
Chat Floating Button BY XD Security & Risk Analysis
wordpress.org/plugins/chat-floating-button-by-xdFloating button for chatting with your visitors via WhatsApp.
Is Chat Floating Button BY XD Safe to Use in 2026?
Generally Safe
Score 100/100Chat Floating Button BY XD has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "chat-floating-button-by-xd" v2.0 plugin exhibits an exceptionally strong security posture based on the provided static analysis and vulnerability history. The complete absence of identified AJAX handlers, REST API routes, shortcodes, and cron events indicates a minimal attack surface. Furthermore, the code demonstrates excellent security practices with no dangerous functions, 100% prepared SQL statements, and all outputs properly escaped. The lack of any identified taint flows or file operations further strengthens this assessment.
The plugin's vulnerability history is also a significant positive indicator, with zero recorded CVEs across all severities. This suggests a history of robust security development and maintenance. The combination of a negligible attack surface, adherence to secure coding principles, and a clean vulnerability record positions this plugin as highly secure. However, it's important to note that a complete lack of capability checks, while not a direct vulnerability in this case due to the absence of entry points, represents a missed opportunity for defense-in-depth and could be a concern if the plugin were to introduce new features in the future.
In conclusion, "chat-floating-button-by-xd" v2.0 appears to be a very secure plugin. The developers have implemented best practices effectively, resulting in no identified vulnerabilities. The only minor area for improvement would be the implementation of capability checks for any future additions to the plugin's functionality.
Key Concerns
- No capability checks found
Chat Floating Button BY XD Security Vulnerabilities
Chat Floating Button BY XD Code Analysis
Output Escaping
Chat Floating Button BY XD Attack Surface
WordPress Hooks 4
Maintenance & Trust
Chat Floating Button BY XD Maintenance & Trust
Maintenance Signals
Community Trust
Chat Floating Button BY XD Alternatives
ChatFloat – Floating Chat Button
chatfloat-floating-chat-button
A simple and lightweight plugin to add a floating WhatsApp button on your website. Fully customizable via admin settings.
AK Simple Chat
ak-simple-chat
Add a floating WhatsApp chat button with multiple agents, labels, colors, and WooCommerce support using a simple admin interface.
TG Live Chat
tg-live-chat
Connect your website visitors with live chat through messaging service. Customers chat on your website while you reply from your messaging app.
Lime Connect (formerly Userlike) – WordPress Live Chat plugin
userlike
Free live chat plugin to chat with the visitors of your website. Integrate a beautiful and fully customizable chat box. Hosted in Europe.
n8n Chat Widget
n8n-chat-widget
Adds a customizable n8n chat widget to your website frontend. It allows visitors to interact with n8n chat workflows directly from your website throug …
Chat Floating Button BY XD Developer Profile
4 plugins · 500 total installs
How We Detect Chat Floating Button BY XD
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/chat-floating-button-by-xd/css/xdwhatsapp.min.css/wp-content/plugins/chat-floating-button-by-xd/js/xdwhatsapp.min.js/wp-content/plugins/chat-floating-button-by-xd/js/xdwhatsapp.min.jschat-floating-button-by-xd/css/xdwhatsapp.min.css?ver=chat-floating-button-by-xd/js/xdwhatsapp.min.js?ver=HTML / DOM Fingerprints
xdwhatsapp-button