ACF Feeds for Gravity Forms Security & Risk Analysis

wordpress.org/plugins/acf-feeds-for-gravity-forms

Write Gravity Forms submission fields into ACF fields. Accumulate values over time.

100 active installs v1.0.1 PHP 7.0+ WP 5.4.0+ Updated Aug 11, 2021
acfadvanced-custom-fieldsfeedgravity-formsintegration
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is ACF Feeds for Gravity Forms Safe to Use in 2026?

Generally Safe

Score 85/100

ACF Feeds for Gravity Forms has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4yr ago
Risk Assessment

The static analysis of 'acf-feeds-for-gravity-forms' v1.0.1 reveals a strong security posture with no identified attack surface, dangerous functions, file operations, or external HTTP requests. The plugin also demonstrates excellent practices regarding SQL queries, utilizing prepared statements exclusively, and ensures all output is properly escaped. The absence of any recorded vulnerabilities in its history further reinforces this positive assessment.

However, the complete lack of observed taint flows, while seemingly good, could also indicate that the analysis tools did not have sufficient complexity to analyze the code or that the plugin's functionality is extremely limited. The significant number of capability checks (or rather, the lack thereof) is a concern. While the attack surface is zero, indicating no direct entry points are exposed, this doesn't preclude potential vulnerabilities if the plugin's functionality were to be expanded or interact with other parts of WordPress in unexpected ways.

In conclusion, the plugin exhibits a high level of security hygiene based on the provided static analysis. The absence of vulnerabilities and adherence to secure coding practices are commendable. The primary area for potential improvement or further investigation would be the lack of capability checks, which, while not presenting an immediate threat given the current zero attack surface, represents a missed opportunity for robust access control.

Key Concerns

  • No capability checks found
Vulnerabilities
None known

ACF Feeds for Gravity Forms Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

ACF Feeds for Gravity Forms Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
1 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped1 total outputs
Attack Surface

ACF Feeds for Gravity Forms Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 1
actiongform_loadedacf-feeds-for-gravity-forms.php:11
Maintenance & Trust

ACF Feeds for Gravity Forms Maintenance & Trust

Maintenance Signals

WordPress version tested5.8.0
Last updatedAug 11, 2021
PHP min version7.0
Downloads2K

Community Trust

Rating100/100
Number of ratings1
Active installs100
Developer Profile

ACF Feeds for Gravity Forms Developer Profile

Alex Chernov

2 plugins · 500 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect ACF Feeds for Gravity Forms

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/acf-feeds-for-gravity-forms/assets/css/styles.css/wp-content/plugins/acf-feeds-for-gravity-forms/assets/js/script.js
Script Paths
/wp-content/plugins/acf-feeds-for-gravity-forms/assets/js/script.js
Version Parameters
acf-feeds-for-gravity-forms/assets/css/styles.css?ver=acf-feeds-for-gravity-forms/assets/js/script.js?ver=

HTML / DOM Fingerprints

CSS Classes
gfacff-feed-settings
HTML Comments
<!-- ACF Feeds for Gravity Forms --><!-- Begin GFACFFAddOn -->
Data Attributes
data-gf-plugin="acf-feeds-for-gravity-forms"data-gf-version="1.0.1"
JS Globals
window.GFACFF_ADDON_VERSION = '1.0.1';
FAQ

Frequently Asked Questions about ACF Feeds for Gravity Forms