
Zesty Custom Post Types for Paid Memberships Pro Security & Risk Analysis
wordpress.org/plugins/zesty-custom-post-types-for-paid-memberships-proRestrict any custom post type with Paid Memberships Pro.
Is Zesty Custom Post Types for Paid Memberships Pro Safe to Use in 2026?
Generally Safe
Score 85/100Zesty Custom Post Types for Paid Memberships Pro has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'zesty-custom-post-types-for-paid-memberships-pro' plugin version 1.0.0 demonstrates a strong security posture based on the provided static analysis and vulnerability history. The plugin exhibits excellent practices, including 100% proper output escaping, 100% use of prepared statements for SQL queries, and the presence of nonce checks. Notably, there are no detected dangerous functions, file operations, or external HTTP requests, further contributing to a reduced attack surface. The taint analysis also shows no unsanitized paths or vulnerabilities of critical or high severity. The complete absence of any recorded vulnerabilities, including critical and high severity issues, in its history is a significant strength, indicating a commitment to secure development or a fortunate lack of exploitation.
While the plugin appears very secure, there is a minor concern regarding the complete absence of capability checks for its single AJAX handler. Although the data indicates the AJAX handler is protected, the lack of explicit capability checks suggests that the protection might rely solely on other mechanisms, which could be less robust than a layered approach. However, given the other strong security signals and the clean vulnerability history, this is a minimal risk. Overall, the plugin is well-developed from a security perspective, with a very low risk profile.
Key Concerns
- Missing capability checks on AJAX handler
Zesty Custom Post Types for Paid Memberships Pro Security Vulnerabilities
Zesty Custom Post Types for Paid Memberships Pro Code Analysis
Output Escaping
Data Flow Analysis
Zesty Custom Post Types for Paid Memberships Pro Attack Surface
AJAX Handlers 1
WordPress Hooks 6
Maintenance & Trust
Zesty Custom Post Types for Paid Memberships Pro Maintenance & Trust
Maintenance Signals
Community Trust
Zesty Custom Post Types for Paid Memberships Pro Alternatives
Restrictions for BuddyPress
bp-restrict
Restrict BuddyPress profiles, groups, activity, and messages by login status, membership level, or profile field.
Administrator Access to PMPro Protected Content
administrator-access-to-pmpro-protected-content
Overrides the PMPro "Require Membership" settings and grants view access to any user assigned to the WordPress "Administrator" rol …
IDPay For Paid Memberships Pro
idpay-paid-memberships-pro
After installing and enabling this plugin, your customers can pay through IDPay gateway.
BP Custom Functionalities
bp-custom-functionalities
BP Custom Functionalities provides custom functionalities that regular BuddyPress users requires.
E20R Better Members List for Paid Memberships Pro
e20r-members-list
Extensible, sortable & bulk action capable members listing + export to CSV tool for Paid Memberships Pro.
Zesty Custom Post Types for Paid Memberships Pro Developer Profile
1 plugin · 10 total installs
How We Detect Zesty Custom Post Types for Paid Memberships Pro
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/zesty-custom-post-types-for-paid-memberships-pro/css/bootstrap.min.css/wp-content/plugins/zesty-custom-post-types-for-paid-memberships-pro/css/style.css/wp-content/plugins/zesty-custom-post-types-for-paid-memberships-pro/js/admin.js/wp-content/plugins/zesty-custom-post-types-for-paid-memberships-pro/js/bootstrap.bundle.min.jsHTML / DOM Fingerprints
zpmpro-ajax-save-option-iconzpmpro-ajax-save-option-icon-innerzpmpro-saving-textzpmpro-saved-textzpmpro_ajax