
TermsFeed AutoTerms: Privacy Policy Generator, Cookie Consent, GDPR, CCPA, Terms & Conditions, Disclaimers, Cookies Policy, EULA Security & Risk Analysis
wordpress.org/plugins/auto-terms-of-service-and-privacy-policyAll-in-One compliance solution from TermsFeed: Generator of Privacy Policy, T&Cs, Affiliate Disclaimers and Cookie Consent Notice Banner.
Is TermsFeed AutoTerms: Privacy Policy Generator, Cookie Consent, GDPR, CCPA, Terms & Conditions, Disclaimers, Cookies Policy, EULA Safe to Use in 2026?
Generally Safe
Score 100/100TermsFeed AutoTerms: Privacy Policy Generator, Cookie Consent, GDPR, CCPA, Terms & Conditions, Disclaimers, Cookies Policy, EULA has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "auto-terms-of-service-and-privacy-policy" plugin v3.0.5 exhibits a generally good security posture based on the provided static analysis and vulnerability history. The absence of known CVEs and a clean vulnerability history are positive indicators. The plugin effectively uses prepared statements for all SQL queries and implements nonce and capability checks on all identified entry points (shortcodes). Furthermore, it avoids dangerous functions, file operations, and external HTTP requests.
However, a significant concern arises from the taint analysis, which reveals 3 flows with unsanitized paths. While not classified as critical or high severity, this indicates potential for injection vulnerabilities if the data source or the way it's handled allows for malicious input to reach sensitive operations without proper sanitization. Additionally, the output escaping is only 52% proper, suggesting a risk of Cross-Site Scripting (XSS) vulnerabilities if user-controlled data is displayed without adequate sanitization or encoding.
In conclusion, while the plugin demonstrates strong foundational security practices like prepared statements and authorization checks, the unsanitized taint flows and significantly low output escaping percentage are notable weaknesses. These areas require immediate attention to mitigate potential injection and XSS risks. The lack of past vulnerabilities is encouraging but does not negate the current findings.
Key Concerns
- Unsanitized taint flows detected
- Low output escaping percentage
TermsFeed AutoTerms: Privacy Policy Generator, Cookie Consent, GDPR, CCPA, Terms & Conditions, Disclaimers, Cookies Policy, EULA Security Vulnerabilities
TermsFeed AutoTerms: Privacy Policy Generator, Cookie Consent, GDPR, CCPA, Terms & Conditions, Disclaimers, Cookies Policy, EULA Release Timeline
TermsFeed AutoTerms: Privacy Policy Generator, Cookie Consent, GDPR, CCPA, Terms & Conditions, Disclaimers, Cookies Policy, EULA Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
TermsFeed AutoTerms: Privacy Policy Generator, Cookie Consent, GDPR, CCPA, Terms & Conditions, Disclaimers, Cookies Policy, EULA Attack Surface
Shortcodes 4
WordPress Hooks 43
Maintenance & Trust
TermsFeed AutoTerms: Privacy Policy Generator, Cookie Consent, GDPR, CCPA, Terms & Conditions, Disclaimers, Cookies Policy, EULA Maintenance & Trust
Maintenance Signals
Community Trust
TermsFeed AutoTerms: Privacy Policy Generator, Cookie Consent, GDPR, CCPA, Terms & Conditions, Disclaimers, Cookies Policy, EULA Alternatives
Compliance by Hu-manity.co
cookie-notice
Intentional Consent for WordPress — GDPR, CCPA, CPRA & ePrivacy compliance with consent records, autoblocking & Google Consent Mode v2.
GDPR Cookie Compliance – Cookie Banner, Cookie Consent, Cookie Notice for CCPA, EU Cookie Law
gdpr-cookie-compliance
Cookie notice banner for GDPR, CCPA, EU cookie law, data protection and privacy regulations and other cookie law and consent notice requirements on yo …
iubenda | All-in-one Compliance for GDPR / CCPA Cookie Consent + more
iubenda-cookie-law-solution
The solution for GDPR compliance + more. Get your cookie banner, privacy policy, terms and conditions and handle cookie consent in just one plugin.
Termly – GDPR/CCPA Cookie Consent Banner
uk-cookie-consent
Our easy to use cookie consent plugin can assist in your GDPR, CCPA, and ePrivacy Directive compliance efforts.
Pressidium Cookie Consent
pressidium-cookie-consent
Lightweight, user-friendly and customizable cookie consent banner to help you comply with the EU GDPR cookie law and CCPA regulations.
TermsFeed AutoTerms: Privacy Policy Generator, Cookie Consent, GDPR, CCPA, Terms & Conditions, Disclaimers, Cookies Policy, EULA Developer Profile
1 plugin · 80K total installs
How We Detect TermsFeed AutoTerms: Privacy Policy Generator, Cookie Consent, GDPR, CCPA, Terms & Conditions, Disclaimers, Cookies Policy, EULA
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/auto-terms-of-service-and-privacy-policy/css/admin.css/wp-content/plugins/auto-terms-of-service-and-privacy-policy/css/style.css/wp-content/plugins/auto-terms-of-service-and-privacy-policy/js/admin.js/wp-content/plugins/auto-terms-of-service-and-privacy-policy/js/frontend.jsauto-terms-of-service-and-privacy-policy/css/admin.css?ver=auto-terms-of-service-and-privacy-policy/css/style.css?ver=auto-terms-of-service-and-privacy-policy/js/admin.js?ver=auto-terms-of-service-and-privacy-policy/js/frontend.js?ver=HTML / DOM Fingerprints
wpautoterms-admin-pagewpautoterms-settings-warning<!-- START TermsFeed AutoTerms Admin --><!-- END TermsFeed AutoTerms Admin -->data-wpautoterms-slugwpautoterms_admin_params