WP Term Colors Security & Risk Analysis

wordpress.org/plugins/wp-term-colors

Pretty colors for categories, tags, and other taxonomy terms

800 active installs v0.1.4 PHP + WP 4.4+ Updated Jan 7, 2016
colormetametadatataxonomyterm
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is WP Term Colors Safe to Use in 2026?

Generally Safe

Score 85/100

WP Term Colors has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 10yr ago
Risk Assessment

The wp-term-colors v0.1.4 plugin exhibits a very strong security posture based on the provided static analysis. The absence of any identified dangerous functions, SQL queries that are not prepared, external HTTP requests, and file operations is highly commendable. Furthermore, the excellent output escaping rate (97%) indicates a diligent effort to prevent cross-site scripting vulnerabilities.

The plugin's attack surface is reported as zero across all categories (AJAX handlers, REST API routes, shortcodes, cron events), and notably, there are no unprotected entry points. The taint analysis also reveals zero flows, suggesting no identifiable pathways for malicious data to reach sensitive functions without proper sanitization. The vulnerability history being completely empty further reinforces the plugin's strong security track record.

Overall, this plugin appears to be developed with security best practices in mind. The lack of known vulnerabilities, combined with the clean static analysis results, suggests a low-risk profile. The only minor area for potential improvement could be the 0% nonce checks and 0% capability checks, which might indicate that certain functionalities, if they existed, could be susceptible to CSRF or unauthorized access if not handled by WordPress's core permission system. However, given the zero attack surface, this is a theoretical concern with no current evidence of exploitation.

Key Concerns

  • No nonce checks detected
  • No capability checks detected
  • Minor unescaped output (3%)
Vulnerabilities
None known

WP Term Colors Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

WP Term Colors Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
1
28 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

97% escaped29 total outputs
Attack Surface

WP Term Colors Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 11
actioncreate_termincludes\class-wp-term-meta-ui.php:123
actionedit_termincludes\class-wp-term-meta-ui.php:124
filterterms_clausesincludes\class-wp-term-meta-ui.php:127
filterget_terms_orderbyincludes\class-wp-term-meta-ui.php:128
actionadmin_initincludes\class-wp-term-meta-ui.php:152
actionload-edit-tags.phpincludes\class-wp-term-meta-ui.php:153
actionadmin_enqueue_scriptsincludes\class-wp-term-meta-ui.php:226
actionadmin_headincludes\class-wp-term-meta-ui.php:227
actionadmin_headincludes\class-wp-term-meta-ui.php:228
actionquick_edit_custom_boxincludes\class-wp-term-meta-ui.php:231
actioninitwp-term-colors.php:33
Maintenance & Trust

WP Term Colors Maintenance & Trust

Maintenance Signals

WordPress version tested4.4.34
Last updatedJan 7, 2016
PHP min version
Downloads16K

Community Trust

Rating84/100
Number of ratings5
Active installs800
Developer Profile

WP Term Colors Developer Profile

John James Jacoby

28 plugins · 332K total installs

70
trust score
Avg Security Score
87/100
Avg Patch Time
1401 days
View full developer profile
Detection Fingerprints

How We Detect WP Term Colors

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/wp-term-colors/assets/js/term-color.js
Script Paths
/wp-content/plugins/wp-term-colors/assets/js/term-color.js
Version Parameters
wp-term-colors/assets/js/term-color.js?ver=

HTML / DOM Fingerprints

CSS Classes
term-color
Data Attributes
data-color
FAQ

Frequently Asked Questions about WP Term Colors