Contact Form 7 Quiz Placeholders Security & Risk Analysis

wordpress.org/plugins/contact-form-7-quiz-placeholders

Automatically converts Contact Form 7 quiz labels into HTML5 placeholders (like the "Watermark" feature in CF7, which is missing for quizzes …

40 active installs v1.1 PHP + WP + Updated Nov 26, 2012
contact-form-7labelplaceholderquizwatermark
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Contact Form 7 Quiz Placeholders Safe to Use in 2026?

Generally Safe

Score 85/100

Contact Form 7 Quiz Placeholders has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 13yr ago
Risk Assessment

The security analysis of the "contact-form-7-quiz-placeholders" plugin v1.1 reveals a generally positive security posture. The static analysis indicates no dangerous functions, file operations, or external HTTP requests. Importantly, all SQL queries utilize prepared statements, and all identified outputs are properly escaped, which are strong indicators of secure coding practices. The absence of any known CVEs, both historical and current, further strengthens this assessment, suggesting the plugin has a history of being well-maintained and secure. The plugin also demonstrates an awareness of security by including a capability check, albeit one of the few code signals observed. However, the total absence of entry points like AJAX handlers, REST API routes, shortcodes, and cron events, while indicative of a minimal attack surface, also limits the scope of the static analysis. This lack of observed entry points makes it difficult to fully assess the security of potential interactions. Despite this, the data presented suggests a plugin developed with security in mind.

Vulnerabilities
None known

Contact Form 7 Quiz Placeholders Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Contact Form 7 Quiz Placeholders Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

Contact Form 7 Quiz Placeholders Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 4
actionwp_enqueue_scriptscontact-form-7-quiz-placeholders.php:32
actionadmin_initcontact-form-7-quiz-placeholders.php:42
actionadmin_menucontact-form-7-quiz-placeholders.php:70
actionwp_headcontact-form-7-quiz-placeholders.php:95
Maintenance & Trust

Contact Form 7 Quiz Placeholders Maintenance & Trust

Maintenance Signals

WordPress version tested
Last updatedNov 26, 2012
PHP min version
Downloads4K

Community Trust

Rating20/100
Number of ratings2
Active installs40
Developer Profile

Contact Form 7 Quiz Placeholders Developer Profile

Josh Davis

5 plugins · 860 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Contact Form 7 Quiz Placeholders

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/contact-form-7-quiz-placeholders/style.css
Script Paths
http://cdnjs.cloudflare.com/ajax/libs/modernizr/2.6.2/modernizr.min.js
Version Parameters
contact-form-7-quiz-placeholders/style.css?ver=

HTML / DOM Fingerprints

CSS Classes
cf7_placeholderwpcf7-quizwpcf7-form-control-wrapwpcf7-quiz-label
Data Attributes
placeholder
JS Globals
Modernizr
FAQ

Frequently Asked Questions about Contact Form 7 Quiz Placeholders