Prime Slider Addons for Elementor

Create responsive sliders using Elementor for hero sections, posts, logos, images, products, testimonials, and more.

v4.4.1bdthemesUpdated 2026-06-15Added Oct 7, 2019100k+ installs90% rating100% support resolved
18
Score
3,500
Errors
230
Warnings
+0
Change

Category Scores

Security0
Repo62
Performance83
Maintainability3

Top Issues by Category

i18n3,411
security168
maintainability101
performance18
supply_chain8

Issues Details

3,730 issues found in latest scan

ERROR3,376
WordPress.WP.I18n.TextDomainMismatch

Mismatched text domain. Expected 'bdthemes-prime-slider-lite' but got "bdthemes-prime-slider".

WARNING47
WordPress.Security.ValidatedSanitizedInput.MissingUnslash

$_GET['duplicate_nonce'] not unslashed before sanitization. Use wp_unslash() or similar

ERROR45
WordPress.Security.EscapeOutput.OutputNotEscaped

All output should be run through an escaping function (see the Security sections in the WordPress Developer Handbooks), found '$args['desc']'.

WARNING44
WordPress.NamingConventions.PrefixAllGlobals.NonPrefixedVariableFound

Global variables defined by a theme/plugin should start with the theme/plugin prefix. Found: "$active_modules".

WARNING27
WordPress.Security.ValidatedSanitizedInput.InputNotSanitized

Detected usage of a non-sanitized input variable: $_GET['duplicate_nonce']

ERROR25
WordPress.WP.I18n.MissingTranslatorsComment

A function call to __() with texts containing placeholders was found, but was not accompanied by a "translators:" comment on the line above to clarify the meaning of the placeholders.

WARNING22
WordPress.Security.NonceVerification.Recommended

Processing form data without nonce verification.

WARNING15
WordPressVIPMinimum.Performance.WPQueryParams.PostNotIn_exclude

Using exclusionary parameters, like exclude, in calls to get_posts() should be done with caution, see https://wpvip.com/documentation/performance-improvements-by-removing-usage-of-post__not_in/ for more information.

WARNING13
WordPress.NamingConventions.PrefixAllGlobals.NonPrefixedFunctionFound

Functions declared in the global namespace by a theme/plugin should start with the theme/plugin prefix. Found: "_is_elementor_installed".

WARNING12
WordPress.Security.NonceVerification.Missing

Processing form data without nonce verification.

WARNING9
WordPress.PHP.DevelopmentFunctions.prevent_path_disclosure_error_reporting

error_reporting() can lead to full path disclosure.

WARNING9
WordPress.Security.ValidatedSanitizedInput.InputNotValidated

Detected usage of a possibly undefined superglobal array index: $_POST[$moudle_id]. Check that the array index exists before using it.

ERROR9
missing_direct_file_access_protection

PHP file should prevent direct access. Add a check like: if ( ! defined( 'ABSPATH' ) ) exit;

ERROR8
compressed_files

Compressed files are not permitted.

WARNING6
WordPress.NamingConventions.PrefixAllGlobals.NonPrefixedHooknameFound

Hook names invoked by a theme/plugin should start with the theme/plugin prefix. Found: "'wsa_form_bottom_' . $form['id']".

ERROR5
WordPress.WP.AlternativeFunctions.strip_tags_strip_tags

strip_tags() is discouraged. Use the more comprehensive wp_strip_all_tags() instead.

ERROR5
WordPress.WP.I18n.NonSingularStringLiteralDomain

The $domain parameter must be a single text string literal. Found: $this->settings['text_domain']

ERROR5
WordPress.WP.I18n.UnorderedPlaceholdersText

Multiple placeholders in translatable strings should be ordered. Expected "%1$1s, %2$2s", but got "%1s, %2s" in 'This feature will not work in the Firefox browser untill you enable browser compatibility so please %1s look here %2s'.

WARNING4
WordPress.Security.SafeRedirect.wp_redirect_wp_redirect

wp_redirect() found. Using wp_safe_redirect(), along with the "allowed_redirect_hosts" filter if needed, can help avoid any chances of malicious redirects within code. It is also important to remember to call exit() after a redirect so that no other unwanted code is executed.

ERROR4
WordPress.WP.AlternativeFunctions.file_system_operations_rmdir

File operations should use WP_Filesystem methods instead of direct PHP filesystem calls. Found: rmdir().

ERROR4
WordPress.WP.AlternativeFunctions.unlink_unlink

unlink() is discouraged. Use wp_delete_file() to delete a file.

WARNING4
WordPress.WP.EnqueuedResourceParameters.NotInFooter

In footer ($in_footer) is not set explicitly wp_enqueue_script; It is recommended to load scripts in the footer. Please set this value to `true` to load it in the footer, or explicitly `false` if it should be loaded in the header.

WARNING3
WordPress.DB.SlowDBQuery.slow_db_query_meta_key

Detected usage of meta_key, possible slow query.

WARNING3
WordPressVIPMinimum.Performance.WPQueryParams.PostNotIn_post__not_in

Using exclusionary parameters, like post__not_in, in calls to get_posts() should be done with caution, see https://wpvip.com/documentation/performance-improvements-by-removing-usage-of-post__not_in/ for more information.

ERROR2
PluginCheck.Security.DirectDB.UnescapedDBParameter

Unescaped parameter $bdt_post_id used in $wpdb->get_results()\n$bdt_post_id used without escaping.

Latest Snapshot

Findings

3,730

Errors

3,500

Warnings

230

Score History

First score snapshot

First scan completed Jun 19, 2026

v4.4.1 · Plugin Check 2.0.0 · Model 2026.06-mvp-static-v2

Jun 19, 2026

v4.4.1

18

Latest

Findings
3,730
Errors
3,500
Warnings
230
Plugin Check
2.0.0
Model
2026.06-mvp-static-v2

Related Plugins