
Complianz – Terms and Conditions Security & Risk Analysis
wordpress.org/plugins/complianz-terms-conditionsConfigure your own Terms and Conditions specific to your service or webshop.
Is Complianz – Terms and Conditions Safe to Use in 2026?
Generally Safe
Score 100/100Complianz – Terms and Conditions has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The Complianz Terms and Conditions plugin (v1.2.8) exhibits a mixed security posture. On the positive side, it demonstrates strong practices regarding SQL queries, exclusively using prepared statements, and has a clean vulnerability history with no recorded CVEs. The presence of numerous capability checks and a reasonable number of nonce checks suggest an awareness of WordPress security best practices. However, significant concerns arise from its attack surface. Two of its four identified entry points, specifically one AJAX handler and one REST API route, lack authentication or permission checks. This creates direct opportunities for unauthorized users to interact with the plugin's functionality, potentially leading to unintended actions or information disclosure.
The static analysis reveals a generally safe code base concerning dangerous functions and taint analysis, with no critical or high severity issues. The file operations are also present but not flagged as problematic in the provided data. The primary weakness identified lies in the unprotected entry points. While the plugin doesn't appear to be historically prone to vulnerabilities, neglecting these unprotected endpoints could invite future exploitation. The fact that a portion of output is not properly escaped (69% properly escaped) also presents a minor risk, potentially leading to cross-site scripting (XSS) vulnerabilities in specific scenarios, though this is less severe given the lack of critical taint flows.
Key Concerns
- AJAX handler without authentication
- REST API route without permission callback
- Significant portion of output not properly escaped
Complianz – Terms and Conditions Security Vulnerabilities
Complianz – Terms and Conditions Code Analysis
Bundled Libraries
Output Escaping
Data Flow Analysis
Complianz – Terms and Conditions Attack Surface
AJAX Handlers 2
REST API Routes 1
Shortcodes 1
WordPress Hooks 46
Maintenance & Trust
Complianz – Terms and Conditions Maintenance & Trust
Maintenance Signals
Community Trust
Complianz – Terms and Conditions Alternatives
Legal Pages – Privacy Policy, Terms & Conditions, GDPR, CCPA, and Cookie Notice Generator
legal-pages
The best WordPress legal pages generator that comes with pre-made templates for GDPR, CCPA, DMCA, Privacy Policy, Terms & Conditions, Cookie Polic …
Terms & Conditions Per Product
terms-and-conditions-per-product
Configure specific Terms and Conditions per WooCommerce product, category, or tag.
iubenda | All-in-one Compliance for GDPR / CCPA Cookie Consent + more
iubenda-cookie-law-solution
The solution for GDPR compliance + more. Get your cookie banner, privacy policy, terms and conditions and handle cookie consent in just one plugin.
Privacy Policy Generator – WPLP Legal Pages
wplegalpages
Create and manage legal pages for WordPress websites using ready-made policy templates that support common privacy and compliance requirements.
WP Terms Popup – Terms and Conditions and Privacy Policy WordPress Popups
wp-terms-popup
Use WP Terms Popup to ask visitors to agree to your terms and conditions or privacy policy before they are allowed to view your site.
Complianz – Terms and Conditions Developer Profile
2 plugins · 1.3M total installs
How We Detect Complianz – Terms and Conditions
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/complianz-terms-conditions/assets/css/terms-conditions.css/wp-content/plugins/complianz-terms-conditions/assets/js/terms-conditions.js/wp-content/plugins/complianz-terms-conditions/assets/js/terms-conditions.jscomplianz-terms-conditions/assets/css/terms-conditions.css?ver=complianz-terms-conditions/assets/js/terms-conditions.js?ver=HTML / DOM Fingerprints
cmplz-tc-wrap<!-- Complianz Terms & Conditions by Complianz -->cmplz_tc_config/wp-json/complianz-tc/v1[cmplz-terms-conditions]