BFSG Accessibility Scanner by CheckBarriere Security & Risk Analysis

wordpress.org/plugins/checkbarriere

Is your shop BFSG compliant? Find out in 2 minutes — automated accessibility scan with traffic-light status and actionable recommendations.

0 active installs v1.0.0 PHP 7.4+ WP 6.0+ Updated Mar 28, 2026
accessibilitybarrierefreiheitbfsgwcagwoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is BFSG Accessibility Scanner by CheckBarriere Safe to Use in 2026?

Generally Safe

Score 100/100

BFSG Accessibility Scanner by CheckBarriere has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The checkbarriere plugin v1.0.0 exhibits a generally positive security posture with several strong practices in place. All SQL queries are properly prepared, and all output is correctly escaped, which significantly reduces the risk of common web vulnerabilities like SQL injection and cross-site scripting. The absence of known CVEs and a clean vulnerability history further bolster confidence in its current security. The limited attack surface, with no exposed AJAX handlers, REST API routes, or shortcodes without authentication, is also a commendable aspect.

However, there are a few areas that warrant attention. The presence of one cron event that is not explicitly mentioned as having an authentication check raises a potential concern, as cron jobs can sometimes be exploited if not properly secured. More importantly, the taint analysis revealed one flow with unsanitized paths, categorized as high severity. This indicates a potential pathway for malicious input to reach a sensitive part of the application without adequate sanitization, which could lead to unexpected behavior or security breaches. While the capability check exists, the specific nature of the unsanitized path requires further investigation to fully understand its implications.

In conclusion, checkbarriere v1.0.0 has a solid foundation of secure coding practices, particularly in its handling of database interactions and output. The lack of historical vulnerabilities is a significant strength. Nevertheless, the identified high-severity taint flow and the potential for an unprotected cron event are notable weaknesses that should be addressed to ensure a truly robust security profile.

Key Concerns

  • High severity unsanitized path in taint analysis
  • One cron event without explicit auth check
Vulnerabilities
None known

BFSG Accessibility Scanner by CheckBarriere Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

BFSG Accessibility Scanner by CheckBarriere Release Timeline

v1.0.0Current
Code Analysis
Analyzed Apr 16, 2026

BFSG Accessibility Scanner by CheckBarriere Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
8 prepared
Unescaped Output
0
206 escaped
Nonce Checks
0
Capability Checks
1
File Operations
0
External Requests
2
Bundled Libraries
0

SQL Query Safety

100% prepared8 total queries

Output Escaping

100% escaped206 total outputs
Data Flows · Security
1 unsanitized

Data Flow Analysis

1 flows1 with unsanitized paths
<scan-results> (admin/partials/scan-results.php:0)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

BFSG Accessibility Scanner by CheckBarriere Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 11
actionplugins_loadedcheckbarriere.php:85
actionadmin_menuincludes/class-bfsgcb-admin.php:14
actionadmin_initincludes/class-bfsgcb-admin.php:15
actionadmin_enqueue_scriptsincludes/class-bfsgcb-admin.php:16
actionrest_api_initincludes/class-bfsgcb-rest.php:18
actionwp_enqueue_scriptsincludes/class-bfsgcb-widget.php:15
actionwp_footerincludes/class-bfsgcb-widget.php:16
filtermanage_edit-product_columnsincludes/class-bfsgcb-woocommerce.php:13
actionmanage_product_posts_custom_columnincludes/class-bfsgcb-woocommerce.php:14
actionadd_meta_boxesincludes/class-bfsgcb-woocommerce.php:15
actionbfsgcb_daily_scanincludes/class-bfsgcb.php:45

Scheduled Events 1

bfsgcb_daily_scan
Maintenance & Trust

BFSG Accessibility Scanner by CheckBarriere Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 28, 2026
PHP min version7.4
Downloads59

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

BFSG Accessibility Scanner by CheckBarriere Developer Profile

checkbarriere

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect BFSG Accessibility Scanner by CheckBarriere

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/checkbarriere/admin/css/style.css/wp-content/plugins/checkbarriere/admin/js/script.js
Script Paths
/wp-content/plugins/checkbarriere/admin/js/script.js
Version Parameters
checkbarriere/admin/css/style.css?ver=checkbarriere/admin/js/script.js?ver=

HTML / DOM Fingerprints

CSS Classes
bfsgcb-results-tablebfsgcb-scan-history-tablebfsgcb-settings-form
Data Attributes
data-bfsgcb-scan-iddata-bfsgcb-status
JS Globals
BFGCB_Admin_Vars
REST Endpoints
/wp-json/bfsgcb/v1/scan
FAQ

Frequently Asked Questions about BFSG Accessibility Scanner by CheckBarriere