Addoncraft Repeater For Elementor ACF Security & Risk Analysis

wordpress.org/plugins/addoncraft-repeater-for-elementor-acf

Addoncraft Repeater for Elementor ACF lets you display ACF Repeater fields in Elementor—design once, it auto-repeats dynamically

40 active installs v1.3 PHP 7.4+ WP 5.8+ Updated Jan 24, 2026
acfacf-repeater-elementorelementorlooprepeater
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Addoncraft Repeater For Elementor ACF Safe to Use in 2026?

Generally Safe

Score 100/100

Addoncraft Repeater For Elementor ACF has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The 'addoncraft-repeater-for-elementor-acf' plugin v1.3 exhibits a strong security posture based on the static analysis. The plugin demonstrates good practices by utilizing prepared statements for all SQL queries and properly escaping a high percentage of its output. The absence of dangerous functions, file operations, and external HTTP requests further strengthens its security. Furthermore, the limited attack surface, with only one AJAX handler and no exposed REST API routes or shortcodes, is a positive indicator. The presence of capability checks, though not explicitly tied to the AJAX handler in the provided data, is a good sign that some authorization is in place.

The taint analysis shows no identified flows with unsanitized paths, indicating no readily apparent vulnerabilities in data handling from an input to output perspective. The vulnerability history is also a significant strength, with no recorded CVEs, which suggests a history of stable and secure code. However, a notable concern is the complete absence of nonce checks on the AJAX handler. This represents a potential blind spot, as it could leave the AJAX endpoint susceptible to Cross-Site Request Forgery (CSRF) attacks if the capability checks alone are not sufficient to prevent unauthorized execution.

Overall, the plugin appears well-developed from a security standpoint, with a focus on secure coding practices like prepared statements and output escaping, and a clean vulnerability history. The primary weakness lies in the lack of nonce protection for its single AJAX entry point. This is a common oversight but one that significantly increases the risk of CSRF attacks.

Key Concerns

  • Missing nonce checks on AJAX handler
Vulnerabilities
None known

Addoncraft Repeater For Elementor ACF Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Addoncraft Repeater For Elementor ACF Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
8
116 escaped
Nonce Checks
0
Capability Checks
3
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

94% escaped124 total outputs
Attack Surface

Addoncraft Repeater For Elementor ACF Attack Surface

Entry Points1
Unprotected0

AJAX Handlers 1

authwp_ajax_repefoel_create_elementor_repeater_templateaddoncraft-repeater-for-elementor-acf.php:90
WordPress Hooks 17
actionplugins_loadedaddoncraft-repeater-for-elementor-acf.php:35
actionadmin_noticesaddoncraft-repeater-for-elementor-acf.php:41
actionadmin_noticesaddoncraft-repeater-for-elementor-acf.php:46
actionadmin_noticesaddoncraft-repeater-for-elementor-acf.php:52
actionelementor/widgets/widgets_registeredaddoncraft-repeater-for-elementor-acf.php:74
actionelementor/elements/categories_registeredaddoncraft-repeater-for-elementor-acf.php:75
actionelementor/initaddoncraft-repeater-for-elementor-acf.php:76
actionelementor/controls/registeraddoncraft-repeater-for-elementor-acf.php:77
actionwp_enqueue_scriptsaddoncraft-repeater-for-elementor-acf.php:78
actionelementor/documents/registeraddoncraft-repeater-for-elementor-acf.php:81
filterelementor/template-library/sources/local/template_typesaddoncraft-repeater-for-elementor-acf.php:84
actionelementor/admin/after_create_settingsaddoncraft-repeater-for-elementor-acf.php:87
actionelementor/editor/after_enqueue_scriptsaddoncraft-repeater-for-elementor-acf.php:89
actionadmin_noticesaddoncraft-repeater-for-elementor-acf.php:94
actionelementor/dynamic_tags/registeraddoncraft-repeater-for-elementor-acf.php:98
actionelementor/dynamic_tags/registeraddoncraft-repeater-for-elementor-acf.php:102
filterelementor/template-library/create_new_dialog_typesaddoncraft-repeater-for-elementor-acf.php:282
Maintenance & Trust

Addoncraft Repeater For Elementor ACF Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedJan 24, 2026
PHP min version7.4
Downloads440

Community Trust

Rating100/100
Number of ratings5
Active installs40
Developer Profile

Addoncraft Repeater For Elementor ACF Developer Profile

AddonsCraft

2 plugins · 40 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Addoncraft Repeater For Elementor ACF

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/addoncraft-repeater-for-elementor-acf/assets/js/repeaters_template.js/wp-content/plugins/addoncraft-repeater-for-elementor-acf/assets/css/custom-template.css
Script Paths
/wp-content/plugins/addoncraft-repeater-for-elementor-acf/assets/js/repeaters_template.js/wp-content/plugins/addoncraft-repeater-for-elementor-acf/dynamic-tags/normal/acf_text_tag.php/wp-content/plugins/addoncraft-repeater-for-elementor-acf/dynamic-tags/normal/acf_image_tag.php/wp-content/plugins/addoncraft-repeater-for-elementor-acf/dynamic-tags/normal/acf_url_tag.php/wp-content/plugins/addoncraft-repeater-for-elementor-acf/dynamic-tags/normal/site_title.php/wp-content/plugins/addoncraft-repeater-for-elementor-acf/dynamic-tags/normal/author-info.php+1 more
Version Parameters
addoncraft-repeater-for-elementor-acf/assets/js/repeaters_template.js?ver=addoncraft-repeater-for-elementor-acf/assets/css/custom-template.css?ver=

HTML / DOM Fingerprints

CSS Classes
repefoel-repeater-template
JS Globals
REPEFOELTemplateData
FAQ

Frequently Asked Questions about Addoncraft Repeater For Elementor ACF