WordPress.WP.AlternativeFunctions.strip_tags_strip_tags

strip tags strip tags

The plugin uses `strip_tags()` where WordPress-specific sanitization is usually clearer.

medium weight

Why It Shows Up

Plugin Check found `strip_tags()` in plugin code.

Why It Matters

`strip_tags()` is blunt and can leave unsafe attribute content or remove markup in ways that do not match WordPress expectations.

How to Fix

  • Use `sanitize_text_field()` for plain text input.
  • Use `wp_kses()` when limited HTML should be allowed.
  • Use context-specific escaping at output time.

Affected Plugins

RankPluginScoreErrorsWarningsInstallsUpdatedTop Issue
#1Plugin Check (PCP)012813210k+Exception Not Escaped
#2Themify Builder95,1952,0965k+Text Domain Mismatch
#3JetBackup – Backup, Restore & Migrate101,559145100k+Exception Not Escaped
#4wpForo Forum174,0332,92220k+Unsafe Printing Function
#5WPtouch – Make your WordPress Website Mobile-Friendly171,46632550k+Text Domain Mismatch
#6Prime Slider Addons for Elementor183,500230100k+Text Domain Mismatch
#7Property Hive181,9576,0273k+Missing
#8Shopping Cart & eCommerce Store185,45917,2984k+Non Prefixed Variable Found
#9WP Import Export Lite1873897940k+Non Prefixed Variable Found
#10WP Directory Kit182,1192,6172k+Non Prefixed Variable Found
#11Element Pack – Widgets, Templates & Addons for Elementor199,448517100k+Text Domain Mismatch
#12Download Monitor194251,36480k+Non Prefixed Hookname Found
#13Event Organiser191,10654420k+Text Domain Mismatch
#14Leaflet Maps Marker (Google Maps, OpenStreetMap, Bing Maps)193,2753,22810k+Output Not Escaped
#15Matomo Analytics – Powerful, Privacy-First Insights for WordPress191,909878100k+Exception Not Escaped
#16Search Atlas SEO – Premier SEO Plugin for One-Click WP Publishing & Integrated AI Optimization191,2952,6799k+Output Not Escaped
#17WP Email Template193423502k+Exception Not Escaped
#18BetterDocs – AI Documentation, Knowledge Base, Docs, Wikis, FAQ with Chatbot205081,40630k+Non Prefixed Variable Found
#19Brizy – Page Builder2058972070k+Output Not Escaped
#20Filter Everything — WordPress & WooCommerce Filters2056873050k+Output Not Escaped
#21GiveWP – Donation Plugin and Fundraising Platform203,4353,580100k+Output Not Escaped
#22Link Library201,9411,39710k+Unsafe Printing Function
#23Brevo – Email, SMS, Web Push, Chat, and more.20460646100k+Missing Unslash
#24Microthemer Lite – Visual Editor to Customize CSS201,0041,69910k+Non Prefixed Variable Found
#25Nimble Page Builder201,5911,68430k+Missing Arg Domain
#26Pix por Piggly (para Woocommerce)205471954k+Exception Not Escaped
#27Powered Cache – Caching and Optimization for WordPress – Easily Improve PageSpeed & Web Vitals Score201472313k+Exception Not Escaped
#28Robin Image Optimizer – Unlimited Image Optimization, WebP & AVIF20557541100k+Output Not Escaped
#29SpeakOut! Email Petitions208509943k+Missing
#30Razorpay for WooCommerce20974855100k+Non Prefixed Function Found
#31WPJAM Basic203283564k+Output Not Escaped
#32Store Locator WordPress212,3721,57210k+Text Domain Mismatch
#33Backup Migration219811,09380k+Non Prefixed Variable Found
#34bbPress219293,672100k+Non Prefixed Function Found
#35Pinpoint Booking System – Version 2216343283k+missing direct file access protection
#36Captcha Them All213003236k+Output Not Escaped
#37Smart Grid-Layout Design for Contact Form 7211,12673410k+Output Not Escaped
#38Comet Cache2185724520k+Output Not Escaped
#39Duplicator – Backups & Migration Plugin – Cloud Backups, Scheduled Backups, & More212,5721,2771m+Output Not Escaped
#40eRoom – Webinar & Meeting Plugin for Zoom, Google Meet, Microsoft Teams211864379k+Non Prefixed Variable Found
#41EventPrime – Events Calendar, Bookings and Tickets218724,2977k+Non Prefixed Variable Found
#42Feeds for YouTube (YouTube video, channel, and gallery plugin)21558978100k+Output Not Escaped
#43Formidable Forms – WordPress Form Builder for Contact Forms, Calculators, Quizzes & More21521,959300k+Non Prefixed Variable Found
#44Campaign Monitor for WordPress213864612k+Non Prefixed Variable Found
#45If-So Dynamic Content – Elementor & All Page Builders Personalization218897257k+Unsafe Printing Function
#46LA-Studio Element Kit for Elementor218,3901,96410k+Text Domain Mismatch
#47MailChimp Subscribe Form, Optin Builder, PopUp Builder, Form Builder211,1333,0112k+Non Prefixed Variable Found
#48Mapster WP Maps213,4402,9033k+Text Domain Mismatch
#49MotoPress Hotel Booking213,0611,03710k+Text Domain Mismatch
#50Points Management System For Gamification, Ranks, Badges, and Loyalty Rewards Program – myCred211,4693,33310k+Non Prefixed Variable Found