
WPFrank Companion Security & Risk Analysis
wordpress.org/plugins/wpfrank-companionWPFrank Companion is a companion plugin for WP Frank themes.
Is WPFrank Companion Safe to Use in 2026?
Generally Safe
Score 100/100WPFrank Companion has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The wpfrank-companion plugin v0.3.2 presents a generally positive security posture based on the static analysis. A significant strength is the complete absence of SQL injection vulnerabilities due to 100% use of prepared statements, and a high rate of output escaping (90%). The lack of dangerous functions, file operations, and external HTTP requests further contributes to a reduced attack surface. The plugin also has no recorded vulnerability history, which is a strong indicator of ongoing security awareness and a mature development process.
However, there are notable areas of concern that warrant attention. The complete lack of nonce checks and capability checks across all entry points is a significant weakness. While the static analysis reported zero entry points, this is highly unusual and could indicate an incomplete scan or a plugin that relies on external mechanisms for its functionality. If there were any hidden or unanalyzed entry points, they would be entirely unprotected. The taint analysis also reported zero flows, which, in conjunction with the lack of explicit checks, raises a flag. This could mean either no exploitable data flows exist, or they were not detected due to the absence of proper sanitization and validation mechanisms that the analysis tools might rely on.
Key Concerns
- No nonce checks found
- No capability checks found
- Unusual absence of entry points
- Unusual absence of taint flows
WPFrank Companion Security Vulnerabilities
WPFrank Companion Code Analysis
Output Escaping
WPFrank Companion Attack Surface
WordPress Hooks 45
Maintenance & Trust
WPFrank Companion Maintenance & Trust
Maintenance Signals
Community Trust
WPFrank Companion Alternatives
Avantex Companion
avantex-companion
tested up to 6.8 License: GPLv3 or later License URI: http://www.gnu.org/licenses/gpl-3.0.html Avantex Companion is a companion plugin for Avantex the …
Marin Companion
marin-companion
Marin Companion is a companion plugin for Marin theme.
Envo Companion
envo-companion
Envo Companion is a companion plugin for Webenvo themes.
Daddy Plus
daddy-plus
Daddy Plus is a useful plugin for WordPress theme by Themes Daddy.
Desert Companion
desert-companion
Desert Companion Enhances Desert Themes with additional functionality.
WPFrank Companion Developer Profile
28 plugins · 47K total installs
How We Detect WPFrank Companion
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wpfrank-companion/inc/businessexpo/assets/css/businessexpo.css/wp-content/plugins/wpfrank-companion/inc/businessexpo/assets/js/businessexpo.js/wp-content/plugins/wpfrank-companion/inc/cryptoairdrop/assets/css/cryptoairdrop.css/wp-content/plugins/wpfrank-companion/inc/cryptoairdrop/assets/js/cryptoairdrop.jswpfrank-companion/style.css?ver=wpfrank-companion/script.js?ver=HTML / DOM Fingerprints
section-headersection-subtitlesection-titledivider-maintheme-light-greytheme-darkpost-thumbnailpost-meta+8 moredata-section-idwpfrank_companion_plugin_url