
YetiLabs Post Alerts for Slack Security & Risk Analysis
wordpress.org/plugins/yetilabs-post-alerts-for-slackSend Slack messages when posts are published in specific categories, using configurable rules (category → channel → message template).
Is YetiLabs Post Alerts for Slack Safe to Use in 2026?
Generally Safe
Score 100/100YetiLabs Post Alerts for Slack has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "yetilabs-post-alerts-for-slack" v3.9.0 plugin exhibits a generally strong security posture based on the provided static analysis and vulnerability history. The absence of any identified CVEs, coupled with a clean taint analysis and a lack of dangerous functions or raw SQL queries, is highly encouraging. The plugin also demonstrates good practices by implementing capability checks and nonce checks where relevant, and correctly utilizing prepared statements for its SQL operations. The plugin's code signals show a good degree of output escaping, with only a small percentage of outputs potentially not being properly sanitized, which is a minor concern but not a critical one.
However, the presence of two external HTTP requests warrants a closer look, as these could potentially be points of vulnerability if not handled securely. While no critical or high-severity issues were found in the taint analysis, it's important to note that only two flows were analyzed, which might not represent the entire plugin's functionality. The overall lack of reported vulnerabilities in its history is a significant strength, suggesting a commitment to security by the developers or a history of minor issues that were promptly addressed. Despite the minor concerns regarding unescaped output and external HTTP requests, the plugin appears to be relatively secure for its current version.
Key Concerns
- External HTTP requests without explicit security checks
- Some outputs not properly escaped
YetiLabs Post Alerts for Slack Security Vulnerabilities
YetiLabs Post Alerts for Slack Code Analysis
Output Escaping
Data Flow Analysis
YetiLabs Post Alerts for Slack Attack Surface
WordPress Hooks 6
Maintenance & Trust
YetiLabs Post Alerts for Slack Maintenance & Trust
Maintenance Signals
Community Trust
YetiLabs Post Alerts for Slack Alternatives
List category posts
list-category-posts
Very customizable plugin to list posts by category (or tag, author and more) in a post, page or widget. Uses the [catlist] shortcode to select posts.
Category Posts Widget
category-posts
Adds a widget that shows the most recent posts from a single category.
WP Telegram (Auto Post and Notifications)
wptelegram
Integrate your WordPress site perfectly with Telegram with full control.
Essential Widgets
essential-widgets
Essential Widgets is a WordPress plugin for widgets that allows you to create and add amazing widgets with high customization option
Flexible Posts Widget
flexible-posts-widget
An advanced posts display widget with many options. Display posts in your sidebars any way you'd like!
YetiLabs Post Alerts for Slack Developer Profile
1 plugin · 0 total installs
How We Detect YetiLabs Post Alerts for Slack
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/yetilabs-post-alerts-for-slack/assets/js/admin-settings.js/wp-content/plugins/yetilabs-post-alerts-for-slack/assets/js/admin-settings.jsHTML / DOM Fingerprints
data-ylps-add-ruledata-ylps-remove-ruledata-ylps-rule-indexylps_settings