CC Ontario Income Tax Calculator Security & Risk Analysis

wordpress.org/plugins/cc-ontario-tax-calculator

Add a free simple customizable Ontario income tax calculator to your web site.

10 active installs v0.2024.1 PHP + WP 3.0+ Updated Unknown
calculatorcanadaincome-tax-calculatorontariosidebar
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is CC Ontario Income Tax Calculator Safe to Use in 2026?

Generally Safe

Score 100/100

CC Ontario Income Tax Calculator has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs
Risk Assessment

The "cc-ontario-tax-calculator" plugin, version 0.2024.1, exhibits a mixed security posture. On the positive side, the static analysis reveals no dangerous functions, no direct SQL queries (all prepared statements), no file operations, and no external HTTP requests. The absence of any recorded vulnerabilities, including CVEs, in its history is also a strong indicator of good past security practices. The taint analysis also shows no concerning flows.

However, several areas raise significant concerns. The plugin has a lack of nonces and capability checks for its single shortcode, which represents an unprotected entry point. Furthermore, a substantial percentage (75%) of its output is not properly escaped. This combination of unescaped output and the potential for direct shortcode interaction without proper authorization or validation could lead to various vulnerabilities, including Cross-Site Scripting (XSS) if user-supplied data is not sanitized before being rendered. The absence of these fundamental security checks is a notable weakness that needs immediate attention.

Key Concerns

  • Unescaped output (75% of outputs)
  • Missing nonce checks on entry points
  • Missing capability checks on entry points
Vulnerabilities
None known

CC Ontario Income Tax Calculator Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

CC Ontario Income Tax Calculator Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
47
16 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

25% escaped63 total outputs
Attack Surface

CC Ontario Income Tax Calculator Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[cc_income_tax_on] cc-income-tax-on.php:173
WordPress Hooks 3
actionwidgets_initcc-income-tax-on.php:132
actionwp_enqueue_scriptscc-income-tax-on.php:141
actionadmin_enqueue_scriptscc-income-tax-on.php:150
Maintenance & Trust

CC Ontario Income Tax Calculator Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedUnknown
PHP min version
Downloads3K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

CC Ontario Income Tax Calculator Developer Profile

CC

7 plugins · 1K total installs

88
trust score
Avg Security Score
100/100
Avg Patch Time
33 days
View full developer profile
Detection Fingerprints

How We Detect CC Ontario Income Tax Calculator

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/cc-ontario-tax-calculator/cc-income-tax-on.css/wp-content/plugins/cc-ontario-tax-calculator/cc-income-tax-on.js/wp-content/plugins/cc-ontario-tax-calculator/cc-income-tax-on-admin.js
Version Parameters
cc-ontario-tax-calculator/cc-income-tax-on.css?ver=cc-ontario-tax-calculator/cc-income-tax-on.js?ver=cc-ontario-tax-calculator/cc-income-tax-on-admin.js?ver=

HTML / DOM Fingerprints

CSS Classes
cc-color-field
Data Attributes
id="cc_income_tax_on-colors"data-for="cc_income_tax_on-colors"
JS Globals
cc_income_tax_on_initcc_income_tax_on_scriptscc_income_tax_on_admincc_income_tax_on_shortcode
Shortcode Output
[cc_income_tax_on]
FAQ

Frequently Asked Questions about CC Ontario Income Tax Calculator