Cryptocurrency Donation Widget – Accept Bitcoin, Ethereum, and more – Bytemart.org Security & Risk Analysis

wordpress.org/plugins/bitcoin-donation-and-fundraising-widget

Accept Bitcoin, Ether, Dogecoin, TRON, Dash and other popular cryptocurrencies as donation on your website.

10 active installs v0.1 PHP 7.0+ WP 5.0+ Updated Unknown
bitcoinbitcoin-donationcrypto-donationdonationwordpress-donation-plugin
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Cryptocurrency Donation Widget – Accept Bitcoin, Ethereum, and more – Bytemart.org Safe to Use in 2026?

Generally Safe

Score 100/100

Cryptocurrency Donation Widget – Accept Bitcoin, Ethereum, and more – Bytemart.org has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs
Risk Assessment

The Bitcoin Donation and Fundraising Widget plugin version 0.1 presents a generally positive security posture based on the provided static analysis. The absence of AJAX handlers, REST API routes, shortcodes, and cron events significantly limits the attack surface. Furthermore, the code demonstrates good practices by utilizing prepared statements for all SQL queries and implementing nonce checks. The plugin also performs capability checks, which is crucial for access control.

However, there are some areas for concern. The taint analysis revealed one flow with an unsanitized path, which, while not classified as critical or high severity in this instance, warrants careful review as unsanitized paths can be a gateway for various vulnerabilities. Additionally, the output escaping is only properly implemented in 70% of cases, meaning a significant portion of output might be vulnerable to Cross-Site Scripting (XSS) attacks. The plugin's vulnerability history is clean, indicating a lack of publicly known issues, which is a strong positive, but this is for a very early version.

In conclusion, the plugin exhibits strengths in its limited attack surface and adherence to some secure coding practices. The primary weaknesses lie in the identified unsanitized path flow and the moderate percentage of properly escaped output. The lack of historical vulnerabilities is promising but should be considered in the context of the plugin's early version.

Key Concerns

  • Unsanitized path flow detected
  • Moderate percentage of unescaped output
Vulnerabilities
None known

Cryptocurrency Donation Widget – Accept Bitcoin, Ethereum, and more – Bytemart.org Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Cryptocurrency Donation Widget – Accept Bitcoin, Ethereum, and more – Bytemart.org Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
7
16 escaped
Nonce Checks
2
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

70% escaped23 total outputs
Data Flows
1 unsanitized

Data Flow Analysis

2 flows1 with unsanitized paths
widget (index.php:55)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Cryptocurrency Donation Widget – Accept Bitcoin, Ethereum, and more – Bytemart.org Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 4
actionadmin_initindex.php:44
actionadmin_initindex.php:45
actionadmin_noticesindex.php:177
actionwidgets_initindex.php:238
Maintenance & Trust

Cryptocurrency Donation Widget – Accept Bitcoin, Ethereum, and more – Bytemart.org Maintenance & Trust

Maintenance Signals

WordPress version tested5.4.19
Last updatedUnknown
PHP min version7.0
Downloads5K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Cryptocurrency Donation Widget – Accept Bitcoin, Ethereum, and more – Bytemart.org Developer Profile

TrillionCrypto.com

1 plugin · 10 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Cryptocurrency Donation Widget – Accept Bitcoin, Ethereum, and more – Bytemart.org

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

CSS Classes
code-widget
Data Attributes
id="btcdnt"name="btcdnt"id="btcdnt_title"name="btcdnt_title"id="btcdnt_content"name="btcdnt_content"
FAQ

Frequently Asked Questions about Cryptocurrency Donation Widget – Accept Bitcoin, Ethereum, and more – Bytemart.org