[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fQscJsVR5yn4gtedbZpesOJgVqclQumWZ0MsZs-SWEzg":3,"$fiydHNvcc0YHjdXFa8ncD_-W4RleAJbt7HyaeQxfTPyg":206},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":18,"tags":19,"homepage":23,"download_link":24,"security_score":25,"vuln_count":26,"unpatched_count":26,"last_vuln_date":27,"fetched_at":28,"vulnerabilities":29,"developer":30,"crawl_stats":27,"alternatives":35,"analysis":125,"fingerprints":183},"bittipit-bitcoin-donation-button","Bittip.It – Bitcoin Donation Button","1.0.1","bpj50","https:\u002F\u002Fprofiles.wordpress.org\u002Fbpj50\u002F","\u003Cp>Enter your Bitcoin address via the settings page and choose whether you want it to appear on posts\u002Fpages. A button will appear and, when clicked, an iframe is loaded with a qr code allowing your readers to donate to you.\u003C\u002Fp>\n\u003Cp>100% goes to you and does so directly.\u003C\u002Fp>\n\u003Ch3>External Files\u003C\u002Fh3>\n\u003Cp>The plugin adds 4 externally hosted files to the DOM:\u003C\u002Fp>\n\u003Cp>2 Image files\u003Cbr \u002F>\n1 CSS File\u003Cbr \u002F>\n1 (of two possible) Javascript files\u003C\u002Fp>\n\u003Cp>https:\u002F\u002Fbitcoinsberlin.com\u002Fwp-content\u002Fuploads\u002F2013\u002F01\u002Fbutton-loader.js\u003C\u002Fp>\n\u003Cp>OR\u003C\u002Fp>\n\u003Cp>http:\u002F\u002Fbittip.it\u002Fcdn\u002Fbutton-loader.js\u003C\u002Fp>\n\u003Cp>The files are identical. The file that is loaded depends on your protocol. If your site uses ‘https’ then the ‘https’ version must be loaded.\u003C\u002Fp>\n\u003Cp>The button works like any normal web button including Twitter and Flattr buttons. You copy a code snippet into your project and when the project is run, CSS and Javascript is added to your head to activate the buttons.\u003C\u002Fp>\n\u003Cp>The CSS is for styling the button. The Javascript performs several tasks.\u003C\u002Fp>\n\u003Ch4>What the Javascript does\u003C\u002Fh4>\n\u003Cp>1) Loads the ammount of donations via an ajax function performed on “htt:\u002F\u002Fbittip.it”\u003Cbr \u002F>\n2) Attaches a click event to the button to open the iframe for donating\u003Cbr \u002F>\n3) Creates the outer frame of the popup\u003C\u002Fp>\n\u003Cp>While these files could be hosted on wordpress, it is neater if they are hosted off site as the majority of users will have copied the snippit directly from the site, opposed to installing the WordPress plugin.\u003C\u002Fp>\n\u003Cp>Full Support:\u003Cbr \u002F>\nhttp:\u002F\u002Fbittip.it\u002Fwordpress-plugin\u002F\u003C\u002Fp>\n","Bittip.It Plugin",10,6351,60,2,"2013-12-09T18:09:00.000Z","3.4.2","3.0.1","",[20,21,22],"bitcoin","donate","flickr","http:\u002F\u002Fbittip.it\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fbittipit-bitcoin-donation-button.zip",85,0,null,"2026-04-06T09:54:40.288Z",[],{"slug":7,"display_name":7,"profile_url":8,"plugin_count":14,"total_installs":31,"avg_security_score":25,"avg_patch_time_days":32,"trust_score":33,"computed_at":34},20,30,84,"2026-04-10T15:50:21.529Z",[36,57,75,92,108],{"slug":37,"name":38,"version":39,"author":40,"author_profile":41,"description":42,"short_description":43,"active_installs":44,"downloaded":45,"rating":46,"num_ratings":47,"last_updated":48,"tested_up_to":49,"requires_at_least":50,"requires_php":18,"tags":51,"homepage":55,"download_link":56,"security_score":25,"vuln_count":26,"unpatched_count":26,"last_vuln_date":27,"fetched_at":28},"bitmate-author-donations","BitMate Author Donations","2.0.2","Daniel McClure","https:\u002F\u002Fprofiles.wordpress.org\u002Fdanielmcclure\u002F","\u003Cp>BitMate Author Donations is a WordPress plugin for authors on WordPress powered sites to accept cryptocurrency donations. It can automatically add a cryptocurrency donation box below all posts, or can be manually controlled via the built in shortcode \u003Ccode>[bitmate-author-donate]\u003C\u002Fcode> and\u002For widgets for sidebars and visual page builders.\u003C\u002Fp>\n\u003Cp>Here are a few of the special features you might not notice at first:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Can be used in “Maximalist” Bitcoin only mode with classic styles or will adapt to a modern multi-currency display when you add other currencies.\u003C\u002Fli>\n\u003Cli>Sets Bitcoin label & message when using compatible installed wallets.\u003C\u002Fli>\n\u003Cli>Makes use of compatible URI formats where possible, for example \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fbitcoin\u002Fbips\u002Fblob\u002Fmaster\u002Fbip-0021.mediawiki\" rel=\"nofollow ugc\">BIP 21 for Bitcoin\u003C\u002Fa>.\u003C\u002Fli>\n\u003Cli>Uses local and self-hosted fonts to avoid calling other servers.\u003C\u002Fli>\n\u003Cli>Works without Javascript enabled – although offers optimisations when it is!\u003C\u002Fli>\n\u003Cli>Makes use of open-source self-hosted QR code generator for increase privacy.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Cstrong>Coming Soon:\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>International translation hooks\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Cstrong>Like this plugin?\u003C\u002Fstrong>\u003Cbr \u002F>\nYou can make a donation through the following methods:\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Bitcoin:\u003C\u002Fstrong> 1QHK34VSB4MqRUEXyXnUMDg56VEcvY7ND8\u003Cbr \u002F>\n\u003Cstrong>Bitcoin Cash:\u003C\u002Fstrong> 16WdQvED6hGQZukDjx4i6rZ6foVy1Zhxav\u003Cbr \u002F>\n\u003Cstrong>Ethereum:\u003C\u002Fstrong> 0x0577eb2088d03eecf093085544909b110cd94728\u003Cbr \u002F>\n\u003Cstrong>Litecoin:\u003C\u002Fstrong> LWcXPjsmyEHDS9yXShjrpgYe6Sfha94iLy\u003Cbr \u002F>\n\u003Cstrong>Monero:\u003C\u002Fstrong> 446bYKR3hLnVtBt5NqKEYKAAh6DjSw2s55SxCbyJLfPU5fwpXsnbatXGzmXdZNJHZ4Wa5bn3uhaG2cghkBGX2vWcCL2gNmi3uhaG2cghkBGX2vWcCL2gNmi\u003Cbr \u002F>\n\u003Cstrong>ZCash:\u003C\u002Fstrong> t1PsNg2sHTPjFZn5HfMBViFcDoYaxX4vgNZ\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Thanks for your support!\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Ch3>Publisher\u003C\u002Fh3>\n\u003Cp>\u003Ca href=\"http:\u002F\u002Fbitmate.net\" title=\"BitMate - Bitcoin Plugins for WordPress\" rel=\"nofollow ugc\">BitMate – Bitcoin Plugins for WordPress\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>Please visit our site and subscribe for updates to stay in the loop about our Bitcoin plugins for WordPress.\u003C\u002Fp>\n","BitMate Author Donations is a WordPress plugin for authors on WordPress powered sites to accept cryptocurrency donations.",40,9086,94,3,"2018-03-13T22:08:00.000Z","4.9.29","3.0",[20,52,53,21,54],"cryptocurrency","currency","donations","http:\u002F\u002Fbitmate.net\u002Fauthor-donations\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fbitmate-author-donations.zip",{"slug":58,"name":59,"version":60,"author":61,"author_profile":62,"description":63,"short_description":64,"active_installs":32,"downloaded":65,"rating":66,"num_ratings":67,"last_updated":68,"tested_up_to":69,"requires_at_least":17,"requires_php":18,"tags":70,"homepage":18,"download_link":74,"security_score":25,"vuln_count":26,"unpatched_count":26,"last_vuln_date":27,"fetched_at":28},"easy-bitcoin-donation-widget","Easy Bitcoin Donation Widget","1.1","The Plugin Factory","https:\u002F\u002Fprofiles.wordpress.org\u002Fthe-plugin-factory\u002F","\u003Cp>This plugin is simply an easy way to display a bitcoin donation QR code in a widget on your site.\u003C\u002Fp>\n\u003Cp>Options:\u003C\u002Fp>\n\u003Col>\n\u003Cli>Set donation amount in bitcoin\u003C\u002Fli>\n\u003Cli>Set widget title\u003C\u002Fli>\n\u003Cli>Set message above QR code\u003C\u002Fli>\n\u003Cli>Set message below QR code\u003C\u002Fli>\n\u003Cli>Make QR clickable\u003C\u002Fli>\n\u003Cli>Add clickable link below QR\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Cp>See screenshots for setup and samples.\u003C\u002Fp>\n\u003Cp>https:\u002F\u002Fwordpress.org\u002Fplugins\u002Feasy-bitcoin-donation-widget\u002Fscreenshots\u002F\u003C\u002Fp>\n","A simple widget to create a QR code widget for accepting donations.",8858,100,1,"2016-04-25T13:30:00.000Z","4.5.33",[20,71,21,72,73],"bitcoin-donation","donate-bitcoin","donation","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Feasy-bitcoin-donation-widget.1.1.zip",{"slug":76,"name":77,"version":78,"author":79,"author_profile":80,"description":81,"short_description":82,"active_installs":31,"downloaded":83,"rating":66,"num_ratings":67,"last_updated":84,"tested_up_to":85,"requires_at_least":86,"requires_php":18,"tags":87,"homepage":89,"download_link":90,"security_score":25,"vuln_count":26,"unpatched_count":26,"last_vuln_date":27,"fetched_at":91},"cryptothanks","Cryptothanks","0.2.4","Mudimedia","https:\u002F\u002Fprofiles.wordpress.org\u002Fsubet\u002F","\u003Cp>Cryptothanks is the only plugin that publishers get donation by cryptocurrencies. It allows you place simple cryptocoin buttons into your posts, pages and widgets. Forget old style list of donation addresses in your pages. This plugin puts tiny buttons to gain space on your page and look more professional.\u003C\u002Fp>\n\u003Cp>Transform the way you accept online coin donations. It is simple, professional and configurable.\u003C\u002Fp>\n\u003Cp>Current version supports coins:\u003Cbr \u002F>\n– Bitcoin\u003Cbr \u002F>\n– Bitcoin Cash\u003Cbr \u002F>\n– Ethereum\u003Cbr \u002F>\n– Ethereum Classic\u003Cbr \u002F>\n– Ripple\u003Cbr \u002F>\n– Litecoin\u003Cbr \u002F>\n– DASH\u003Cbr \u002F>\n– Monero\u003Cbr \u002F>\n– Zcash\u003Cbr \u002F>\n– Tether\u003C\u002Fp>\n\u003Cp>Please send your feature and support requests to:\u003Cbr \u002F>\nhttps:\u002F\u002Fmudimedia.com\u002Fwordpress-plugins\u002Fcryptothanks\u003C\u002Fp>\n","This is the plugin where your visitors make payment to you. You can change the label of the button to make it either donation or payment button.",8114,"2019-12-06T09:33:00.000Z","5.3.21","3.5",[20,52,76,21,88],"payment","https:\u002F\u002Fmudimedia.com\u002Fwordpress-plugins\u002Fcryptothanks","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcryptothanks.zip","2026-03-15T15:16:48.613Z",{"slug":93,"name":94,"version":95,"author":96,"author_profile":97,"description":98,"short_description":99,"active_installs":11,"downloaded":100,"rating":31,"num_ratings":67,"last_updated":101,"tested_up_to":49,"requires_at_least":102,"requires_php":18,"tags":103,"homepage":18,"download_link":107,"security_score":25,"vuln_count":26,"unpatched_count":26,"last_vuln_date":27,"fetched_at":28},"altcoins-donation-widget","Bitcoin Donator Button Widget","1.0","Martin Liguori","https:\u002F\u002Fprofiles.wordpress.org\u002Ftincholiguori\u002F","\u003Cp>This widget will add a image button to your pages, posts in order that the user can donate bitcoin or altcoins to your wallet.\u003C\u002Fp>\n","Adds a Bitcoin Donate Button widget (with QR-code in a lightbox). If you have not used Bitcoin before, you might want learn a little about it first.",4331,"2017-11-10T19:30:00.000Z","3.4.1",[20,104,21,105,106],"blockchain","sidebar","widget","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Faltcoins-donation-widget.zip",{"slug":109,"name":110,"version":95,"author":111,"author_profile":112,"description":113,"short_description":114,"active_installs":11,"downloaded":115,"rating":26,"num_ratings":26,"last_updated":116,"tested_up_to":117,"requires_at_least":118,"requires_php":18,"tags":119,"homepage":123,"download_link":124,"security_score":25,"vuln_count":26,"unpatched_count":26,"last_vuln_date":27,"fetched_at":28},"bitcoin-donations","Bitcoin Donations","SloBros","https:\u002F\u002Fprofiles.wordpress.org\u002Fslobros\u002F","\u003Cp>This plugin displays your bitcoin address to allow visitors of your site to donate bitcoins\u003C\u002Fp>\n","This plugin displays your bitcoin address to allow visitors of your site to donate bitcoins",5547,"2011-06-23T02:09:00.000Z","3.1.4","2.5",[120,109,121,122],"bitcoin-donate","bitcoins","donate-bitcoins","http:\u002F\u002Fslobros.com\u002F2011\u002Fwp\u002Fplugins\u002Fbitcoin-donations\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fbitcoin-donations.zip",{"attackSurface":126,"codeSignals":150,"taintFlows":171,"riskAssessment":172,"analyzedAt":182},{"hooks":127,"ajaxHandlers":146,"restRoutes":147,"shortcodes":148,"cronEvents":149,"entryPointCount":26,"unprotectedCount":26},[128,134,138,141],{"type":129,"name":130,"callback":131,"file":132,"line":133},"action","admin_init","bittipit_options_init","bittip_it.php",36,{"type":129,"name":135,"callback":136,"file":132,"line":137},"admin_menu","bittipit_options_add_page",37,{"type":129,"name":130,"callback":139,"file":132,"line":140},"my_plugin_redirect",177,{"type":142,"name":143,"callback":144,"file":132,"line":145},"filter","the_content","anonymous",253,[],[],[],[],{"dangerousFunctions":151,"sqlUsage":152,"outputEscaping":154,"fileOperations":26,"externalRequests":26,"nonceChecks":26,"capabilityChecks":26,"bundledLibraries":170},[],{"prepared":26,"raw":26,"locations":153},[],{"escaped":26,"rawEcho":155,"locations":156},6,[157,160,162,164,166,168],{"file":132,"line":158,"context":159},67,"raw output",{"file":132,"line":161,"context":159},71,{"file":132,"line":163,"context":159},91,{"file":132,"line":165,"context":159},110,{"file":132,"line":167,"context":159},128,{"file":132,"line":169,"context":159},187,[],[],{"summary":173,"deductions":174},"The bittipit-bitcoin-donation-button plugin v1.0.1 exhibits a generally positive security posture based on the static analysis.  There are no identified AJAX handlers, REST API routes, shortcodes, or cron events, resulting in a zero attack surface for external interactions. Furthermore, the plugin avoids dangerous functions, file operations, and external HTTP requests.  Crucially, all SQL queries utilize prepared statements, and there are no recorded vulnerabilities (CVEs) in its history, suggesting a well-maintained and secure development approach.  However, a significant concern arises from the complete lack of output escaping, with 0% of the 6 identified outputs being properly escaped. This presents a clear risk of cross-site scripting (XSS) vulnerabilities, as user-supplied data could be rendered directly in the browser without sanitization. The absence of nonce and capability checks also contributes to potential security weaknesses, as these are fundamental for protecting against CSRF and unauthorized actions.",[175,177,180],{"reason":176,"points":155},"Output escaping is not implemented",{"reason":178,"points":179},"No nonce checks detected",5,{"reason":181,"points":179},"No capability checks detected","2026-03-17T00:50:05.862Z",{"wat":184,"direct":192},{"assetPaths":185,"generatorPatterns":187,"scriptPaths":188,"versionParams":191},[186],"\u002Fwp-content\u002Fplugins\u002Fbittipit-bitcoin-donation-button\u002Fbittipit-bitcoin-donation-button.php",[],[189,190],"https:\u002F\u002Fbitcoinsberlin.com\u002Fwp-content\u002Fuploads\u002F2013\u002F01\u002Fbutton-loader.js","http:\u002F\u002Fbittip.it\u002Fcdn\u002Fbutton-loader.js",[],{"cssClasses":193,"htmlComments":195,"htmlAttributes":196,"restEndpoints":201,"jsGlobals":202,"shortcodeOutput":204},[194],"bittip-button",[],[197,198,199,200],"default-amount","request","donation-message","donation-address",[],[203],"bittipit_options",[205],"\u003Cp>\u003Ca href=\"http:\u002F\u002Fbittip.it\u002F\" class=\"bittip-button\" default-amount=\"",{"slug":4,"current_version":6,"total_versions":67,"versions":207},[208],{"version":209,"download_url":210,"svn_tag_url":211,"released_at":27,"has_diff":212,"diff_files_changed":213,"diff_lines":27,"trac_diff_url":27,"vulnerabilities":214,"is_current":212},"2.0","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fbittipit-bitcoin-donation-button.2.0.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Fbittipit-bitcoin-donation-button\u002Ftags\u002F2.0\u002F",false,[],[]]