
Desperado Product Inquiry Buttons for WooCommerce Security & Risk Analysis
wordpress.org/plugins/desperado-product-inquiry-buttonsAdd WhatsApp, Viber, Telegram, SMS and Email inquiry buttons to your WooCommerce product pages.
Is Desperado Product Inquiry Buttons for WooCommerce Safe to Use in 2026?
Generally Safe
Score 100/100Desperado Product Inquiry Buttons for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "desperado-product-inquiry-buttons" v1.0 exhibits a generally good security posture based on the provided static analysis. The absence of dangerous functions, proper handling of SQL queries with prepared statements, and a high percentage of properly escaped output are strong indicators of secure coding practices. Furthermore, the lack of identified vulnerabilities in its history suggests a well-maintained and secure plugin over time.
However, there are a few areas for concern. The presence of a shortcode without any explicitly mentioned authentication or capability checks is a potential entry point that could be exploited if it interacts with user-supplied data. The static analysis also reports zero nonce checks, which is a critical security mechanism for preventing Cross-Site Request Forgery (CSRF) attacks, especially for any functionality that performs state-changing actions. While the taint analysis found no issues, the lack of comprehensive analysis flows might mean that subtle vulnerabilities could be missed.
In conclusion, while the plugin has positive security attributes, the lack of nonce checks and potential unauthenticated shortcode execution are significant weaknesses that require attention. Addressing these specific issues would further strengthen the plugin's security profile.
Key Concerns
- Shortcode without auth checks
- Missing nonce checks
Desperado Product Inquiry Buttons for WooCommerce Security Vulnerabilities
Desperado Product Inquiry Buttons for WooCommerce Code Analysis
Output Escaping
Desperado Product Inquiry Buttons for WooCommerce Attack Surface
Shortcodes 1
WordPress Hooks 9
Maintenance & Trust
Desperado Product Inquiry Buttons for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
Desperado Product Inquiry Buttons for WooCommerce Alternatives
ChatLink for WooCommerce
chatlink-for-woocommerce
Add WhatsApp inquiry buttons to WooCommerce products, floating chat widget, and shortcodes to boost customer engagement.
Product Enquiry for WooCommerce
product-enquiry-for-woocommerce
Product Enquiry allows prospective customers to "Make an Enquiry" about a product, or "Request a Quote" right from within the product page.
Order On Mobile for WooCommerce
order-on-mobile-for-woocommerce
Order On Mobile for WooCommerce allows your customers to submit their orders via WhatsApp, directly from the Woocommerce product page, single product …
PiWeb Product Enquiry or product catalog for WooCommerce
enquiry-quotation-for-woocommerce
Product enquiry for WooCommerce and quote request plugin that can save enquiries and email the WooCommerce product enquiry as well
Product Dropdown Field For Contact Form 7
product-list-field-for-contact-form-7
Contact Form 7 Woocommerce Product Dropdown Field modify your contact form 7 on product dropdown field.
Desperado Product Inquiry Buttons for WooCommerce Developer Profile
4 plugins · 200 total installs
How We Detect Desperado Product Inquiry Buttons for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/desperado-product-inquiry-buttons/assets/css/admin.css/wp-content/plugins/desperado-product-inquiry-buttons/assets/js/admin.js/wp-content/plugins/desperado-product-inquiry-buttons/assets/js/admin.jsdesperado-product-inquiry-buttons/assets/css/admin.css?ver=desperado-product-inquiry-buttons/assets/js/admin.js?ver=HTML / DOM Fingerprints
data-viber-numberdata-whatsapp-numberdata-telegram-numberdata-sms-numberdata-email-addressdata-viber-button-text+11 moreDESPERADO_PIB_PLUGIN_URLDESPERADO_PIB_PLUGIN_VERSION