
Contact Easy Security & Risk Analysis
wordpress.org/plugins/contact-easyThis is the plugin for contacting the owner of website that the data are stored in the wordpress data base.
Is Contact Easy Safe to Use in 2026?
Generally Safe
Score 85/100Contact Easy has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The contact-easy plugin v1.0.0 exhibits a strong security posture based on the provided static analysis. There are no identified dangerous functions, file operations, or external HTTP requests. All output is properly escaped, and the absence of critical or high-severity taint flows suggests a lack of common injection vulnerabilities. The plugin also has a clean vulnerability history, with no known CVEs, indicating a good track record for security.
However, the analysis does reveal some areas for potential improvement. The presence of raw SQL queries without prepared statements is a significant concern, as it opens the door to SQL injection vulnerabilities if not handled with extreme care. Furthermore, the complete absence of nonce and capability checks, while not directly tied to an exploitable entry point in this specific version's static analysis, represents a gap in standard WordPress security practices. This could become a vulnerability if future versions introduce new entry points or if the current ones are utilized in ways not captured by this analysis.
Overall, contact-easy v1.0.0 appears to be a relatively secure plugin with a clean history. Its strengths lie in its lack of obvious dangerous code and proper output escaping. The primary weaknesses are the raw SQL query and the lack of standard authentication and authorization checks, which, while not immediately exploitable in this analysis, represent potential risks that should be addressed for a more robust security profile.
Key Concerns
- Raw SQL query without prepared statements
- No nonce checks
- No capability checks
Contact Easy Security Vulnerabilities
Contact Easy Code Analysis
SQL Query Safety
Contact Easy Attack Surface
Shortcodes 2
WordPress Hooks 1
Maintenance & Trust
Contact Easy Maintenance & Trust
Maintenance Signals
Community Trust
Contact Easy Alternatives
Call Now, Email, Messaging, Sharing Buttons for Mobile
social-mobile-messaging-bar
Customers can call, message you or share your website on smart phone with our Social Mobile Messaging Bar. Messaging via Messenger, Skype, SMS, email.
Call Now Button Ultimate
call-now-button-ultimate
Instantly add a customizable Call Now Button to your website. Our call now button automatically changes into an Email Us button based on your work sch …
Form – Contact Form
form-forms
Form is advanced solution for WordPress users. Contact Form Is awesome WordPress plugin with many useful features and effects.
Contact Us for WP
contact-us-for-wp
A button to reach us anywhere. Contact us form with floating icon on all pages.
Free Contact Us Form plugin ( build in accordance to the GDPR )
free-contact-us
This program is free software: you can redistribute it and/or modify it under the terms of the GNU General Public License as published by the Free Sof …
Contact Easy Developer Profile
1 plugin · 10 total installs
How We Detect Contact Easy
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/contact-easy/css/style.cssHTML / DOM Fingerprints
errorsuccess_classoutput_class<table width="50%" ><table width="100%" border="2" bordercolor="#006699">