
WP Saint Security & Risk Analysis
wordpress.org/plugins/wp-saintImplements web analytics like a pro. We took care of all your headache. Deploys data layer, Google Analytics, FB pixel & Tag Manager in minutes.
Is WP Saint Safe to Use in 2026?
Generally Safe
Score 85/100WP Saint has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The wp-saint v1.0.0 plugin exhibits a generally strong security posture based on the provided static analysis. It has a remarkably small attack surface with no identified AJAX handlers, REST API routes, shortcodes, or cron events, and importantly, none of these potential entry points are unprotected. The code also demonstrates good practices by using prepared statements for all SQL queries and includes one capability check, indicating some awareness of WordPress security mechanisms. The absence of dangerous function usage, file operations, external HTTP requests, and taint analysis findings further contributes to a low-risk profile. However, the low percentage of properly escaped output (32%) presents a significant concern. This suggests that user-supplied data might be rendered directly in the output without sufficient sanitization, potentially leading to cross-site scripting (XSS) vulnerabilities if any data is displayed to users. The plugin's vulnerability history is completely clean, with no recorded CVEs, which is positive, but this can also be attributed to its limited functionality and attack surface. While the lack of known vulnerabilities is a strength, the identified output escaping weakness is a critical area that needs immediate attention to mitigate potential XSS risks.
Key Concerns
- Low output escaping percentage (32%)
WP Saint Security Vulnerabilities
WP Saint Release Timeline
WP Saint Code Analysis
Output Escaping
WP Saint Attack Surface
WordPress Hooks 14
Maintenance & Trust
WP Saint Maintenance & Trust
Maintenance Signals
Community Trust
WP Saint Alternatives
Plausible Analytics
plausible-analytics
Plausible Analytics is a privacy-friendly web analytics plugin for WordPress that is an easy-to-use, lightweight and more accurate alternative to Goo …
Usermaven
usermaven
Usermaven's web analytics product is a Google Analytics alternative that provides a real-time view of your website traffic metrics.
Amplitude – Analytics, Session Replay, A/B testing and CDP for your website
amplitude
Grow your website with confidence using our award winning digital analytics platform now available on WordPress
Analytics for WordPress — by Segment
segmentio
Analytics for WordPress lets you integrate more than 100 analytics and marketing tools with the flick of a switch.
Trackboxx Analytics
trackboxx-analytics
A simple, GDPR compliant Google Analytics alternative.
WP Saint Developer Profile
1 plugin · 10 total installs
How We Detect WP Saint
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wp-saint/admin/css/wp-saint-admin.css/wp-content/plugins/wp-saint/admin/js/wp-saint-admin.js/wp-content/plugins/wp-saint/admin/js/wp-saint-admin.jswp-saint-admin.css?ver=wp-saint-admin.js?ver=HTML / DOM Fingerprints
wp_saint_settingswp_saint_third_party_scriptswp_saint_web_analyticsdata-wp_saint_settingsdata-wp_saint_third_party_scriptsdata-wp_saint_web_analyticswp_saint_admin_params