Team Slider and Team Grid Showcase plus Team Carousel Security & Risk Analysis

wordpress.org/plugins/wp-team-showcase-and-slider

Add and display your employees, team members in Grid view and Slider or Carousel view. Also added Gutenberg block support.

3K active installs v2.8.6 PHP + WP 4.0+ Updated Feb 20, 2026
responsive-team-showcase-carouselresponsive-team-showcase-sliderteam-showcase-members-profile-and-skillsteam-showcase-rotatorteam-showcase-social-with-slider
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Team Slider and Team Grid Showcase plus Team Carousel Safe to Use in 2026?

Generally Safe

Score 100/100

Team Slider and Team Grid Showcase plus Team Carousel has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The "wp-team-showcase-and-slider" plugin v2.8.6 exhibits a generally good security posture based on the provided static analysis. The absence of known CVEs, unpatched vulnerabilities, and critical taint flows is highly encouraging, suggesting a mature and well-maintained codebase. The plugin also demonstrates strong security practices by consistently using prepared statements for SQL queries and implementing a high percentage of output escaping. Furthermore, a significant number of capability checks and nonce checks are present, indicating an effort to protect against unauthorized actions.

However, there are a couple of areas that warrant attention. The presence of the `unserialize` function is a known risk vector if not handled with extreme caution, as it can lead to deserialization vulnerabilities if user-supplied data is unserialized without proper validation. While the total attack surface is low and no entry points were found to be unprotected, the presence of this function means any future vulnerability in how its output is handled could be severe. The plugin also performs file operations and makes external HTTP requests, which, while not inherently insecure, are common areas where vulnerabilities can be introduced if not implemented carefully.

Overall, the plugin's lack of historical vulnerabilities and strong adherence to core security best practices like prepared statements and output escaping paint a positive security picture. The primary concern stems from the potential risk associated with the `unserialize` function. With this in mind, the plugin is considered relatively secure, but vigilance regarding the use of unserialization is advised.

Key Concerns

  • Use of unserialize function
Vulnerabilities
None known

Team Slider and Team Grid Showcase plus Team Carousel Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Team Slider and Team Grid Showcase plus Team Carousel Code Analysis

Dangerous Functions
1
Raw SQL Queries
0
0 prepared
Unescaped Output
22
254 escaped
Nonce Checks
8
Capability Checks
10
File Operations
3
External Requests
1
Bundled Libraries
0

Dangerous Functions Found

unserialize$info = @unserialize($data);wpos-analytics\includes\class-anylc-admin.php:696

Output Escaping

92% escaped276 total outputs
Attack Surface

Team Slider and Team Grid Showcase plus Team Carousel Attack Surface

Entry Points2
Unprotected0

Shortcodes 2

[wp-team] includes\shortcodes\tsas-shortcode.php:155
[wp-team-slider] includes\shortcodes\tsas-slider-shortcode.php:165
WordPress Hooks 39
actionadmin_menuincludes\admin\class-tsas-admin.php:20
actionadmin_initincludes\admin\class-tsas-admin.php:23
filtermanage_edit-team_showcase_post_columnsincludes\admin\class-tsas-admin.php:26
actionmanage_posts_custom_columnincludes\admin\class-tsas-admin.php:27
filtermanage_tsas-category_custom_columnincludes\admin\class-tsas-admin.php:30
filtermanage_edit-tsas-category_columnsincludes\admin\class-tsas-admin.php:31
actionadmin_menuincludes\admin\class-tsas-admin.php:34
actionsave_postincludes\admin\class-tsas-admin.php:37
actionadmin_menuincludes\admin\class-tsas-admin.php:40
actionsave_postincludes\admin\class-tsas-admin.php:43
actionadd_meta_boxesincludes\admin\class-tsas-admin.php:46
actioninitincludes\admin\supports\gutenberg-block.php:141
actionenqueue_block_editor_assetsincludes\admin\supports\gutenberg-block.php:165
filterblock_categories_allincludes\admin\supports\gutenberg-block.php:187
actionadmin_enqueue_scriptsincludes\class-tsas-script.php:20
actionwp_enqueue_scriptsincludes\class-tsas-script.php:23
actionwp_enqueue_scriptsincludes\class-tsas-script.php:26
actioninitincludes\tsas-post-type.php:55
actioninitincludes\tsas-post-type.php:93
actionplugins_loadedwp-team-showcase-and-slider.php:86
actionupdate_option_active_pluginswp-team-showcase-and-slider.php:122
actionadmin_noticeswp-team-showcase-and-slider.php:184
actionadmin_menuwpos-analytics\includes\class-anylc-admin.php:45
actionadmin_menuwpos-analytics\includes\class-anylc-admin.php:48
actionadmin_initwpos-analytics\includes\class-anylc-admin.php:51
actionadmin_noticeswpos-analytics\includes\class-anylc-admin.php:54
actionadmin_footerwpos-analytics\includes\class-anylc-admin.php:57
actionwp_loadedwpos-analytics\includes\class-anylc-admin.php:60
actioninitwpos-analytics\includes\class-anylc-admin.php:63
filtercron_scheduleswpos-analytics\includes\class-anylc-admin.php:66
actionwpos_monthly_cron_hookwpos-analytics\includes\class-anylc-admin.php:69
actionrest_api_initwpos-analytics\includes\class-anylc-admin.php:72
filterrest_pre_serve_requestwpos-analytics\includes\class-anylc-admin.php:585
actionadmin_enqueue_scriptswpos-analytics\includes\class-anylc-script.php:20
actionactivated_pluginwpos-analytics\wpos-analytics.php:244
actionplugins_loadedwpos-analytics\wpos-analytics.php:258
actionadmin_menuwpos-plugins\includes\admin\class-espbw-admin.php:19
actionadmin_enqueue_scriptswpos-plugins\includes\class-espbw-script.php:19
actionplugins_loadedwpos-plugins\wpos-recommendation.php:185

Scheduled Events 1

wpos_monthly_cron_hook
Maintenance & Trust

Team Slider and Team Grid Showcase plus Team Carousel Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedFeb 20, 2026
PHP min version
Downloads123K

Community Trust

Rating94/100
Number of ratings19
Active installs3K
Alternatives

Team Slider and Team Grid Showcase plus Team Carousel Alternatives

No alternatives data available yet.

Developer Profile

Team Slider and Team Grid Showcase plus Team Carousel Developer Profile

Essential Plugin

33 plugins · 205K total installs

78
trust score
Avg Security Score
99/100
Avg Patch Time
219 days
View full developer profile
Detection Fingerprints

How We Detect Team Slider and Team Grid Showcase plus Team Carousel

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/wp-team-showcase-and-slider/assets/css/frontend.css/wp-content/plugins/wp-team-showcase-and-slider/assets/css/frontend-responsive.css/wp-content/plugins/wp-team-showcase-and-slider/assets/css/team-slider.css/wp-content/plugins/wp-team-showcase-and-slider/assets/js/main.js/wp-content/plugins/wp-team-showcase-and-slider/assets/js/isotope.min.js/wp-content/plugins/wp-team-showcase-and-slider/assets/js/slick.min.js/wp-content/plugins/wp-team-showcase-and-slider/assets/js/owl.carousel.min.js/wp-content/plugins/wp-team-showcase-and-slider/assets/js/frontend.js+1 more
Script Paths
/wp-content/plugins/wp-team-showcase-and-slider/assets/js/blocks.build.js
Version Parameters
wp-team-showcase-and-slider/assets/css/frontend.css?ver=wp-team-showcase-and-slider/assets/css/frontend-responsive.css?ver=wp-team-showcase-and-slider/assets/css/team-slider.css?ver=wp-team-showcase-and-slider/assets/js/main.js?ver=wp-team-showcase-and-slider/assets/js/isotope.min.js?ver=wp-team-showcase-and-slider/assets/js/slick.min.js?ver=wp-team-showcase-and-slider/assets/js/owl.carousel.min.js?ver=wp-team-showcase-and-slider/assets/js/frontend.js?ver=wp-team-showcase-and-slider/assets/js/blocks.build.js?ver=

HTML / DOM Fingerprints

CSS Classes
ts-team-member-gridts-team-member-sliderts-team-member-wrapperts-team-member-detailsts-member-social-icon
Data Attributes
data-tsas-isotope-filter
JS Globals
WP_Tsas_Block
Shortcode Output
[team_showcase layout='grid'][team_showcase layout='slider'][team_showcase layout='widget']
FAQ

Frequently Asked Questions about Team Slider and Team Grid Showcase plus Team Carousel