WP Church Center: RSS Security & Risk Analysis

wordpress.org/plugins/wp-church-center-rss-syndication

This plugin is an addon for WP Church Center. It adds an 'RSS' card which allows churches to republish the content from any RSS feed.

10 active installs v1.0.0 PHP + WP 4.7+ Updated Mar 16, 2020
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is WP Church Center: RSS Safe to Use in 2026?

Generally Safe

Score 85/100

WP Church Center: RSS has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 6yr ago
Risk Assessment

The static analysis of wp-church-center-rss-syndication v1.0.0 reveals a generally secure coding practice. The absence of AJAX handlers, REST API routes, shortcodes, cron events, and file operations significantly limits the plugin's attack surface. Furthermore, the code demonstrates good security hygiene with 100% of SQL queries using prepared statements and all output being properly escaped. The lack of dangerous functions and external HTTP requests further bolsters its security profile.

The vulnerability history also indicates a positive trend, with no recorded CVEs. This suggests that the plugin has either not been a target for extensive security research or has maintained a robust security posture over time. The absence of any common vulnerability types further reinforces this. However, it's important to note the complete absence of capability checks and nonce checks. While the current attack surface is zero, if functionality were to be added in future versions, these would be critical security controls to implement.

In conclusion, wp-church-center-rss-syndication v1.0.0 currently presents a very low security risk due to its minimal attack surface and secure coding practices. The lack of historical vulnerabilities is a strong positive indicator. The primary area for potential future concern would be the implementation of authentication and authorization mechanisms should the plugin evolve to include more interactive features.

Vulnerabilities
None known

WP Church Center: RSS Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

WP Church Center: RSS Release Timeline

v1.0
Code Analysis
Analyzed Mar 17, 2026

WP Church Center: RSS Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
8 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped8 total outputs
Attack Surface

WP Church Center: RSS Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 5
filterwpcc_card_contentcard.php:130
filteracf/load_field/name=wpcc_card_typewpcc-rss.php:33
actionacf/initwpcc-rss.php:36
actionwp_enqueue_scriptswpcc-rss.php:150
actionwp_enqueue_scriptswpcc-rss.php:170
Maintenance & Trust

WP Church Center: RSS Maintenance & Trust

Maintenance Signals

WordPress version tested5.4.19
Last updatedMar 16, 2020
PHP min version
Downloads4K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Alternatives

WP Church Center: RSS Alternatives

No alternatives data available yet.

Developer Profile

WP Church Center: RSS Developer Profile

jordesign

2 plugins · 30 total installs

89
trust score
Avg Security Score
93/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect WP Church Center: RSS

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/wp-church-center-rss-syndication/rss_styles.css

HTML / DOM Fingerprints

CSS Classes
wpccRSSfeedrssFeaturemetafeedAuthorfeedDate
Shortcode Output
<div class="wpccRSSfeed"><ul><li><li class="rssFeature"><h2>
FAQ

Frequently Asked Questions about WP Church Center: RSS