74% rce-event

Code Review | RCE Event

WordPress plugin RCE Event scored 74% from 54 tests.

About plugin

  • Plugin page: rce-event
  • Plugin version: 1.0.0
  • PHP compatiblity: 7.4+
  • PHP version: 7.4.16
  • WordPress compatibility: 4.6-5.8
  • WordPress version: 6.3.1
  • First release: Dec 6, 2021
  • Latest release: Dec 6, 2021
  • Number of updates: 3
  • Update frequency: every 6.0 days
  • Top authors: rcemedien (100%)

Code review

54 tests

User reviews

1 review

Install metrics

10+ active / 639 total downloads

Benchmarks

Plugin footprint 65% from 16 tests

Installer Passed 1 test

🔺 Critical test (weight: 50) | The install procedure must perform silently
Installer ran successfully

Server metrics [RAM: ▼1.88MB] [CPU: ▼50.67ms] Passed 4 tests

Server-side resources used by RCE Event
Server-side resource usage in normal parameters
PageMemory (MB)CPU Time (ms)
Home /2.11 ▼1.355.41 ▼34.18
Dashboard /wp-admin2.13 ▼1.176.69 ▼44.08
Posts /wp-admin/edit.php2.13 ▼1.237.43 ▼40.52
Add New Post /wp-admin/post-new.php2.13 ▼3.767.15 ▼83.91
Media Library /wp-admin/upload.php2.13 ▼1.107.07 ▼31.74

Server storage [IO: ▲0.46MB] [DB: ▲0.00MB] Passed 3 tests

Analyzing filesystem and database footprints of this plugin
The plugin installed successfully
Filesystem: 16 new files
Database: no new tables, 13 new options
New WordPress options
rce_event_is_use_whitelabel
db_upgraded
rce_event_basic_zip_code
can_compress_scripts
rce_event_auth
rce_event_whitelabel
rce_event_url_whitelabel
widget_recent-comments
theysaidso_admin_options
widget_recent-posts
...

Browser metrics Passed 4 tests

A check of browser resources used by RCE Event
This plugin renders optimally with no browser resource issues detected
PageNodesMemory (MB)Script (ms)Layout (ms)
Home /2,834 ▲7714.78 ▲0.571.77 ▼0.6441.63 ▼9.05
Dashboard /wp-admin2,228 ▲395.83 ▲0.8798.48 ▼24.1741.29 ▼0.96
Posts /wp-admin/edit.php2,111 ▲222.03 ▼0.0238.73 ▲1.8734.38 ▲2.00
Add New Post /wp-admin/post-new.php1,538 ▲1923.18 ▲0.02672.14 ▼56.3463.66 ▲4.90
Media Library /wp-admin/upload.php1,410 ▲224.18 ▼0.0796.18 ▼15.2442.97 ▼3.20

Uninstaller [IO: ▲0.00MB] [DB: ▲0.00MB] 50% from 4 tests

🔸 Tests weight: 35 | The uninstall procedure must remove all plugin files and extra database tables
You still need to fix the following
  • The plugin did not uninstall gracefully
    • > User notice in wp-includes/functions.php+5905
    Function wp_enqueue_style was called incorrectly. Scripts and styles should not be registered or enqueued until the wp_enqueue_scripts, admin_enqueue_scripts, or login_enqueue_scripts hooks. This notice was triggered by the rce-event-style handle. Please see Debugging in WordPress for more information. (This message was added in version 3.3.0.)
  • This plugin does not fully uninstall, leaving 6 options in the database
    • theysaidso_admin_options
    • widget_recent-posts
    • can_compress_scripts
    • db_upgraded
    • widget_recent-comments
    • widget_theysaidso_widget

Smoke tests 75% from 4 tests

Server-side errors Passed 1 test

🔹 Test weight: 20 | This is a shallow check for server-side errors
Even though no errors were found, this is by no means an exhaustive test

SRP 50% from 2 tests

🔹 Tests weight: 20 | SRP (Single-Responsibility Principle) - PHP files must act as libraries and never output text or perform any action when accessed directly in a browser
Please fix the following
  • 2× GET requests to PHP files trigger server-side errors or Error 500 responses:
    • > PHP Fatal error
      Uncaught Error: Call to undefined function add_action() in wp-content/plugins/rce-event/activate.php:6
    • > PHP Fatal error
      Uncaught Error: Call to undefined function add_action() in wp-content/plugins/rce-event/init.php:4

User-side errors Passed 1 test

🔹 Test weight: 20 | This is just a short smoke test looking for browser issues
Everything seems fine on the user side

Optimizations

Plugin configuration 93% from 29 tests

readme.txt Passed 16 tests

You should put a lot of thought into formatting readme.txt as it is used by WordPress.org to prepare the public listing of your plugin
2 plugin tags: events, api

rce-event/rce_event.php 85% from 13 tests

"RCE Event" version 1.0.0's main PHP file describes plugin functionality and also serves as the entry point to any WordPress functionality
Please make the necessary changes and fix the following:
  • Description: If Twitter did it, so should we! Keep the description under 140 characters (currently 144 characters long)
  • Main file name: Even though not officially enforced, the main plugin file should be the same as the plugin slug ("rce-event.php" instead of "rce_event.php")

Code Analysis Passed 3 tests

File types Passed 1 test

🔸 Test weight: 35 | An overview of files in this plugin; executable files are not allowed
Good job! No executable or dangerous file extensions detected735 lines of code in 12 files:
LanguageFilesBlank linesComment linesLines of code
PHP11162233512
CSS1524223

PHP code Passed 2 tests

A brief analysis of cyclomatic complexity and code structure for this plugin
Although this was not an exhaustive test, there were no cyclomatic complexity issues detected
Cyclomatic complexity
Average complexity per logical line of code0.33
Average class complexity0.00
▷ Minimum class complexity0.00
▷ Maximum class complexity0.00
Average method complexity0.00
▷ Minimum method complexity0.00
▷ Maximum method complexity0.00
Code structure
Namespaces0
Interfaces0
Traits0
Classes0
▷ Abstract classes00.00%
▷ Concrete classes00.00%
▷ Final classes00.00%
Methods0
▷ Static methods00.00%
▷ Public methods00.00%
▷ Protected methods00.00%
▷ Private methods00.00%
Functions23
▷ Named functions23100.00%
▷ Anonymous functions00.00%
Constants1
▷ Global constants1100.00%
▷ Class constants00.00%
▷ Public constants00.00%

Plugin size Passed 2 tests

Image compression Passed 2 tests

It is recommended to compress PNG files in your plugin to minimize bandwidth usage
1 PNG file occupies 0.00MB with 0.00MB in potential savings
Potential savings
Compression of 1 random PNG file using pngquant
FileSize - originalSize - compressedSavings
assets/no_image.png4.66KB1.11KB▼ 76.30%