
HTML Template for CF7 Security & Risk Analysis
wordpress.org/plugins/cf7-html-email-template-extensionImprove your Contact Form 7 emails with a HTML Template.
Is HTML Template for CF7 Safe to Use in 2026?
Generally Safe
Score 100/100HTML Template for CF7 has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "cf7-html-email-template-extension" v2.2.2 exhibits a generally strong security posture based on the provided static analysis. The absence of any AJAX handlers, REST API routes, shortcodes, or cron events significantly limits the potential attack surface. Furthermore, the analysis indicates no dangerous functions, zero total SQL queries with 100% using prepared statements, and no external HTTP requests, all of which are positive indicators. The plugin also reports no known CVEs and no recorded vulnerabilities in its history, suggesting a well-maintained and secure codebase. However, a notable area for improvement is the output escaping, where only 61% of outputs are properly escaped. This could potentially lead to cross-site scripting (XSS) vulnerabilities if untrusted data is rendered without adequate sanitization. While the taint analysis shows no unsanitized paths, the existing unescaped outputs represent a latent risk. The presence of one file operation, while not inherently risky, warrants attention to ensure it's handled securely and doesn't involve user-supplied input.
Key Concerns
- Low output escaping rate
- One file operation detected
HTML Template for CF7 Security Vulnerabilities
HTML Template for CF7 Code Analysis
Output Escaping
HTML Template for CF7 Attack Surface
WordPress Hooks 12
Maintenance & Trust
HTML Template for CF7 Maintenance & Trust
Maintenance Signals
Community Trust
HTML Template for CF7 Alternatives
Conditional Logic Emails and Fields for Contact Form 7
yeekit-conditional-logic-for-contact-form-7
Add conditional logic to Contact Form 7. Show or hide fields and send different emails based on user input.
Database Addon for Contact Form 7 – CFDB7
contact-form-cfdb7
Save and manage Contact Form 7 messages. Never lose important data. It is a lightweight contact form 7 database plugin.
Redirection for Contact Form 7
wpcf7-redirect
Redirect to any page or URL, execute scripts after submission, save data to the database, and unlock additional submission actions for Contact Form 7.
Advanced Contact form 7 DB
advanced-cf7-db
Save all contact form 7 form submitted data to the database, View, Ordering, Change field labels and Import/Export data using CSV.
Connect Contact Form 7 and Mailchimp
contact-form-7-mailchimp-extension
Connect Contact Form 7 to Mailchimp. Automatically sync form submissions to your Mailchimp audiences with merge field mapping, double opt-in, and opt- …
HTML Template for CF7 Developer Profile
7 plugins · 34K total installs
How We Detect HTML Template for CF7
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/cf7-html-email-template-extension/modules/core/cf7-html-email-template-extension-core.php/wp-content/plugins/cf7-html-email-template-extension/modules/css-class/css-class.php/wp-content/plugins/cf7-html-email-template-extension/modules/css-class/css-class-main.js/wp-content/plugins/cf7-html-email-template-extension/modules/css-class/css-class.css/wp-content/plugins/cf7-html-email-template-extension/modules/fields-template/fields-template.php/wp-content/plugins/cf7-html-email-template-extension/modules/fields-template/fields-template-main.js/wp-content/plugins/cf7-html-email-template-extension/modules/fields-template/fields-template.css/wp-content/plugins/cf7-html-email-template-extension/modules/fields-template/views/fields-template.php+8 more/wp-content/plugins/cf7-html-email-template-extension/modules/css-class/css-class-main.js/wp-content/plugins/cf7-html-email-template-extension/modules/fields-template/fields-template-main.js/wp-content/plugins/cf7-html-email-template-extension/modules/pdf-attachment/pdf-attachment-main.js/wp-content/plugins/cf7-html-email-template-extension/modules/styles/styles-main.jscf7-html-email-template-extension/modules/css-class/css-class.css?ver=cf7-html-email-template-extension/modules/css-class/css-class-main.js?ver=cf7-html-email-template-extension/modules/fields-template/fields-template.css?ver=cf7-html-email-template-extension/modules/fields-template/fields-template-main.js?ver=cf7-html-email-template-extension/modules/pdf-attachment/pdf-attachment.css?ver=cf7-html-email-template-extension/modules/pdf-attachment/pdf-attachment-main.js?ver=cf7-html-email-template-extension/modules/styles/styles.css?ver=cf7-html-email-template-extension/modules/styles/styles-main.js?ver=HTML / DOM Fingerprints
cf7-html-email-template-extension-css-classcf7-html-email-template-extension-fields-templatecf7-html-email-template-extension-pdf-attachmentcf7-html-email-template-extension-stylescf7hete_css_class_paramscf7hete_fields_template_paramscf7hete_pdf_attachment_paramscf7hete_styles_params