VRTs – Visual Regression Tests Attack Surface
AJAX Handlers 4
WordPress Hooks 64
Scheduled Events 5
Maintenance & Trust
VRTs – Visual Regression Tests Maintenance & Trust
Maintenance Signals
Community Trust
VRTs – Visual Regression Tests Alternatives
Diffy Visual Regression Testing
diffy
Diffy helps to verify plugin updates by taking screenshots of your site before and after update and comparing them. Ideally you expect zero changes a …
Page Builder by SiteOrigin
siteorigin-panels
Build responsive page layouts using the widgets you know and love using this simple drag and drop page builder.
Black Studio TinyMCE Widget
black-studio-tinymce-widget
The visual editor widget for WordPress.
SiteOrigin CSS
so-css
Powerful, simple CSS editing for WordPress. Visual controls & real-time previews for effortless site customization.
Hotjar
hotjar
The fast & visual way to understand your users.
VRTs – Visual Regression Tests Developer Profile
2 plugins · 3K total installs
How We Detect VRTs – Visual Regression Tests
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/visual-regression-tests/build/admin.css/wp-content/plugins/visual-regression-tests/build/admin.js/wp-content/plugins/visual-regression-tests/build/editor.css/wp-content/plugins/visual-regression-tests/build/editor.jsvisual-regression-tests/build/admin.asset.phpvisual-regression-tests/build/editor.asset.phpHTML / DOM Fingerprints
vrts-admin-noticeYou need to run `npm start` or `npm run build`.data-vrts-test-iddata-vrts-test-statusdata-vrts-hide-css-selectorsvrts_admin_varsvrts_editor_vars/wp-json/vrts/v1