BreezeTact Security & Risk Analysis

wordpress.org/plugins/breezetactfreemium

BreezeTact is a plugin meant to enhance user experience on mobile devices to get better conversions.

10 active installs v2.0.1 PHP + WP 4.6+ Updated May 15, 2018
emailiconsmapmobile-conversionsphone
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is BreezeTact Safe to Use in 2026?

Generally Safe

Score 85/100

BreezeTact has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 7yr ago
Risk Assessment

Based on the static analysis and vulnerability history, the breezetactfreemium v2.0.1 plugin exhibits a strong security posture. The absence of any identified entry points without authentication checks (AJAX handlers, REST API routes, shortcodes, cron events) is a significant strength, indicating a well-controlled attack surface. Furthermore, the code signals show a complete absence of dangerous functions and raw SQL queries, with all SQL operations utilizing prepared statements. The high percentage of properly escaped output (84%) is also a positive indicator. The plugin's vulnerability history is clean, with no known CVEs, suggesting a consistent focus on security by its developers. The only minor area for potential improvement is the 16% of output that is not properly escaped, which could theoretically lead to low-severity XSS vulnerabilities in very specific, unauthenticated contexts, though the lack of entry points makes this risk very low. Overall, this plugin appears to be very secure.

Key Concerns

  • Unescaped output found (16%)
Vulnerabilities
None known

BreezeTact Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

BreezeTact Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
10
52 escaped
Nonce Checks
0
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

84% escaped62 total outputs
Attack Surface

BreezeTact Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 6
actionwp_footerbreezetact.php:9
actionwp_enqueue_scriptsbreezetact.php:10
actionadmin_enqueue_scriptsbreezetact.php:11
filteradmin_footer_textbreezetact.php:13
actionadmin_initbreezetact.php:318
actionadmin_menubreezetact.php:436
Maintenance & Trust

BreezeTact Maintenance & Trust

Maintenance Signals

WordPress version tested4.8.28
Last updatedMay 15, 2018
PHP min version
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

BreezeTact Developer Profile

breezemaxweb

2 plugins · 20 total installs

89
trust score
Avg Security Score
93/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect BreezeTact

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/breezetactfreemium/source/front/style.css/wp-content/plugins/breezetactfreemium/images/BreezeTact-Logo-Watermark.png
Script Paths
/wp-content/plugins/breezetactfreemium/source/admin/jss-color.js
Version Parameters
breezetactfreemium/source/front/style.css?ver=

HTML / DOM Fingerprints

CSS Classes
bt-pl-outer-containerbt-ext-space-cb-cvbt-conv-frontbt-icons-txt-cbbt-pl-inner-containerbt-wm-bottombt_conv_row
Data Attributes
data-custom
JS Globals
jscolor
Shortcode Output
<div class="bt-pl-outer-container"><a href="tel:<div class="bt-pl-inner-container bt-pl-inner-container-left"><p class="bt-icons-txt-cb"><i class="fa fa-phone fa-2x"></i><br> CALL</p>
FAQ

Frequently Asked Questions about BreezeTact