Admark CRM Security & Risk Analysis

wordpress.org/plugins/admark-crm

Short Description: Send WooCommerce WhatsApp notifications using Admark CRM API.

0 active installs v3.3.7 PHP 7.4+ WP 5.8+ Updated Jun 16, 2026
crmnotificationswhatsappwoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Admark CRM Safe to Use in 2026?

Generally Safe

Score 100/100

Admark CRM has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The "admark-crm" v1.0.0 plugin exhibits a strong security posture based on the provided static analysis. The absence of any AJAX handlers, REST API routes, shortcodes, or cron events, particularly those lacking authentication checks, significantly limits its attack surface. Furthermore, the code demonstrates excellent security practices with 100% of SQL queries using prepared statements and all output properly escaped. The plugin also correctly implements nonce and capability checks, and avoids the use of dangerous functions or file operations. The external HTTP requests and the single nonce check are present but not indicative of immediate risks given the limited entry points.

The taint analysis reveals no flows with unsanitized paths, and the vulnerability history shows zero recorded CVEs. This clean record suggests a well-developed and secure plugin, or at least one that has not historically been a target or suffered from exploitable flaws. The lack of bundled libraries also eliminates the risk associated with outdated third-party components. However, the presence of external HTTP requests, while not inherently risky, is a minor area that could be scrutinized further to ensure they are only making requests to trusted and necessary endpoints.

In conclusion, "admark-crm" v1.0.0 appears to be a highly secure plugin. Its minimal attack surface, robust coding practices regarding SQL and output handling, and a clean vulnerability history collectively point to a low-risk component. The minor presence of external HTTP requests is the only area that warrants a basic level of awareness, but does not detract from the overall strong security assessment.

Vulnerabilities
None known

Admark CRM Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Admark CRM Release Timeline

v3.3.7Current
v3.3.6
v3.3.5
v3.3.2
v3.3.1
v3.3.0
v3.2.15
v3.2.14
v3.2.13
v3.2.12
v3.2.11
v3.2.10
v3.2.9
v3.2.8
v3.2.7
v3.2.6
v3.2.5
v3.2.4
v3.2.3
v3.2.2
Code Analysis
Analyzed Mar 17, 2026

Admark CRM Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
29 escaped
Nonce Checks
1
Capability Checks
1
File Operations
0
External Requests
2
Bundled Libraries
0

Output Escaping

100% escaped29 total outputs
Data Flows · Security
All sanitized

Data Flow Analysis

2 flows
wats_render_settings_page (admark-crm.php:357)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Admark CRM Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 4
actionwoocommerce_thankyouadmark-crm.php:231
actionadmin_menuadmark-crm.php:309
actionadmin_enqueue_scriptsadmark-crm.php:322
actionadmin_initadmark-crm.php:336
Maintenance & Trust

Admark CRM Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.6
Last updatedJun 16, 2026
PHP min version7.4
Downloads931

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Admark CRM Developer Profile

Admark Multiventures

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Admark CRM

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/admark-crm/admark-crm.php

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Admark CRM