Security snapshot
Across the 73 janzeman-shared-albums-for-google-photos sites we've scanned, compared to the all-WordPress average.
Shared Albums for Google Photos (by JanZeman)
Shared Albums for Google Photos (by JanZeman) allows you to easily display publicly shared Google Photos albums in your WordPress posts and pages using a simple shortcode. The plugin uses the modern Swiper library to provide a beautiful, touch-enabled gallery experience.
Note: This plugin is not affiliated with or endorsed by Google LLC. Google Photos™ is a trademark of Google LLC.
Features
- Google Photos Gallery And Slider – Display public Google Photos albums as responsive galleries or sliders
- Photo And Video Support – Supports both images and videos from shared Google Photos albums
- Fullscreen Viewer – Mobile-friendly fullscreen viewing with touch gestures, keyboard controls, and slideshow support
- Photo Info Overlays – Dynamic placeholders for counters, filenames, dimensions, dates, and EXIF data
- Download And Link Buttons – Optional inline and fullscreen action buttons
- Performance Features – Lazy loading, progressive loading, caching, and large album support
- Shortcode Playground – Admin-only sandbox on the Settings page for experimenting with
[jzsa-album]shortcodes and previews - Mosaic Strip – Optional mosaic thumbnail strip alongside the main viewer
Many more customization parameters and samples are available on the plugin’s Settings & Onboarding page.
How It Works
The plugin fetches your public Google Photos album and creates a responsive gallery. Simply paste the share link from Google Photos into the shortcode.
Security & Error Handling
- SSRF protection – validates Google Photos URLs
- Proper output escaping for XSS prevention
- WordPress coding standards compliant
- Swiper library bundled locally
- User-friendly error messages for invalid album links
Usage
Basic Usage
[jzsa-album link="https://photos.google.com/share/AF1QipOg3EA51ATc_YWHyfcffDCzNZFsVTU_uBqSEKFix7LY80DIgH3lMkLwt4QDTHd8EQ?key=RGwySFNhbmhqMFBDbnZNUUtwY0stNy1XV1JRbE9R"]
Common Example
[jzsa-album link="https://photos.google.com/share/AF1QipOg3EA51ATc_YWHyfcffDCzNZFsVTU_uBqSEKFix7LY80DIgH3lMkLwt4QDTHd8EQ?key=RGwySFNhbmhqMFBDbnZNUUtwY0stNy1XV1JRbE9R" mode="slider" corner-radius="16" show-link-button="true" show-download-button="true"]
Shortcode Parameters
The only required parameter is link – the Google Photos share URL.
All other parameters are optional.
This readme intentionally keeps shortcode examples short to avoid drift.
For the complete and current parameter reference, defaults, inheritance rules, a very very large number of customization parameters, many samples, and the shortcode playground, use the plugin’s Settings & Onboarding page in WordPress admin:
Settings -> Shared Albums for Google Photos
Getting Your Album Share Link
- Open Google Photos and select an album
- Click the share button (or three-dot menu > Share)
- Click “Create link” or “Get link”
-
Copy the album share link and paste it into the shortcode:
[jzsa-album link=”https://photos.google.com/share/AF1QipNxLo…”]
Important: The album must be public (shared via link) for the plugin to access it.
Credits
Privacy Policy
This plugin does not collect or store any user data.
Use of external Google services
- The plugin fetches public Google Photos album pages from
https://photos.google.comand image files from*.googleusercontent.comin order to render the galleries. - Only publicly shared album links are supported; the plugin has no access to private albums or any content that is not already available via a public share link.
- The plugin does not collect, store, or transmit user credentials or personal data. It only caches album HTML and image URLs in WordPress transients for performance, and this cache is stored locally in your WordPress database.
Support
- Bug reports: Open an issue on GitHub
- Feature requests: Post on the support forum
- Leave a rating: Review on WordPress.org
- Buy Me a Coffee: buymeacoffee.com/janzeman
| Domain | Exposures | Headers | Last Checked |
|---|---|---|---|
| i*s*n*e*d*s*a*e*r*.es (WP 6.9.7) | F | Sep 1, 2026 | |
| c*o*.net (WP 7.1) | F | Sep 1, 2026 | |
| u*s*a*a*a.org (WP 7.0.4) | F | Aug 30, 2026 | |
| t*n*b*r*t*n*i*.com (WP 7.0.4) | F | Aug 30, 2026 | |
| t*n*b*r*t*n*i*.no (WP 7.0.4) | F | Aug 30, 2026 | |
| t*l*c*l*k*h*a.org (WP 7.1) | F | Aug 30, 2026 | |
| u*d*r*h*s*y.c*.il (WP 7.0.4) | F | Aug 30, 2026 | |
| p*c*.sydney | F | Aug 29, 2026 | |
| m*s*l*c*r*f*h*w*e*.com | F | Aug 28, 2026 | |
| j*r*e*e*a.com (WP 6.9.7) | A | Aug 28, 2026 | |
| g*n*a*e*a*d*r.c*m.br (WP 7.1) | F | Aug 27, 2026 | |
| s*y*s*a*d*l*i*n*e.org | F | Aug 26, 2026 | |
| b*t*e*c*i*b*a*d.com | F | Aug 25, 2026 | |
| c*r*a*i*e*e*.com (WP 6.9.7) | D | Aug 24, 2026 | |
| s*l*r*r*z*n*.org | D | Aug 24, 2026 | |
| t*r*e*i*n*i*t*r*a*i*n*l*c*o*l.com (WP 7.1) | F | Aug 24, 2026 | |
| w*c*0*6.com | F | Aug 24, 2026 | |
| 2*0*8*.com (WP 7.1) | F | Aug 22, 2026 | |
| c*c*o*d*i*a*d.com (WP 7.1) | F | Aug 21, 2026 | |
| e*e*l*n*c*s*r.com (WP 7.1) | F | Aug 21, 2026 | |
| p*o*e*t*o*t*o*s*u*m*t.com (WP 7.0.4) | F | Aug 20, 2026 | |
| l*s*a*l*s*o*o*n*.fr (WP 7.0.1) | F | Aug 20, 2026 | |
| h*s*o*y*f*a*o*a*a.in (WP 7.0.4) | D | Aug 19, 2026 | |
| b*t*s*e*r*-*u*r*m*r.com (WP 7.0.3) | B | Aug 19, 2026 | |
| l*c*a*h*u*e*i*.com (WP 7.0.4) | F | Aug 19, 2026 | |
| s*k.no (WP 7.0.4) | F | Aug 18, 2026 | |
| s*n*e*j*r*t*.no (WP 7.0.4) | F | Aug 18, 2026 | |
| j*r*e*e*a.org (WP 6.9.7) | A | Aug 18, 2026 | |
| k*f*-*d.org | F | Aug 18, 2026 | |
| s*x*e*o*.com | A | Aug 18, 2026 | |
| a*l*h*.com (WP 7.0.4) | F | Aug 17, 2026 | |
| v*t*s*o*.com | F | Aug 16, 2026 | |
| v*s*e*d*h*p.com | F | Aug 16, 2026 | |
| m*t*l*i*s.us | F | Aug 16, 2026 | |
| s*n*a*u*t*r*a*u*t*.com (WP 7.0) | F | Aug 16, 2026 | |
| p*o*e*r*r*v*.org | F | Aug 16, 2026 | |
| c*v*p*o*r*e*d*n*c.com | F | Aug 15, 2026 | |
| c*v*p*o*r*e*d*.com | F | Aug 15, 2026 | |
| k*z*y*.pl (WP 7.0.4) | F | Aug 14, 2026 | |
| c*m*o*k*y*h*w*a*e.com (WP 7.0.2) | F | Aug 4, 2026 | |
| k*l*u*k*e*s*h*.de (WP 7.0.2) | F | Aug 2, 2026 | |
| b*c*w*n*.com | F | Aug 1, 2026 | |
| m*n*r*a*m*l*d*w*.com (WP 7.0.2) | F | Aug 1, 2026 | |
| r*n*o*t*e*n*e*n*t*o*a*e*e*a*s*s*a*g*r*.fr (WP 7.0.2) | F | Aug 1, 2026 | |
| g*p*h*n*b*l*.com (WP 7.0.2) | D | Aug 1, 2026 | |
| f*x*o*o*u*i*.com (WP 7.0.2) | F | Jul 31, 2026 | |
| m*c*i*i*a*.com | F | Jul 31, 2026 | |
| u*b*n*a*t*r*.com | F | Jul 30, 2026 | |
| h*m*o*k*o*g*.org (WP 7.0.2) | F | Jul 28, 2026 | |
| d*a*t*a*p.pl (WP 6.9.5) | F | Jul 28, 2026 | |
| l*s*l*a*j*d*.com | F | Jul 28, 2026 | |
| c*l*e*e*o*s*s.org (WP 7.0.1) | C | Jul 28, 2026 | |
| c*n*e*q*e*a*o*o.org | F | Jul 27, 2026 | |
| p*n*t*i*e*d*d*.com (WP 7.0.2) | F | Jul 26, 2026 | |
| s*p*u*s*i*d*r*a*t*n*c*o*l.com (WP 6.9.5) | F | Jul 25, 2026 | |
| s*e*h*e*s.com (WP 7.0.2) | C | Jul 23, 2026 | |
| a*l*h*.es (WP 7.0.2) | F | Jul 22, 2026 | |
| o*d*r*g*n.org | F | Jul 22, 2026 | |
| u*s*a*k*i*e*l*b.com (WP 7.0.2) | F | Jul 22, 2026 | |
| e*c*t*i*o*d*i*h*.org (WP 7.0) | F | Jul 21, 2026 | |
| t*o*i*g*i*.com (WP 7.0) | F | Jul 20, 2026 | |
| m*c*a*l*h*l*n.c*.uk (WP 7.0.2) | F | Jul 20, 2026 | |
| o*e*n*c*.cz (WP 7.0) | F | Jul 20, 2026 | |
| y*t*e*o*e.com | F | Jul 18, 2026 | |
| b*a*i*i*p*u*.com | F | Jul 17, 2026 | |
| k*r*s*o*p*t*r.com (WP 6.9.4) | F | Jul 17, 2026 | |
| m*k*t*.com (WP 6.9.4) | F | Jul 17, 2026 | |
| r*s*o*e*a*e*s*e*s.com | F | Jul 16, 2026 | |
| s*l*r*a*b*.com | D | Jul 16, 2026 | |
| v*o*a*i.cz | F | Jul 16, 2026 | |
| e*a*h*y*.by (WP 7.0.1) | D | Jul 16, 2026 | |
| b*n*e*i*l*p*d*a*t.com | F | Jul 15, 2026 | |
| v*r*d*o.com | F | Jul 15, 2026 |