
CF block Security & Risk Analysis
wordpress.org/plugins/contact-blockCF Block is a custom Gutenberg Block That has the following upgradation to be followed they are
Is CF block Safe to Use in 2026?
Generally Safe
Score 85/100CF block has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "contact-block" plugin version 1.0.0 exhibits a very strong security posture based on the provided static analysis and vulnerability history. The code analysis reveals no dangerous functions, no file operations, and no external HTTP requests, all of which are positive indicators. Furthermore, all SQL queries utilize prepared statements, and all output is properly escaped, mitigating common web application vulnerabilities like SQL injection and Cross-Site Scripting (XSS). The absence of AJAX handlers, REST API routes, shortcodes, and cron events indicates a minimal attack surface, and importantly, no unprotected entry points were identified.
While the static analysis shows no identified vulnerabilities or dangerous code patterns, it's crucial to acknowledge the limitations of static analysis alone. The taint analysis found zero flows, which is excellent, but a comprehensive review would involve dynamic testing as well. The plugin has no recorded vulnerabilities, which is a significant strength, suggesting a history of secure development or a lack of exposure to exploitation. However, the absence of nonce checks and the single capability check, while not immediately flagged as a concern due to the limited attack surface, could be areas for further scrutiny if the plugin's functionality were to expand. In conclusion, this version of "contact-block" appears to be highly secure, with robust coding practices and no known historical security issues. The primary recommendation would be to continue this diligent approach to security as the plugin evolves.
CF block Security Vulnerabilities
CF block Release Timeline
CF block Code Analysis
Output Escaping
CF block Attack Surface
WordPress Hooks 4
Maintenance & Trust
CF block Maintenance & Trust
Maintenance Signals
Community Trust
CF block Alternatives
Form Block
form-block
An extensive yet user-friendly form block.
Gutenberg Forms Add-on for MailPoet
guten-forms-mailpoet
MailPoet add-on for Gutenberg Forms. Connect with MailPoet and send leads/subscribers to your MailPoet list with the form submissions.
Form Builder Blocks
ninja-chandel-form-builder-blocks
Build powerful, custom forms directly inside the WordPress Block Editor with drag-and-drop ease and built-in entry management.
Emailjs Block
email-via-emailjs-blocks
Email via Emailjs Blocks - Send emails from WordPress without a mail server through emailjs.com API. Just add your free API keys and have your contact …
OmniForm
omniform
Easily create and manage custom forms with the block editor, customizable fields, and form submission management for your website.
CF block Developer Profile
2 plugins · 10 total installs
How We Detect CF block
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/contact-block/assets/css/style.css/wp-content/plugins/contact-block/assets/css/editor.css/wp-content/plugins/contact-block/build/index.js/wp-content/plugins/contact-block/build/index.jsHTML / DOM Fingerprints
contact-maintitlecontact-subtitleform-fielddata-block="gutenberg-contact-form-block/contact-block"<h3 class="contact-maintitle"<h4 class="contact-subtitle"<form id="contact"