
Click to call button Security & Risk Analysis
wordpress.org/plugins/click-to-call-buttonShows a Click to Call / Call Now Button to your visitors and turns your website into a phone with call recording, voicemail and SMS.
Is Click to call button Safe to Use in 2026?
Generally Safe
Score 85/100Click to call button has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'click-to-call-button' plugin v0.0.1 presents a mixed security posture. On the positive side, it demonstrates good practices regarding SQL query security, utilizing prepared statements exclusively, and has no recorded vulnerability history, suggesting a lack of known exploitable flaws. The absence of file operations and bundled libraries further minimizes potential attack vectors. However, significant concerns arise from the code analysis. The taint analysis reveals four flows with unsanitized paths, indicating a potential for data manipulation or injection, even though no critical or high severity issues were flagged by this specific analysis. More concerningly, 49% of output is not properly escaped, creating a substantial risk of Cross-Site Scripting (XSS) vulnerabilities. Furthermore, the complete absence of nonce checks and capability checks on any potential entry points, even though the attack surface appears limited in terms of documented handlers, is a serious oversight that leaves the plugin vulnerable to unauthorized actions or data exposure if new entry points are discovered or introduced.
Key Concerns
- Significant percentage of unescaped output
- Unsanitized paths in taint flows
- Missing nonce checks
- Missing capability checks
Click to call button Security Vulnerabilities
Click to call button Code Analysis
Output Escaping
Data Flow Analysis
Click to call button Attack Surface
WordPress Hooks 8
Maintenance & Trust
Click to call button Maintenance & Trust
Maintenance Signals
Community Trust
Click to call button Alternatives
Call Now Button – The #1 Click to Call Button for WordPress
call-now-button
The web's #1 click to call button for your website! A simple and powerful plugin that adds a Call Now Button to your website.
Really Simple Click To Call Bar
really-simple-click-to-call
A simple plugin that adds a click to call bar/call now button for mobile visitors.
Floating Click to Contact Buttons
floating-click-to-contact-buttons
Tạo các nút gọi, nút chat Zalo, nút Chat messenger, nút để lại thông tin để tư vấn, nút chỉ đường. Trình bày các nút đẹp mắt ở góc phải dưới màn hình, …
Click to Call or Chat Buttons
click-to-call-or-chat-buttons
This plugin adds Phone Call and WhatsApp button on your webpage.
Click To Dial – Wp Click To Call Support
click-to-dial
Easily add a "Call Now" bubble to your WordPress site—let visitors call you in 3 clicks with customizable buttons, forms, and time-based availability.
Click to call button Developer Profile
1 plugin · 100 total installs
How We Detect Click to call button
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/click-to-call-button/images/paypal_donate_button.gif/wp-content/plugins/click-to-call-button/css/style.css/wp-content/plugins/click-to-call-button/js/script.js/wp-content/plugins/click-to-call-button/js/script.jsclick-to-call-button/css/style.css?ver=click-to-call-button/js/script.js?ver=HTML / DOM Fingerprints
ctcb-buttondata-default-color