[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$flIv-2Z_R8eaLUXGQVY3-nyRzG436U6YPHx2_c4-Sg4I":3,"$fq_c4I7vF7BUXjeH1Dp6bQxhx5Be_P_fT7NwWTCOYJFg":372,"$fdPKAzBV69nb6xRRoLtW9IhS36s_9mwbF6QFD6s4Hqgs":376},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":13,"last_updated":14,"tested_up_to":15,"requires_at_least":16,"requires_php":17,"tags":18,"homepage":17,"download_link":22,"security_score":23,"vuln_count":13,"unpatched_count":13,"last_vuln_date":24,"fetched_at":25,"discovery_status":26,"vulnerabilities":27,"developer":28,"crawl_stats":24,"alternatives":35,"analysis":130,"fingerprints":355},"wp-publisher","WP Publisher","0.1.1","Yuichiro ABE","https:\u002F\u002Fprofiles.wordpress.org\u002Fyuichiro-abe\u002F","\u003Cp>Plug-in to synchronize the two WordPress\u003C\u002Fp>\n\u003Cp>And synchronization of theme folder\u003Cbr \u002F>\nAnd synchronization of the plug-ins folder\u003Cbr \u002F>\nAnd synchronization of media\u003Cbr \u002F>\nAnd conversion (the serialized data including) the host name in the database\u003C\u002Fp>\n\u003Cp>Plug-in to be used, for example, when you publish WordPress from a development environment to a production environment\u003C\u002Fp>\n","\"Plug-in to Upload WordPress site Dev to Publish by one click\".",10,2186,0,"2014-06-23T17:47:00.000Z","3.9.40","3.8","",[19,20,21],"deploy","publish","sync","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwp-publisher.0.1.2.zip",85,null,"2026-04-16T10:56:18.058Z","no_bundle",[],{"slug":29,"display_name":7,"profile_url":8,"plugin_count":30,"total_installs":31,"avg_security_score":23,"avg_patch_time_days":32,"trust_score":33,"computed_at":34},"yuichiro-abe",3,50020,30,84,"2026-08-26T21:26:32.609Z",[36,59,81,99,112],{"slug":37,"name":38,"version":39,"author":40,"author_profile":41,"description":42,"short_description":43,"active_installs":44,"downloaded":45,"rating":13,"num_ratings":13,"last_updated":46,"tested_up_to":47,"requires_at_least":48,"requires_php":49,"tags":50,"homepage":55,"download_link":56,"security_score":57,"vuln_count":13,"unpatched_count":13,"last_vuln_date":24,"fetched_at":58},"volume-post-sync-manager","Volume Post Sync Manager","1.0.0","We Are Volume","https:\u002F\u002Fprofiles.wordpress.org\u002Fwearevolume\u002F","\u003Cp>Post Sync Manager lets you move posts between your local, staging, and production WordPress sites with a single click — directly from the Gutenberg editor.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Free features:\u003C\u002Fstrong>\u003Cbr \u002F>\n* Push and pull posts, pages, and custom post types between environments\u003Cbr \u002F>\n* Sync status indicator (in sync, remote newer, local newer, conflict)\u003Cbr \u002F>\n* Secret-key authentication between sites\u003Cbr \u002F>\n* Full sync log with pagination\u003C\u002Fp>\n\u003Cp>\u003Cstrong>\u003Ca href=\"https:\u002F\u002Fpostsyncmanager.com\" rel=\"nofollow ugc\">Pro version\u003C\u002Fa> features:\u003C\u002Fstrong>\u003Cbr \u002F>\n* Bulk sync page with per-row push, pull, and status check\u003C\u002Fp>\n\u003Ch3>External Services\u003C\u002Fh3>\n\u003Cp>This plugin communicates \u003Cstrong>only between your own WordPress sites\u003C\u002Fstrong> when pushing or pulling posts. No data is routed through any third-party server.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>What is sent:\u003C\u002Fstrong> post content, post meta, and media attachments belonging to the post being synced\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Where it goes:\u003C\u002Fstrong> directly to the remote WordPress site URL you configure in Settings\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Authentication:\u003C\u002Fstrong> requests are authenticated with a secret key you set — no external accounts required\u003C\u002Fli>\n\u003C\u002Ful>\n","Push and pull individual posts between WordPress environments.",20,223,"2026-04-11T15:50:00.000Z","6.9.5","6.6","8.2",[51,52,53,54,21],"content","deployment","post","staging","https:\u002F\u002Fpostsyncmanager.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fvolume-post-sync-manager.1.0.0.zip",100,"2026-07-22T17:31:50.256Z",{"slug":60,"name":61,"version":62,"author":63,"author_profile":64,"description":65,"short_description":66,"active_installs":11,"downloaded":67,"rating":57,"num_ratings":68,"last_updated":69,"tested_up_to":70,"requires_at_least":71,"requires_php":72,"tags":73,"homepage":79,"download_link":80,"security_score":57,"vuln_count":13,"unpatched_count":13,"last_vuln_date":24,"fetched_at":58},"arkwell-seo-connector","Arkwell SEO Connector","1.0.6","arkwellagency","https:\u002F\u002Fprofiles.wordpress.org\u002Farkwellagency\u002F","\u003Cp>Arkwell SEO Connector connects a WordPress website to Arkwell SEO.\u003C\u002Fp>\n\u003Cp>You must have an active Arkwell SEO subscription to connect your website. Please contact info@arkwellagency.com to join today for free.\u003C\u002Fp>\n\u003Cp>The plugin can be configured to support:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Publishing blog posts from Arkwell SEO.\u003C\u002Fli>\n\u003Cli>Uploading featured images into the WordPress Media Library.\u003C\u002Fli>\n\u003Cli>Capturing selected lead notification emails sent through WordPress mail.\u003C\u002Fli>\n\u003Cli>Syncing public site files such as llms.txt and sitemaps when enabled.\u003C\u002Fli>\n\u003Cli>Sending post update events to Arkwell SEO when enabled.\u003C\u002Fli>\n\u003Cli>Syncing recent and changed blog records to Arkwell SEO when enabled.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>All remote communication is outbound from WordPress to Arkwell SEO over HTTPS. The plugin does not expose a public inbound WordPress REST endpoint.\u003C\u002Fp>\n\u003Ch3>Third-party service disclosure\u003C\u002Fh3>\n\u003Cp>This plugin connects to Arkwell SEO, a service operated by Arkwell Agency.\u003C\u002Fp>\n\u003Cp>When the relevant options are enabled, the plugin may send the following data to Arkwell SEO:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Site ID and authentication signature.\u003C\u002Fli>\n\u003Cli>Blog publishing job results.\u003C\u002Fli>\n\u003Cli>Blog post title, slug, excerpt, content, URL, status, and related metadata.\u003C\u002Fli>\n\u003Cli>Featured image import results.\u003C\u002Fli>\n\u003Cli>Selected outgoing lead notification email data, including recipient, subject, message body, headers, source page, user agent, and IP address.\u003C\u002Fli>\n\u003Cli>Public llms.txt and sitemap XML contents.\u003C\u002Fli>\n\u003Cli>Post update before\u002Fafter data.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>This data is sent to provide the connected Arkwell SEO services selected by the site administrator.\u003C\u002Fp>\n\u003Cp>Arkwell SEO website: https:\u002F\u002Farkwell.net\u002F\u003C\u002Fp>\n\u003Cp>Privacy policy: https:\u002F\u002Farkwell.net\u002Fapp-privacy-policy\u002F\u003C\u002Fp>\n\u003Cp>Terms: https:\u002F\u002Farkwell.net\u002Fterms-of-service\u002F\u003C\u002Fp>\n","Connect WordPress to Arkwell SEO for publishing, lead tracking, content syncing, and site monitoring.",128,1,"2026-05-29T14:28:00.000Z","7.0.2","5.8","7.4",[74,75,76,77,78],"automation","content-sync","lead-tracking","publishing","seo","https:\u002F\u002Farkwell.net\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Farkwell-seo-connector.1.0.6.zip",{"slug":82,"name":83,"version":84,"author":85,"author_profile":86,"description":87,"short_description":88,"active_installs":13,"downloaded":89,"rating":57,"num_ratings":68,"last_updated":90,"tested_up_to":91,"requires_at_least":92,"requires_php":72,"tags":93,"homepage":97,"download_link":98,"security_score":57,"vuln_count":13,"unpatched_count":13,"last_vuln_date":24,"fetched_at":25},"deploy-sync-content","Deploy & Sync Content","2.2.0","ealab","https:\u002F\u002Fprofiles.wordpress.org\u002Fealab\u002F","\u003Cp>\u003Cstrong>⚠️ Warning: Experimental plugin. Please make a full backup before use and test thoroughly.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Ch4>About\u003C\u002Fh4>\n\u003Cp>The \u003Cem>WordPress\u003C\u002Fem> ecosystem has never offered a simple solution for managing content between environments. Since its inception, one problem persists: granular deployment of content and configurations.\u003C\u002Fp>\n\u003Cp>You develop on a test site and want to send only certain content to your production site. With existing tools, two scenarios often occur: creating duplicates… or having to overwrite the entire database. The constraints imposed by the diversity of plugin ecosystem operations have already caused several attempts to fail.\u003C\u002Fp>\n\u003Cp>We are convinced that a solution is possible.\u003C\u002Fp>\n\u003Cp>That’s why we designed \u003Cem>Deploy & Sync Content\u003C\u002Fem>: a new approach, designed to finally offer selective synchronization between your environments.\u003C\u002Fp>\n\u003Ch4>Main Features\u003C\u002Fh4>\n\u003Cp>The free version offers unidirectional synchronization (Production \u003Cspan aria-hidden=\"true\" class=\"wp-exclude-emoji\">→\u003C\u002Fspan> Staging\u002FLocal), ideal for simply transferring your content and media between your sites.\u003C\u002Fp>\n\u003Cp>For bidirectional synchronization and advanced features, check out the Pro version(https:\u002F\u002Fwp-deployer.io\u002Fen\u002Ffeatures).\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Intelligent database merging\u003C\u002Fstrong>: The plugin detects existing content to update or create it as needed. You thus maintain the consistency of your environments and avoid any loss of information.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Unidirectional synchronization (free version)\u003C\u002Fstrong>: Production \u003Cspan aria-hidden=\"true\" class=\"wp-exclude-emoji\">→\u003C\u002Fspan> Staging\u002FLocal: quickly transfer your content and media between your sites.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Data conflict management\u003C\u002Fstrong>: The tool identifies and allows you to resolve differences before import, ensuring updates without loss.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Automatic ID mapping\u003C\u002Fstrong>: Avoid duplicates and inconsistencies related to page builders and ID references.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Preservation of content relationships\u003C\u002Fstrong>: Posts, taxonomies, media and metadata remain correctly linked after each synchronization.\u003C\u002Fp>\n\u003Ch3>Terms of use and External Services\u003C\u002Fh3>\n\u003Cp>\u003Cem>Deploy & Sync Content\u003C\u002Fem> is free to use and relies on the following services:\u003C\u002Fp>\n\u003Col>\n\u003Cli>\n\u003Cp>\u003Cstrong>Online Configuration Service\u003C\u002Fstrong> (wp-deployer.io)\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Purpose\u003C\u002Fstrong>: Configures and updates the export\u002Fimport system. This service is optional, but recommended until alternatives are provided by the community.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Data Collection\u003C\u002Fstrong>:\n\u003Cul>\n\u003Cli>IP address of your WordPress instance\u003C\u002Fli>\n\u003Cli>Production URL (from plugin settings)\u003C\u002Fli>\n\u003Cli>Site URL\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\u003Cstrong>When Used\u003C\u002Fstrong>:\n\u003Cul>\n\u003Cli>During plugin activation\u003C\u002Fli>\n\u003Cli>For configuration updates\u003C\u002Fli>\n\u003Cli>For license verification (Pro version)\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Security\u003C\u002Fstrong>: This data is used to protect our systems from spam and malicious use\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Privacy\u003C\u002Fstrong>: Data is not shared with any business partners\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Terms & Privacy\u003C\u002Fstrong>: \u003Ca href=\"https:\u002F\u002Fwp-deployer.io\u002Fen\u002Fgeneral-terms-and-conditions-use-gtcu\" rel=\"nofollow ugc\">https:\u002F\u002Fwp-deployer.io\u002Fen\u002Fgeneral-terms-and-conditions-use-gtcu\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>Local Data Storage\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Purpose\u003C\u002Fstrong>: Temporary storage for content synchronization\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Location\u003C\u002Fstrong>: in the \u003Ccode>uploads\u003C\u002Fcode> directory of your WordPress installations\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Security\u003C\u002Fstrong>: Data is stored on your servers and is not transmitted to any external services\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch3>Credits\u003C\u002Fh3>\n\u003Cp>\u003Cem>Deploy & Sync Content\u003C\u002Fem> is developed by \u003Cem>EA Lab\u003C\u002Fem>.\u003C\u002Fp>\n\u003Cp>\u003Cem>Deploy & Sync Content\u003C\u002Fem> includes the \u003Cem>plugin.json\u003C\u002Fem> file from the \u003Cem>WP Optimize\u003C\u002Fem> plugin\u003Cbr \u002F>\n(GPLv2+ licensed).\u003C\u002Fp>\n\u003Cp>\u003Cem>Deploy & Sync Content\u003C\u002Fem> includes various software dependencies taken from the packagist\u003Cbr \u002F>\nrepository, listed in \u003Cstrong>vendor\u003C\u002Fstrong> and \u003Cstrong>vendor-prefixed\u003C\u002Fstrong> directories. Most\u003Cbr \u002F>\nof them are unaltered in functionality. The only patched library is\u003Cbr \u002F>\n    jfcherng\u002Fphp-diff, which has been patched for translation and customized\u003Cbr \u002F>\nrendering.\u003C\u002Fp>\n","Move your content easily from your production instance to your development instance.",725,"2025-11-20T15:04:00.000Z","6.8.5","6.0",[19,94,21,95,96],"download","transfer","upload","https:\u002F\u002Fwp-deployer.io\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fdeploy-sync-content.2.2.0.zip",{"slug":100,"name":101,"version":39,"author":101,"author_profile":102,"description":103,"short_description":104,"active_installs":13,"downloaded":105,"rating":13,"num_ratings":13,"last_updated":106,"tested_up_to":107,"requires_at_least":108,"requires_php":72,"tags":109,"homepage":17,"download_link":111,"security_score":57,"vuln_count":13,"unpatched_count":13,"last_vuln_date":24,"fetched_at":58},"neverdrafts","NeverDrafts","https:\u002F\u002Fprofiles.wordpress.org\u002Fjonathank6\u002F","\u003Cp>NeverDrafts is a powerful WordPress plugin that automatically syncs blog posts from your NeverDrafts.com account directly to your WordPress site. With NeverDrafts, you can streamline your content publishing workflow and maintain consistency across your digital presence.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Key Features:\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Seamless Integration\u003C\u002Fstrong>: Connect your WordPress site to NeverDrafts.com with a simple connection key\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Automatic Syncing\u003C\u002Fstrong>: Posts are automatically synced from NeverDrafts to your WordPress site\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Flexible Publishing Options\u003C\u002Fstrong>: Choose to publish immediately, save as drafts, or keep posts private\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Image Management\u003C\u002Fstrong>: Automatically download and import images from synced posts to your media library\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Category Assignment\u003C\u002Fstrong>: Set default categories for synced posts\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Author Management\u003C\u002Fstrong>: Assign a default author for all synced content\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Sync Logging\u003C\u002Fstrong>: Track all sync activities with detailed logs and status reports\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Connection Status\u003C\u002Fstrong>: Real-time connection status monitoring\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Test Connection\u003C\u002Fstrong>: Built-in connection testing functionality\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Cstrong>How It Works:\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Col>\n\u003Cli>Install and activate the NeverDrafts plugin\u003C\u002Fli>\n\u003Cli>Copy your unique Connection Key from the plugin settings\u003C\u002Fli>\n\u003Cli>Go to your NeverDrafts dashboard \u003Cspan aria-hidden=\"true\" class=\"wp-exclude-emoji\">→\u003C\u002Fspan> Integrations\u003C\u002Fli>\n\u003Cli>Add a new WordPress integration using your Connection Key\u003C\u002Fli>\n\u003Cli>Your posts will automatically sync to WordPress!\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Cp>\u003Cstrong>Perfect For:\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Content creators who want to automate their publishing workflow\u003C\u002Fli>\n\u003Cli>Businesses managing multiple content channels\u003C\u002Fli>\n\u003Cli>Bloggers who want to streamline their content distribution\u003C\u002Fli>\n\u003Cli>Anyone looking to maintain consistent publishing across platforms\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Technical Details\u003C\u002Fh3>\n\u003Cp>\u003Cstrong>Requirements:\u003C\u002Fstrong>\u003Cbr \u002F>\n* WordPress 5.0 or higher\u003Cbr \u002F>\n* PHP 7.4 or higher\u003Cbr \u002F>\n* Active internet connection for syncing\u003C\u002Fp>\n\u003Cp>\u003Cstrong>API Endpoints:\u003C\u002Fstrong>\u003Cbr \u002F>\nThe plugin creates the following REST API endpoints (namespace \u003Ccode>neverdrafts\u002Fv1\u003C\u002Fcode>):\u003Cbr \u002F>\n* \u003Ccode>\u002Fwp-json\u002Fneverdrafts\u002Fv1\u002Fsync\u003C\u002Fcode> – Handles post syncing\u003Cbr \u002F>\n* \u003Ccode>\u002Fwp-json\u002Fneverdrafts\u002Fv1\u002Ftest\u003C\u002Fcode> – Connection testing\u003Cbr \u002F>\n* \u003Ccode>\u002Fwp-json\u002Fneverdrafts\u002Fv1\u002Fconnect\u003C\u002Fcode> – Connection establishment\u003Cbr \u002F>\n* \u003Ccode>\u002Fwp-json\u002Fneverdrafts\u002Fv1\u002Fstatus\u003C\u002Fcode> – Plugin status information\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Security:\u003C\u002Fstrong>\u003Cbr \u002F>\n* All API endpoints require authentication via Connection Key\u003Cbr \u002F>\n* Input sanitization and validation\u003Cbr \u002F>\n* SQL injection protection\u003Cbr \u002F>\n* XSS prevention\u003Cbr \u002F>\n* WordPress nonce verification for admin actions\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Database:\u003C\u002Fstrong>\u003Cbr \u002F>\nCreates one custom table: \u003Ccode>wp_neverdrafts_sync_logs\u003C\u002Fcode> for tracking sync activities.\u003C\u002Fp>\n\u003Ch3>Support\u003C\u002Fh3>\n\u003Cp>For support, feature requests, or bug reports, please contact us through \u003Ca href=\"https:\u002F\u002Fneverdrafts.com\u002Fcontact\" rel=\"nofollow ugc\">NeverDrafts.com\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch3>Privacy Policy\u003C\u002Fh3>\n\u003Cp>This plugin connects to NeverDrafts.com to sync content. Please review the NeverDrafts privacy policy at \u003Ca href=\"https:\u002F\u002Fneverdrafts.com\u002Fprivacy\" rel=\"nofollow ugc\">https:\u002F\u002Fneverdrafts.com\u002Fprivacy\u003C\u002Fa> for information about data handling.\u003C\u002Fp>\n","Automatically sync blog posts from NeverDrafts.com to your WordPress site with seamless integration and powerful customization options.",961,"2025-09-26T00:19:00.000Z","6.8.6","5.0",[74,110,51,77,21],"blog","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fneverdrafts.1.0.0.zip",{"slug":113,"name":114,"version":115,"author":113,"author_profile":116,"description":117,"short_description":118,"active_installs":13,"downloaded":119,"rating":57,"num_ratings":68,"last_updated":120,"tested_up_to":47,"requires_at_least":121,"requires_php":122,"tags":123,"homepage":128,"download_link":129,"security_score":57,"vuln_count":13,"unpatched_count":13,"last_vuln_date":24,"fetched_at":58},"postnext","PostNext","1.1.5","https:\u002F\u002Fprofiles.wordpress.org\u002Fpostnext\u002F","\u003Cp>\u003Cstrong>PostNext turns your WordPress blog into a hands-off content engine.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>You set up a content plan once in the PostNext app — start date, duration, posting cadence, language, and competitive intent — and the AI researches, writes, and ships articles to your WordPress site for the whole run. No copy-paste, no manual scheduling, no batch-generate-and-pray.\u003C\u002Fp>\n\u003Ch4>Plan it once, ship it daily\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>Multi-day content plans\u003C\u002Fstrong> — choose 7 days, 14 days, 30 days, or “Until I stop”. Set a start date and PostNext keeps the pipeline flowing.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Publish hour window (UTC)\u003C\u002Fstrong> — pick the hour range when posts should go live (e.g. 08–19 UTC). Each article publishes at a random minute inside the window, so your blog cadence reads as human, not bot.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Content language\u003C\u002Fstrong> — write natively in your audience’s language; not machine-translated from English.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Auto-publish to WordPress\u003C\u002Fstrong> — publish posts automatically when generated, or leave off to land them as drafts for review.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Auto-promote on social media\u003C\u002Fstrong> — create social posts to promote each blog post (managed in the PostNext app).\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Competitor domains (optional)\u003C\u002Fstrong> — enter competitor websites to discover content gaps. One domain per line, max 10. PostNext finds keywords and topics they rank for and you don’t, then writes content to close the gap.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>What the plugin does inside WordPress\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Receives articles from PostNext via a secure REST API\u003C\u002Fli>\n\u003Cli>Downloads and stores all images in your Media Library (deduplicated by source URL)\u003C\u002Fli>\n\u003Cli>Sets SEO metadata for Yoast, Rank Math, AIOSEO, and SEOPress\u003C\u002Fli>\n\u003Cli>Tracks every synced article on a built-in dashboard with status and date\u003C\u002Fli>\n\u003Cli>Supports draft-first or direct-publish workflows\u003C\u002Fli>\n\u003Cli>Works on single sites and WordPress Multisite networks (per-site tracking + settings)\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>External services\u003C\u002Fh3>\n\u003Cp>This plugin connects to the PostNext platform (\u003Ca href=\"https:\u002F\u002Fpostnext.io\" rel=\"nofollow ugc\">https:\u002F\u002Fpostnext.io\u003C\u002Fa>) to receive blog post content for publishing to your WordPress site.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>When data is transmitted:\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>When the PostNext backend pushes a new article to your site via the REST API\u003C\u002Fli>\n\u003Cli>When the PostNext backend updates or deletes an existing article\u003C\u002Fli>\n\u003Cli>When PostNext tests the integration connection\u003C\u002Fli>\n\u003Cli>When PostNext queries your site for published posts\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Cstrong>What data is received from PostNext:\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Article content (title, body HTML, slug, categories, tags)\u003C\u002Fli>\n\u003Cli>Featured image URL (downloaded and stored locally in your Media Library)\u003C\u002Fli>\n\u003Cli>SEO metadata (meta description, focus keyword)\u003C\u002Fli>\n\u003Cli>Author assignment\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Cstrong>What data is sent to PostNext:\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Your site name and URL (during status checks)\u003C\u002Fli>\n\u003Cli>Post IDs and URLs (as confirmation after publishing)\u003C\u002Fli>\n\u003Cli>Plugin version and capabilities\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Cstrong>No user data, visitor data, or analytics are collected or transmitted.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Service: \u003Ca href=\"https:\u002F\u002Fpostnext.io\" rel=\"nofollow ugc\">PostNext\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fpostnext.io\u002Fterms\" rel=\"nofollow ugc\">Terms of Use\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fpostnext.io\u002Fprivacy\" rel=\"nofollow ugc\">Privacy Policy\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n","Connect PostNext to WordPress and auto-publish AI-written blog posts on a planned, daily-cadence schedule.",222,"2026-05-25T11:12:00.000Z","6.4","8.0",[124,125,126,75,127],"ai-content","auto-publish","blog-automation","seo-blog","https:\u002F\u002Fpostnext.io","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fpostnext.1.1.5.zip",{"attackSurface":131,"codeSignals":165,"taintFlows":210,"riskAssessment":337,"analyzedAt":354},{"hooks":132,"ajaxHandlers":151,"restRoutes":161,"shortcodes":162,"cronEvents":163,"entryPointCount":164,"unprotectedCount":68},[133,139,144,147],{"type":134,"name":135,"callback":136,"file":137,"line":138},"action","init","init_action","wp-publisher.php",52,{"type":134,"name":140,"callback":141,"priority":142,"file":137,"line":143},"plugins_loaded","load_textdomain",11,57,{"type":134,"name":145,"callback":145,"file":137,"line":146},"admin_menu",61,{"type":134,"name":148,"callback":149,"file":137,"line":150},"admin_footer","wp_publisher_javascript",70,[152,158],{"action":153,"nopriv":154,"callback":155,"hasNonce":154,"hasCapCheck":156,"file":137,"line":157},"wp_publisher",false,"ftp_sync_callback",true,53,{"action":159,"nopriv":156,"callback":159,"hasNonce":154,"hasCapCheck":154,"file":137,"line":160},"wp_publisher_push",54,[],[],[],2,{"dangerousFunctions":166,"sqlUsage":171,"outputEscaping":179,"fileOperations":208,"externalRequests":68,"nonceChecks":13,"capabilityChecks":68,"bundledLibraries":209},[167],{"fn":168,"file":137,"line":169,"context":170},"unserialize",875,"if ( is_string( $data ) && ( $unserialized = @unserialize( $data ) ) !== false ) {",{"prepared":164,"raw":30,"locations":172},[173,176,178],{"file":137,"line":174,"context":175},939,"$wpdb->get_results() with variable interpolation",{"file":137,"line":177,"context":175},945,{"file":137,"line":105,"context":175},{"escaped":13,"rawEcho":180,"locations":181},12,[182,186,188,190,192,194,196,198,200,202,204,206],{"file":183,"line":184,"context":185},"wp-publisher-admin.php",164,"raw output",{"file":137,"line":187,"context":185},99,{"file":137,"line":189,"context":185},112,{"file":137,"line":191,"context":185},364,{"file":137,"line":193,"context":185},398,{"file":137,"line":195,"context":185},399,{"file":137,"line":197,"context":185},405,{"file":137,"line":199,"context":185},424,{"file":137,"line":201,"context":185},459,{"file":137,"line":203,"context":185},480,{"file":137,"line":205,"context":185},482,{"file":137,"line":207,"context":185},483,7,[],[211,227,281,307],{"entryPoint":212,"graph":213,"unsanitizedCount":68,"severity":226},"mysqldump (wp-publisher.php:477)",{"nodes":214,"edges":224},[215,219],{"id":216,"type":217,"label":218,"file":137,"line":203},"n0","source","$_SERVER['HTTP_HOST']",{"id":220,"type":221,"label":222,"file":137,"line":203,"wp_function":223},"n1","sink","echo() [XSS]","echo",[225],{"from":216,"to":220,"sanitized":154},"medium",{"entryPoint":228,"graph":229,"unsanitizedCount":208,"severity":280},"wp_publisher_options (wp-publisher-admin.php:15)",{"nodes":230,"edges":272},[231,234,237,240,242,246,248,252,254,258,260,264,266,270],{"id":216,"type":217,"label":232,"file":183,"line":233},"$_POST['wp_publisher_host']",29,{"id":220,"type":221,"label":235,"file":183,"line":233,"wp_function":236},"update_option() [Settings Manipulation]","update_option",{"id":238,"type":217,"label":239,"file":183,"line":32},"n2","$_POST['wp_publisher_user']",{"id":241,"type":221,"label":235,"file":183,"line":32,"wp_function":236},"n3",{"id":243,"type":217,"label":244,"file":183,"line":245},"n4","$_POST['wp_publisher_pass']",31,{"id":247,"type":221,"label":235,"file":183,"line":245,"wp_function":236},"n5",{"id":249,"type":217,"label":250,"file":183,"line":251},"n6","$_POST['wp_publisher_port']",32,{"id":253,"type":221,"label":235,"file":183,"line":251,"wp_function":236},"n7",{"id":255,"type":217,"label":256,"file":183,"line":257},"n8","$_POST['wp_publisher_active_mode']",33,{"id":259,"type":221,"label":235,"file":183,"line":257,"wp_function":236},"n9",{"id":261,"type":217,"label":262,"file":183,"line":263},"n10","$_POST['wp_publisher_remote_wp_content_dir']",34,{"id":265,"type":221,"label":235,"file":183,"line":263,"wp_function":236},"n11",{"id":267,"type":217,"label":268,"file":183,"line":269},"n12","$_POST['wp_publisher_token']",35,{"id":271,"type":221,"label":235,"file":183,"line":269,"wp_function":236},"n13",[273,274,275,276,277,278,279],{"from":216,"to":220,"sanitized":154},{"from":238,"to":241,"sanitized":154},{"from":243,"to":247,"sanitized":154},{"from":249,"to":253,"sanitized":154},{"from":255,"to":259,"sanitized":154},{"from":261,"to":265,"sanitized":154},{"from":267,"to":271,"sanitized":154},"low",{"entryPoint":282,"graph":283,"unsanitizedCount":208,"severity":280},"\u003Cwp-publisher-admin> (wp-publisher-admin.php:0)",{"nodes":284,"edges":299},[285,286,287,288,289,290,291,292,293,294,295,296,297,298],{"id":216,"type":217,"label":232,"file":183,"line":233},{"id":220,"type":221,"label":235,"file":183,"line":233,"wp_function":236},{"id":238,"type":217,"label":239,"file":183,"line":32},{"id":241,"type":221,"label":235,"file":183,"line":32,"wp_function":236},{"id":243,"type":217,"label":244,"file":183,"line":245},{"id":247,"type":221,"label":235,"file":183,"line":245,"wp_function":236},{"id":249,"type":217,"label":250,"file":183,"line":251},{"id":253,"type":221,"label":235,"file":183,"line":251,"wp_function":236},{"id":255,"type":217,"label":256,"file":183,"line":257},{"id":259,"type":221,"label":235,"file":183,"line":257,"wp_function":236},{"id":261,"type":217,"label":262,"file":183,"line":263},{"id":265,"type":221,"label":235,"file":183,"line":263,"wp_function":236},{"id":267,"type":217,"label":268,"file":183,"line":269},{"id":271,"type":221,"label":235,"file":183,"line":269,"wp_function":236},[300,301,302,303,304,305,306],{"from":216,"to":220,"sanitized":154},{"from":238,"to":241,"sanitized":154},{"from":243,"to":247,"sanitized":154},{"from":249,"to":253,"sanitized":154},{"from":255,"to":259,"sanitized":154},{"from":261,"to":265,"sanitized":154},{"from":267,"to":271,"sanitized":154},{"entryPoint":308,"graph":309,"unsanitizedCount":68,"severity":336},"\u003Cwp-publisher> (wp-publisher.php:0)",{"nodes":310,"edges":330},[311,314,315,316,317,319,323,325,328],{"id":216,"type":217,"label":312,"file":137,"line":313},"$_POST (x4)",82,{"id":220,"type":221,"label":222,"file":137,"line":197,"wp_function":223},{"id":238,"type":217,"label":218,"file":137,"line":203},{"id":241,"type":221,"label":222,"file":137,"line":203,"wp_function":223},{"id":243,"type":217,"label":318,"file":137,"line":313},"$_POST",{"id":247,"type":221,"label":320,"file":137,"line":321,"wp_function":322},"query() [SQLi]",997,"query",{"id":249,"type":217,"label":318,"file":137,"line":324},982,{"id":253,"type":326,"label":327,"file":137,"line":324},"transform","→ recursive_unserialize_replace()",{"id":255,"type":221,"label":329,"file":137,"line":169,"wp_function":168},"unserialize() [Object Injection]",[331,332,333,334,335],{"from":216,"to":220,"sanitized":156},{"from":238,"to":241,"sanitized":156},{"from":243,"to":247,"sanitized":156},{"from":249,"to":253,"sanitized":154},{"from":253,"to":255,"sanitized":154},"high",{"summary":338,"deductions":339},"The \"wp-publisher\" v0.1.1 plugin presents a concerning security posture due to several critical vulnerabilities identified in the static analysis. The presence of an unprotected AJAX handler significantly expands the attack surface, allowing potential unauthorized actions. Furthermore, the use of `unserialize` without proper validation and the lack of output escaping on any outputs indicate a high risk of critical vulnerabilities like Object Injection and Cross-Site Scripting (XSS).\n\nWhile the plugin has no recorded vulnerability history, this absence is outweighed by the serious code signals. The taint analysis revealing flows with unsanitized paths, particularly those with high severity, further solidifies the risk. The combination of a high number of file operations and an external HTTP request, alongside the use of `unserialize` and unsanitized outputs, creates a potent environment for exploitation.\n\nIn conclusion, the plugin's strengths, such as a low number of entry points and a moderate use of prepared statements, are overshadowed by its significant weaknesses. The lack of basic security checks like nonce and capability checks on its entry points, coupled with dangerous function usage and widespread unescaped output, makes this plugin a high-risk component. Immediate remediation of these identified issues is strongly recommended.",[340,342,344,347,349,351],{"reason":341,"points":11},"Unprotected AJAX handler",{"reason":343,"points":11},"Dangerous function unserialize",{"reason":345,"points":346},"No output escaping",8,{"reason":348,"points":180},"Flows with unsanitized paths (high severity)",{"reason":350,"points":11},"No nonce checks",{"reason":352,"points":353},"SQL queries without prepared statements (40%)",6,"2026-03-17T01:37:32.609Z",{"wat":356,"direct":365},{"assetPaths":357,"generatorPatterns":360,"scriptPaths":361,"versionParams":362},[358,359],"\u002Fwp-content\u002Fplugins\u002Fwp-publisher\u002Fjs\u002Fwp-publisher.js","\u002Fwp-content\u002Fplugins\u002Fwp-publisher\u002Fcss\u002Fwp-publisher.css",[],[358],[363,364],"wp-publisher\u002Fjs\u002Fwp-publisher.js?ver=","wp-publisher\u002Fcss\u002Fwp-publisher.css?ver=",{"cssClasses":366,"htmlComments":367,"htmlAttributes":368,"restEndpoints":369,"jsGlobals":370,"shortcodeOutput":371},[],[],[],[],[149],[],{"error":156,"url":373,"statusCode":374,"statusMessage":375,"message":375},"http:\u002F\u002Flocalhost\u002Fapi\u002Fplugins\u002Fwp-publisher\u002Fbundle",404,"no bundle for this plugin yet",{"slug":4,"current_version":6,"total_versions":30,"versions":377},[378,384,390],{"version":379,"download_url":22,"svn_tag_url":380,"released_at":24,"has_diff":154,"diff_files_changed":381,"diff_lines":24,"trac_diff_url":382,"vulnerabilities":383,"is_current":154},"0.1.2","https:\u002F\u002Fplugins.svn.wordpress.org\u002Fwp-publisher\u002Ftags\u002F0.1.2\u002F",[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Fwp-publisher%2Ftags%2F0.1.1&new_path=%2Fwp-publisher%2Ftags%2F0.1.2",[],{"version":6,"download_url":385,"svn_tag_url":386,"released_at":24,"has_diff":154,"diff_files_changed":387,"diff_lines":24,"trac_diff_url":388,"vulnerabilities":389,"is_current":156},"https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwp-publisher.0.1.1.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Fwp-publisher\u002Ftags\u002F0.1.1\u002F",[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Fwp-publisher%2Ftags%2F0.1&new_path=%2Fwp-publisher%2Ftags%2F0.1.1",[],{"version":391,"download_url":392,"svn_tag_url":393,"released_at":24,"has_diff":154,"diff_files_changed":394,"diff_lines":24,"trac_diff_url":24,"vulnerabilities":395,"is_current":154},"0.1","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwp-publisher.0.1.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Fwp-publisher\u002Ftags\u002F0.1\u002F",[],[]]