XPAC Lottie Interactive Animations Security & Risk Analysis

wordpress.org/plugins/xpac-lottie-interactive-animation

A powerful tool to add impressive light-weight animations to your website with a Wordpress native site editor, optimized for performance and Full Site …

60 active installs v1.0.0 PHP 7.1+ WP 5.5.0+ Updated May 3, 2022
animationblockgutenberg-blockinteractivelottie
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is XPAC Lottie Interactive Animations Safe to Use in 2026?

Generally Safe

Score 85/100

XPAC Lottie Interactive Animations has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3yr ago
Risk Assessment

Based on the static analysis, the xpac-lottie-interactive-animation plugin v1.0.0 exhibits a very strong security posture. There are no identified vulnerabilities in the code, including dangerous functions, unescaped output, or direct SQL queries. The complete absence of AJAX handlers, REST API routes, shortcodes, and cron events significantly limits the potential attack surface. Furthermore, the plugin demonstrates good practices by not making external HTTP requests and not bundling external libraries, which can often be a source of vulnerabilities.

The plugin's vulnerability history is also exceptionally clean, with no recorded CVEs. This suggests a well-maintained and secure codebase. The lack of any identified taint flows, even critical or high severity ones, further reinforces the impression that the plugin is robust against common injection-type attacks. The 100% usage of prepared statements for any potential SQL queries and 100% proper output escaping are also positive indicators.

While the current data suggests a highly secure plugin, it's important to acknowledge that this analysis is based on a specific version and static code review. Future updates could introduce vulnerabilities. However, for version 1.0.0, the plugin appears to be exceptionally well-secured, with no apparent weaknesses identified in the provided data.

Vulnerabilities
None known

XPAC Lottie Interactive Animations Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

XPAC Lottie Interactive Animations Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
1
External Requests
0
Bundled Libraries
0
Attack Surface

XPAC Lottie Interactive Animations Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 2
actioninitsrc\blocks\BaseBlock.php:28
filterupload_mimessrc\Bootstrap.php:26
Maintenance & Trust

XPAC Lottie Interactive Animations Maintenance & Trust

Maintenance Signals

WordPress version tested5.9.13
Last updatedMay 3, 2022
PHP min version7.1
Downloads2K

Community Trust

Rating100/100
Number of ratings1
Active installs60
Developer Profile

XPAC Lottie Interactive Animations Developer Profile

xpac

1 plugin · 60 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect XPAC Lottie Interactive Animations

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/xpac-lottie-interactive-animation/dist/blocks/lottie/view.asset.php
Script Paths
/wp-content/plugins/xpac-lottie-interactive-animation/dist/blocks/lottie/index.js

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about XPAC Lottie Interactive Animations