
WP Click Check Security & Risk Analysis
wordpress.org/plugins/wp-click-checkThis Plugin is not longer supported. Please use http://wordpress.org/extend/plugins/wp-click-info/ intead.
Is WP Click Check Safe to Use in 2026?
Generally Safe
Score 85/100WP Click Check has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "wp-click-check" v0.4.1 plugin exhibits a generally good security posture, with no identified vulnerabilities in its history and a small attack surface. However, the static analysis reveals significant concerns regarding output escaping and data sanitization. The fact that 0% of the total 12 outputs are properly escaped is a critical weakness, potentially leading to cross-site scripting (XSS) vulnerabilities if user-supplied data is rendered directly in the output.
Furthermore, the taint analysis identified one flow with unsanitized paths. While classified as not critical or high severity, this still indicates a potential for unintended behavior or information disclosure if an attacker can manipulate the path in question. The absence of nonce checks and capability checks on the minimal entry points is less concerning given the reported lack of entry points without authentication, but it's a good practice to be aware of.
Overall, the plugin's lack of vulnerability history is a positive sign, suggesting a commitment to security. However, the identified issues with output escaping and unsanitized paths require immediate attention to mitigate potential risks. The plugin needs to prioritize proper data sanitization and output escaping to improve its security.
Key Concerns
- 0% of outputs properly escaped
- Flow with unsanitized paths found
- No nonce checks
- No capability checks
- 25% of SQL queries using prepared statements
WP Click Check Security Vulnerabilities
WP Click Check Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
WP Click Check Attack Surface
WordPress Hooks 5
Maintenance & Trust
WP Click Check Maintenance & Trust
Maintenance Signals
Community Trust
WP Click Check Alternatives
Live Visitor Counter
wp-visitors-widget
Wordpress Live Visitor Counter allows you to display how many times a page has been viewed with this simple, fast and easy to use the plugin.
IDClass Click Counter
idclass-click-counter
Short Description: A plugin to track user clicks on specific HTML elements using unique IDs or classes.
Ozh' Click Counter
ozh-click-counter
You have a blog. You have stats telling you how many people read it. You post links. But do you have something telling you how many people click on yo …
Err – Click Counter for Woo Products
err-click-counter-for-woo-products
Tracks and displays the number of clicks on WooCommerce product buttons (e.g., 'Add to cart', external product links).
WP Click Check Developer Profile
3 plugins · 30 total installs
How We Detect WP Click Check
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
alternate