CC Canadian GST Calculator Security & Risk Analysis

wordpress.org/plugins/canadian-gst-calculator

Add a free simple customizable Canadian GST calculator to your web site.

10 active installs v0.3.0 PHP + WP 3.0+ Updated Unknown
calculatorcanadafinancialgstpst
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is CC Canadian GST Calculator Safe to Use in 2026?

Generally Safe

Score 100/100

CC Canadian GST Calculator has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs
Risk Assessment

The "canadian-gst-calculator" plugin v0.3.0 presents a generally positive security posture based on the provided static analysis. There are no identified critical or high-severity code signals, dangerous functions, SQL injection vulnerabilities, or file operations. The absence of known CVEs and a clean vulnerability history further contribute to this assessment, suggesting a low likelihood of pre-existing, exploitable vulnerabilities.

However, a significant concern arises from the low percentage of properly escaped output (29%). This indicates a substantial risk of Cross-Site Scripting (XSS) vulnerabilities. If user-supplied data is directly outputted without sufficient sanitization, an attacker could inject malicious scripts that execute in the user's browser. Furthermore, the complete absence of capability checks and nonce checks on any potential entry points, while currently showing zero attack surface, leaves the plugin vulnerable to future expansion of its attack surface without built-in security measures.

In conclusion, while the plugin has a strong foundation with no immediate exploitable vulnerabilities or code-level risks, the pervasive issue of unescaped output is a serious weakness that requires immediate attention to prevent XSS attacks. The lack of fundamental security checks like capability and nonce verification on any future entry points is also a potential future risk.

Key Concerns

  • Low percentage of properly escaped output
  • No capability checks on entry points
  • No nonce checks on entry points
Vulnerabilities
None known

CC Canadian GST Calculator Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

CC Canadian GST Calculator Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
40
16 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

29% escaped56 total outputs
Attack Surface

CC Canadian GST Calculator Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 3
actionwidgets_initcc-canada-gst-calculator.php:137
actionwp_enqueue_scriptscc-canada-gst-calculator.php:147
actionadmin_enqueue_scriptscc-canada-gst-calculator.php:156
Maintenance & Trust

CC Canadian GST Calculator Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedUnknown
PHP min version
Downloads3K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

CC Canadian GST Calculator Developer Profile

CC

7 plugins · 1K total installs

88
trust score
Avg Security Score
100/100
Avg Patch Time
33 days
View full developer profile
Detection Fingerprints

How We Detect CC Canadian GST Calculator

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/canadian-gst-calculator/cc-canada-gst-calculator.css/wp-content/plugins/canadian-gst-calculator/cc-canada-gst-calculator.js/wp-content/plugins/canadian-gst-calculator/cc-canada-gst-calculator-admin.js
Version Parameters
canadian-gst-calculator/cc-canada-gst-calculator.js?ver=0.3.0

HTML / DOM Fingerprints

CSS Classes
cc-color-field
Data Attributes
id='cc_canada_gst_calculator-colors'
JS Globals
var $J = jQuery.noConflict();
FAQ

Frequently Asked Questions about CC Canadian GST Calculator