
Discko Security & Risk Analysis
wordpress.org/plugins/disckoIntegrate Discko.io forms into WordPress with customizable floating button or iframe embed options.
Is Discko Safe to Use in 2026?
Generally Safe
Score 100/100Discko has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'discko' plugin v1.3.0 exhibits a strong security posture based on the provided static analysis. The absence of dangerous functions, file operations, and external HTTP requests, coupled with 100% of SQL queries using prepared statements and all output being properly escaped, indicates a commitment to secure coding practices. The presence of nonce and capability checks on the identified entry points is also a positive sign, minimizing the risk of unauthorized actions. The plugin's vulnerability history shows no known CVEs, which, combined with the clean code analysis, suggests a well-maintained and secure codebase. However, it's important to note that the static analysis only covers the visible code surface. The lack of any taint analysis results could mean either no sensitive data flows were identified or the analysis was limited in scope, leaving potential for undiscovered vulnerabilities in complex data handling scenarios. The use of a bundled library (Select2) without version information presents a minor concern; if this library is outdated or has known vulnerabilities, it could introduce a risk that is not directly evident from the plugin's own code.
Key Concerns
- Bundled library Select2 without version info
Discko Security Vulnerabilities
Discko Release Timeline
Discko Code Analysis
Bundled Libraries
Output Escaping
Discko Attack Surface
Shortcodes 1
WordPress Hooks 8
Maintenance & Trust
Discko Maintenance & Trust
Maintenance Signals
Community Trust
Discko Alternatives
GSheetConnector for CF7 – Connect Contact Form 7 to Google Sheets and Send Form Submissions in Real Time
cf7-google-sheets-connector
Send your Contact Form 7 data directly to your Google Sheets spreadsheet.
RD Station
integracao-rd-station
Integrate your contact forms with RD Station Marketing
GSheetConnector For WPForms – WPForms Google Sheets Integration (Real-Time Sync)
gsheetconnector-wpforms
Connect WPForms to Google Sheets and automatically send form entries to a google sheet in real-time. No manual exports, no coding required.
Fluent Forms Connector for MailPoet
fluent-forms-connector-for-mailpoet
Connect Fluent Forms with MailPoet.
Gravity Forms Klaviyo Add-On
gf-klaviyo-add-on
Gravity Forms Klaviyo Add-On seamlessly integrates Gravity Forms with Klaviyo, enabling powerful email marketing automation.
Discko Developer Profile
1 plugin · 0 total installs
How We Detect Discko
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/discko/build/discko-button.css/wp-content/plugins/discko/build/discko-button.js/wp-content/plugins/discko/build/discko-editor.asset.php/wp-content/plugins/discko/build/discko-editor.css/wp-content/plugins/discko/build/discko-editor.js/wp-content/plugins/discko/build/discko-button.js/wp-content/plugins/discko/build/discko-editor.jsdiscko/build/discko-button.css?ver=discko/build/discko-button.js?ver=discko/build/discko-editor.css?ver=discko/build/discko-editor.js?ver=HTML / DOM Fingerprints
discko-button-containerdiscko-bubblediscko-editor-wrapper<!-- Discko Integration Button --><!-- Discko Gutenberg Block -->data-discko-form-urldata-discko-display-modedata-discko-button-sizedata-discko-custom-icondata-discko-bubble-colordata-discko-hover-animation+14 moredisckoButtondisckoEditor[discko_iframe