
Auto Download Buttons Security & Risk Analysis
wordpress.org/plugins/auto-download-buttons*** Embed stylish, delayed auto-download buttons with customizable timers, dynamic file detection, and advanced styling options. ***
Is Auto Download Buttons Safe to Use in 2026?
Generally Safe
Score 100/100Auto Download Buttons has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "auto-download-buttons" plugin v1.0.2 exhibits a generally strong security posture based on the provided static analysis. The absence of dangerous functions, raw SQL queries, file operations, and external HTTP requests is a significant positive indicator. Furthermore, the high percentage of properly escaped output (89%) suggests a diligent approach to preventing cross-site scripting (XSS) vulnerabilities. The plugin also benefits from having no recorded vulnerabilities or CVEs in its history, which implies a history of stable and secure development.
However, a key area of concern is the lack of nonce checks and the limited capability checks. While there's only one shortcode and no unprotected AJAX handlers or REST API routes, the presence of a single shortcode without explicit nonce validation could potentially be an entry point for certain types of attacks if the shortcode's functionality is not inherently secured. The fact that 0 out of 0 AJAX handlers are unprotected and 0 out of 0 REST API routes are unprotected is good, but the single shortcode without explicit mention of nonce checks remains a potential weakness. Overall, the plugin is well-secured in many respects, but attention should be paid to the security of the shortcode's implementation.
Key Concerns
- Shortcode without explicit nonce checks
- Only 1 capability check for entry points
Auto Download Buttons Security Vulnerabilities
Auto Download Buttons Code Analysis
Output Escaping
Auto Download Buttons Attack Surface
Shortcodes 1
WordPress Hooks 9
Maintenance & Trust
Auto Download Buttons Maintenance & Trust
Maintenance Signals
Community Trust
Auto Download Buttons Alternatives
Countdown Timer
countdown-timer-abt
Simple countdown timer shortcode. Specify date/time, will show YMD... until target.
WP Shortcodes Plugin — Shortcodes Ultimate
shortcodes-ultimate
A comprehensive collection of visual components for your site
MW WP Form
mw-wp-form
MW WP Form is shortcode base contact form plugin. This plugin have many features. For example you can use many validation rules, inquiry data saving, …
Shortcoder — Create Shortcodes for Anything
shortcoder
Create custom "Shortcodes" easily for HTML, JavaScript, CSS code snippets and use the shortcodes within posts, pages & widgets
Display Posts – Easy lists, grids, navigation, and more
display-posts-shortcode
Add a listing of content on your website using a simple shortcode. Filter the results by category, author, and more.
Auto Download Buttons Developer Profile
1 plugin · 0 total installs
How We Detect Auto Download Buttons
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/auto-download-buttons/assets/css/adbwd-style.css/wp-content/plugins/auto-download-buttons/assets/js/adbwd-script.js/wp-content/plugins/auto-download-buttons/assets/js/adbwd-script.jsauto-download-buttons/assets/css/adbwd-style.css?ver=auto-download-buttons/assets/js/adbwd-script.js?ver=HTML / DOM Fingerprints
adbwd-download-button-containeradbwd-flashcarddata-download-urldata-countdown-secondsdata-hover-textdata-download-nameadbwdInitButtonadbwdAssetsLoaded<div class="adbwd-download-button-container" id="<button class="adbwd-download-button" data-download-url="<div class="adbwd-flashcard" style="--adb-card-bg:Error: The [auto-download-button] shortcode requires a "url" attribute to be set.