Click to Contact – Float Buttons Security & Risk Analysis

wordpress.org/plugins/ctc-flatbuttons

A simple yet powerful plugin to add floating contact buttons to your site. 13 different social links can be shown as well as phone and email.

100 active installs v1.0.3 PHP 7.1+ WP 4.9+ Updated Apr 3, 2023
contacts
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Click to Contact – Float Buttons Safe to Use in 2026?

Generally Safe

Score 85/100

Click to Contact – Float Buttons has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3yr ago
Risk Assessment

The ctc-flatbuttons plugin, version 1.0.3, exhibits a strong security posture based on the provided static analysis and vulnerability history. The absence of any identified AJAX handlers, REST API routes, shortcodes, or cron events with unprotected entry points suggests a minimal attack surface. Furthermore, the code analysis reveals no dangerous functions, file operations, or external HTTP requests. The plugin also demonstrates good practices in its handling of SQL queries, with 100% using prepared statements, and a high percentage (96%) of output escaping, indicating a commitment to preventing common web vulnerabilities. The lack of any known CVEs or recorded vulnerability history further reinforces its current secure state.

Vulnerabilities
None known

Click to Contact – Float Buttons Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Click to Contact – Float Buttons Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
3
66 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

96% escaped69 total outputs
Attack Surface

Click to Contact – Float Buttons Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 5
actionwp_enqueue_scriptsctc-flatbuttons.php:25
actioninitctc-flatbuttons.php:41
actionwp_footerctc-flatbuttons.php:46
actionadmin_menuinc\admin.php:12
actionadmin_initinc\admin.php:16
Maintenance & Trust

Click to Contact – Float Buttons Maintenance & Trust

Maintenance Signals

WordPress version tested6.2.9
Last updatedApr 3, 2023
PHP min version7.1
Downloads3K

Community Trust

Rating100/100
Number of ratings3
Active installs100
Developer Profile

Click to Contact – Float Buttons Developer Profile

Dmitry Litvinov

7 plugins · 2K total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Click to Contact – Float Buttons

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/ctc-flatbuttons/inc/aaist-style.css/wp-content/plugins/ctc-flatbuttons/inc/aaist-script.js
Script Paths
/wp-content/plugins/ctc-flatbuttons/inc/aaist-script.js
Version Parameters
ctc-flatbuttons/inc/aaist-style.css?ver=1.0.3

HTML / DOM Fingerprints

CSS Classes
speed-dialdialsctc-bg-sharectc-bg-watsappctc-bg-pinterestctc-bg-instactc-bg-LinkedInctc-bg-twitter+13 more
Data Attributes
class="speed-dial"class="dials clozed"class="toggle ctc-bg-share"class="ctc-bg-watsapp"class="ctc-bg-pinterest"class="ctc-bg-insta"+13 more
Shortcode Output
<div class="speed-dial"><a class="toggle ctc-bg-share"></a><ul class="dials clozed"><li><a class="ctc-bg-watsapp" target="_blank" href="whatsapp://send?phone=+
FAQ

Frequently Asked Questions about Click to Contact – Float Buttons