
Contact Form 7 To WordPress Post Security & Risk Analysis
wordpress.org/plugins/contact-form-to-wp-postsExtend Contact Form 7 and save form entries into WordPress posts.
Is Contact Form 7 To WordPress Post Safe to Use in 2026?
Generally Safe
Score 85/100Contact Form 7 To WordPress Post has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "contact-form-to-wp-posts" plugin version 0.2 exhibits a generally strong security posture based on the provided static analysis and vulnerability history. The absence of any identified AJAX handlers, REST API routes, shortcodes, cron events, or file operations significantly limits the plugin's attack surface. Furthermore, the code signals indicate a robust implementation with no dangerous functions, all SQL queries using prepared statements, and all output being properly escaped. The presence of nonce checks further bolsters its security by protecting against CSRF attacks.
The vulnerability history reinforces this positive assessment, with zero known CVEs and no recorded vulnerabilities of any severity. This suggests a history of secure development and maintenance, or that the plugin is relatively new and has not yet been targeted or discovered to have flaws. The taint analysis also shows no identified flows with unsanitized paths, indicating a lack of exploitable data injection vulnerabilities.
Overall, this plugin appears to be well-secured and follows good WordPress development practices. The strengths lie in its minimal attack surface, diligent use of prepared statements and output escaping, and the inclusion of nonce checks. The primary weakness, if any can be inferred, is the complete absence of capability checks, which could be a concern if the plugin were to expand its functionality and handle sensitive operations. However, given the current scope and lack of identified entry points, this is a minor concern.
Contact Form 7 To WordPress Post Security Vulnerabilities
Contact Form 7 To WordPress Post Release Timeline
Contact Form 7 To WordPress Post Code Analysis
Output Escaping
Contact Form 7 To WordPress Post Attack Surface
WordPress Hooks 10
Maintenance & Trust
Contact Form 7 To WordPress Post Maintenance & Trust
Maintenance Signals
Community Trust
Contact Form 7 To WordPress Post Alternatives
Leads Store Database Contact Form7
leads-store-database-contact-form7
Store and manage Contact Form 7 submissions in your database with easy export to CSV.
AroksDS Submission Alerts for Contact Form 7 to Telegram
aroksds-alerts-for-cf7-to-telegram
Stop losing leads: send Contact Form 7 submissions to a shared Telegram channel as a reliable backup to email.
Database Records for Contact Form 7
database-records-for-contact-form-7
Store and display Contact Form 7 submissions in the database. Manage entries in the admin or display them on the frontend with Bootstrap styling.
BCodeCraft Submissions for Contact Form 7
bcodecraft-submissions-cf7
Secure storage and management of Contact Form 7 submissions with advanced security features. Never lose a lead again!
Submissions Capture & Exporter for Contact Form 7
bulbul-capture-exporter-for-contact-form-7
Capture Contact Form 7 submissions to database. View, search, delete & export to CSV via modern admin modals.
Contact Form 7 To WordPress Post Developer Profile
3 plugins · 80 total installs
How We Detect Contact Form 7 To WordPress Post
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/contact-form-to-wp-posts/assets/css/style.css/wp-content/plugins/contact-form-to-wp-posts/assets/js/script.js/wp-content/plugins/contact-form-to-wp-posts/assets/js/script.jscontact-form-to-wp-posts/assets/css/style.css?ver=contact-form-to-wp-posts/assets/js/script.js?ver=HTML / DOM Fingerprints
pseudo-hrname="wpcf7-cf7towp-active"name="wpcf7-cf7towp-title"name="wpcf7-cf7towp-content"