
Continuous Delivery for Digital Goods and Downloads Security & Risk Analysis
wordpress.org/plugins/continuous-deliveryContinuous Delivery for Digital Goods and Downloads expands your WordPress download portal to a fully-fledged Continuous Delivery pipeline.
Is Continuous Delivery for Digital Goods and Downloads Safe to Use in 2026?
Generally Safe
Score 85/100Continuous Delivery for Digital Goods and Downloads has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'continuous-delivery' plugin v1.0.4 presents a mixed security posture. On the positive side, the plugin demonstrates good practices in its handling of SQL queries, exclusively using prepared statements, and it shows no recorded history of known vulnerabilities (CVEs). The absence of significant taint flows and a relatively small number of file operations and external HTTP requests also suggest a contained codebase. However, several critical concerns are present. The presence of the `unserialize` function without any apparent sanitization or validation represents a significant risk, as it can be exploited for remote code execution if user-controlled data is passed to it. Furthermore, the lack of proper output escaping for all observed outputs means that any dynamic content displayed to users could be vulnerable to cross-site scripting (XSS) attacks. The absence of nonce checks on its entry points, coupled with capability checks on only two instances, suggests potential weaknesses in authentication and authorization mechanisms, especially if the plugin's entry points are exposed to unauthenticated users.
Key Concerns
- Unsanitized unserialize function detected
- Output escaping is not implemented for any outputs
- No nonce checks found on entry points
- Limited capability checks found
Continuous Delivery for Digital Goods and Downloads Security Vulnerabilities
Continuous Delivery for Digital Goods and Downloads Release Timeline
Continuous Delivery for Digital Goods and Downloads Code Analysis
Dangerous Functions Found
Output Escaping
Continuous Delivery for Digital Goods and Downloads Attack Surface
WordPress Hooks 9
Maintenance & Trust
Continuous Delivery for Digital Goods and Downloads Maintenance & Trust
Maintenance Signals
Community Trust
Continuous Delivery for Digital Goods and Downloads Alternatives
CatFolders Document Gallery & PDF Library
catfolders-document-gallery
Display WordPress PDF gallery and file gallery from folders. Comes with a clean, searchable & sortable list/grid layout.
Filr – Secure document library
filr-protection
Easily Create a Secure Document Library with Filr
CM Download Manager – Organize, Protect & Share Files in WordPress
cm-download-manager
Manage and protect your downloads in WordPress with secure access, categories, and powerful file sharing.
GitHub Release Downloads
github-release-downloads
Get the download count, links and more information for releases of GitHub repositories.
EDD Version
edd-version
Shortcode to output the version number of an EDD download. Requires the EDD Software Licensing add-on.
Continuous Delivery for Digital Goods and Downloads Developer Profile
1 plugin · 0 total installs
How We Detect Continuous Delivery for Digital Goods and Downloads
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
/wp-json/continuous-delivery/v1/products/(?P<id>\d+)/release