Brilliant Geocoder for Gravity Forms Security & Risk Analysis

wordpress.org/plugins/brilliant-geocoder-gravity-forms

Capture location information in Gravity Forms by geocoding user's input into other form fields.

30 active installs v0.0.1 PHP + WP 4.4.1+ Updated Feb 8, 2017
geogeocodinggisgravity-formsspatial
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Brilliant Geocoder for Gravity Forms Safe to Use in 2026?

Generally Safe

Score 85/100

Brilliant Geocoder for Gravity Forms has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 9yr ago
Risk Assessment

Based on the provided static analysis, the "brilliant-geocoder-gravity-forms" plugin version 0.0.1 exhibits a strong security posture. The absence of identified AJAX handlers, REST API routes, shortcodes, or cron events significantly limits its attack surface, and importantly, all entry points are reported as protected.

The code analysis reveals no dangerous functions, SQL queries utilizing prepared statements, or unescaped output, indicating good development practices for these common vulnerability vectors. The plugin also avoids file operations, external HTTP requests, and the use of bundled libraries, further reducing potential risks. The taint analysis shows no unsanitized paths, which is a positive sign for data handling.

The vulnerability history is also clean, with no recorded CVEs. This, combined with the positive static analysis, suggests the plugin is currently well-maintained and secure. However, it's worth noting that the absence of capability checks is a minor concern, as it relies solely on the implicit security of other checks or the absence of exploitable code paths. Overall, the plugin appears to be in good security health.

Key Concerns

  • Missing capability checks
Vulnerabilities
None known

Brilliant Geocoder for Gravity Forms Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Brilliant Geocoder for Gravity Forms Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

Brilliant Geocoder for Gravity Forms Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 7
actiongform_loadedbrilliant-geocoder-gravityforms.php:58
filtergfg_geocoders_fieldsgeocoders\geocodio.php:10
filtergfg_geocodersgeocoders\geocodio.php:62
filtergfg_geocoder_keysgeocoders\geocodio.php:126
filtergfg_geocoders_fieldsgeocoders\google_maps_api.php:5
filtergfg_geocodersgeocoders\google_maps_api.php:6
filtergfg_geocoder_keysgeocoders\google_maps_api.php:7
Maintenance & Trust

Brilliant Geocoder for Gravity Forms Maintenance & Trust

Maintenance Signals

WordPress version tested4.7.32
Last updatedFeb 8, 2017
PHP min version
Downloads4K

Community Trust

Rating100/100
Number of ratings1
Active installs30
Developer Profile

Brilliant Geocoder for Gravity Forms Developer Profile

Michael Moore

4 plugins · 150 total installs

86
trust score
Avg Security Score
89/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Brilliant Geocoder for Gravity Forms

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/brilliant-geocoder-gravity-forms/lib/wp-geometa-lib/wp-geometa-lib-loader.php/wp-content/plugins/brilliant-geocoder-gravity-forms/lib/leaflet-php/leaflet-php-loader.php/wp-content/plugins/brilliant-geocoder-gravity-forms/geocoders/geocodio.js
Script Paths
/wp-content/plugins/brilliant-geocoder-gravity-forms/geocoders/geocodio.js
Version Parameters
brilliant-geocoder-gravity-forms/style.css?ver=geocoder_geocodiobrilliant-geocoder-gravity-forms/geocoders/geocodio.js

HTML / DOM Fingerprints

HTML Comments
<!-- This is an example of how to add support for other geocoders to Geocoder For Gravity Forms --><!-- To add support for a new geocoder, you will need to implement three filters and add a single javascript file. --><!-- The top-level key (Geocod.io full addres, in this case) --><!-- is an admin-readable name for the geocoder. -->+34 more
Data Attributes
data-gfg-geocoder-enginedata-gfg-geocodio-key
JS Globals
GFG_VERSIONGeocoder_for_GravityWP_GeoMetagfg_geocodewindow.gfg_geocoder_engines.geocodio
FAQ

Frequently Asked Questions about Brilliant Geocoder for Gravity Forms