
WP Developer Support Security & Risk Analysis
wordpress.org/plugins/wp-developer-supportWordPress support and development help, wordpress coding support resources, shortcodes, functions, hooks, classes, methods, markdown code, frameworks.
Is WP Developer Support Safe to Use in 2026?
Generally Safe
Score 85/100WP Developer Support has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "wp-developer-support" v1.0.0 plugin exhibits a mixed security posture. On the positive side, it demonstrates good practices by exclusively using prepared statements for SQL queries, having no file operations or external HTTP requests, and no recorded vulnerability history. This suggests a developer conscious of common web application vulnerabilities. However, a significant concern arises from the presence of one unprotected AJAX handler, which represents a direct entry point into the plugin's functionality without proper authentication or authorization checks. While taint analysis did not reveal critical or high severity unsanitized paths, the single flow with an unsanitized path, combined with the unprotected AJAX handler, presents a potential avenue for attackers to exploit if input is not handled with extreme care within that specific handler. The absence of capability checks further exacerbates this risk.
Key Concerns
- Unprotected AJAX handler
- Flow with unsanitized paths
- Missing capability checks
- Unescaped output (1 of 4)
WP Developer Support Security Vulnerabilities
WP Developer Support Code Analysis
Output Escaping
Data Flow Analysis
WP Developer Support Attack Surface
AJAX Handlers 1
WordPress Hooks 8
Maintenance & Trust
WP Developer Support Maintenance & Trust
Maintenance Signals
Community Trust
WP Developer Support Alternatives
Eli's PHP Compatibility Scanner
eli-php-compatibility-scanner
A comprehensive WordPress plugin that scans your plugins and themes for PHP version compatibility issues using the PHPCompatibility ruleset.
PHP Console Log
php-console-log
Log PHP variables and arrays to the web console in your browser via JavaScript's console.log(). No browser extensions required.
Mail Debug
mail-debug
Redirects all email sent through wordpress to the user currently logged in or the site administrator.
WP Debug Logger
wp-debug-logger
A plugin that makes it easy to log code activity to a file.
Debug Toggle
debug-toggle
Manage WordPress debug settings from your dashboard. Toggle debug modes and prevent unauthorized changes.
WP Developer Support Developer Profile
14 plugins · 1K total installs
How We Detect WP Developer Support
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wp-developer-support/inc/admin/css/wpdevcs-admin-developer-support-admin.css/wp-content/plugins/wp-developer-support/inc/admin/js/wpdevcs-admin-developer-support-ajax-handler.js/wp-content/plugins/wp-developer-support/inc/admin/js/wpdevcs-admin-developer-support-ajax-handler.jswpdevcs-admin-developer-support-admin.css?ver=wpdevcs-admin-developer-support-ajax-handler.js?ver=HTML / DOM Fingerprints
The $page_hook_suffix can be combined with the load-($page_hook) action hookThe callback below will be called when the respective page is loadedcalled when the particular page is loaded.The plugin's HTML form is loaded from here+3 moredata-wpdevcs-user-meta-keydata-wpdevcs-user-meta-valuedata-wpdevcs-user-selectparams