WPtrove Security & Risk Analysis

wordpress.org/plugins/wptrove

Collect and display testimonials.

0 active installs v1.0.0 PHP + WP 5.0.1+ Updated Unknown
commentsreviewtestimonials
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is WPtrove Safe to Use in 2026?

Generally Safe

Score 100/100

WPtrove has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs
Risk Assessment

The "wptrove" v1.0.0 plugin exhibits an exceptionally strong security posture based on the provided static analysis and vulnerability history. The complete absence of any attack surface entry points that lack authentication checks, combined with the lack of dangerous functions, file operations, or external HTTP requests, suggests a well-hardened codebase. Furthermore, the flawless implementation of prepared statements for all SQL queries, proper output escaping for all outputs, and the presence of nonce and capability checks demonstrate a commitment to secure coding practices. The plugin's vulnerability history is also clean, with zero recorded CVEs of any severity, indicating a lack of known exploits and a potentially stable and secure development process. This plugin appears to be very secure and unlikely to introduce vulnerabilities into a WordPress environment.

Vulnerabilities
None known

WPtrove Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

WPtrove Release Timeline

No version history available.
Code Analysis
Analyzed Mar 17, 2026

WPtrove Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
3 prepared
Unescaped Output
0
77 escaped
Nonce Checks
3
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared3 total queries

Output Escaping

100% escaped77 total outputs
Attack Surface

WPtrove Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 10
actionplugins_loadedincludes\class-wptrove.php:142
actionadmin_menuincludes\class-wptrove.php:159
filteradmin_body_classincludes\class-wptrove.php:160
actionadmin_enqueue_scriptsincludes\class-wptrove.php:162
actionadmin_enqueue_scriptsincludes\class-wptrove.php:163
actionenqueue_block_editor_assetsincludes\class-wptrove.php:165
actioninitincludes\class-wptrove.php:168
actionrest_api_initincludes\class-wptrove.php:170
actioninitincludes\class-wptrove.php:185
actionenqueue_block_assetsincludes\class-wptrove.php:200
Maintenance & Trust

WPtrove Maintenance & Trust

Maintenance Signals

WordPress version tested5.9.13
Last updatedUnknown
PHP min version
Downloads663

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

WPtrove Developer Profile

sproutient

10 plugins · 90 total installs

91
trust score
Avg Security Score
95/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect WPtrove

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/wptrove/admin/css/wptrove.css/wp-content/plugins/wptrove/admin/css/wptrove-blocks.css
Script Paths
/wp-content/plugins/wptrove/admin/js/wptrove.js/wp-content/plugins/wptrove/admin/js/wptrove-blocks.js/wp-content/plugins/wptrove/admin/js/wptrove-blocks-assist.js
Version Parameters
wptrove.css?ver=wptrove.js?ver=wptrove-blocks.css?ver=wptrove-blocks.js?ver=wptrove-blocks-assist.js?ver=

HTML / DOM Fingerprints

CSS Classes
wptrove-editor
Data Attributes
wptroveJsVariableswptroveEditorVariables
JS Globals
wptroveJsVariableswptroveEditorVariables
REST Endpoints
/wp-json/wptrove/v1/fetch-posts/wp-json/wptrove/v1/moderate-posts
FAQ

Frequently Asked Questions about WPtrove