Discko Security & Risk Analysis

wordpress.org/plugins/discko

Integrate Discko.io forms into WordPress with customizable floating button or iframe embed options.

0 active installs v1.3.0 PHP 7.4+ WP 5.8+ Updated Feb 20, 2026
appointmentformsiframeintegrationmodal
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Discko Safe to Use in 2026?

Generally Safe

Score 100/100

Discko has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The 'discko' plugin v1.3.0 exhibits a strong security posture based on the provided static analysis. The absence of dangerous functions, file operations, and external HTTP requests, coupled with 100% of SQL queries using prepared statements and all output being properly escaped, indicates a commitment to secure coding practices. The presence of nonce and capability checks on the identified entry points is also a positive sign, minimizing the risk of unauthorized actions. The plugin's vulnerability history shows no known CVEs, which, combined with the clean code analysis, suggests a well-maintained and secure codebase. However, it's important to note that the static analysis only covers the visible code surface. The lack of any taint analysis results could mean either no sensitive data flows were identified or the analysis was limited in scope, leaving potential for undiscovered vulnerabilities in complex data handling scenarios. The use of a bundled library (Select2) without version information presents a minor concern; if this library is outdated or has known vulnerabilities, it could introduce a risk that is not directly evident from the plugin's own code.

Key Concerns

  • Bundled library Select2 without version info
Vulnerabilities
None known

Discko Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Discko Release Timeline

v1.3.0Current
v1.2.0
v1.1.1
v1.1.0
v1.0.0
Code Analysis
Analyzed Apr 16, 2026

Discko Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
240 escaped
Nonce Checks
1
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
1

Bundled Libraries

Select2

Output Escaping

100% escaped240 total outputs
Attack Surface

Discko Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[discko_iframe] discko.php:66
WordPress Hooks 8
actionadmin_menudiscko.php:61
actionadmin_initdiscko.php:62
actionadmin_enqueue_scriptsdiscko.php:63
actionwp_enqueue_scriptsdiscko.php:69
actionwp_footerdiscko.php:70
actionelementor/widgets/registerdiscko.php:73
actioninitdiscko.php:76
actionplugins_loadeddiscko.php:723
Maintenance & Trust

Discko Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedFeb 20, 2026
PHP min version7.4
Downloads320

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Discko Developer Profile

discko

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Discko

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/discko/build/discko-button.css/wp-content/plugins/discko/build/discko-button.js/wp-content/plugins/discko/build/discko-editor.asset.php/wp-content/plugins/discko/build/discko-editor.css/wp-content/plugins/discko/build/discko-editor.js
Script Paths
/wp-content/plugins/discko/build/discko-button.js/wp-content/plugins/discko/build/discko-editor.js
Version Parameters
discko/build/discko-button.css?ver=discko/build/discko-button.js?ver=discko/build/discko-editor.css?ver=discko/build/discko-editor.js?ver=

HTML / DOM Fingerprints

CSS Classes
discko-button-containerdiscko-bubblediscko-editor-wrapper
HTML Comments
<!-- Discko Integration Button --><!-- Discko Gutenberg Block -->
Data Attributes
data-discko-form-urldata-discko-display-modedata-discko-button-sizedata-discko-custom-icondata-discko-bubble-colordata-discko-hover-animation+14 more
JS Globals
disckoButtondisckoEditor
Shortcode Output
[discko_iframe
FAQ

Frequently Asked Questions about Discko