Disposable Email Blocker – GravityForms Security & Risk Analysis

wordpress.org/plugins/disposable-email-blocker-gravityforms

Prevent From Submitting Any Disposable/Temporary Emails On GravityForms Forms.

10 active installs v2.0.3 PHP 8.0+ WP 5.6+ Updated Dec 10, 2025
blockerdisposable-email-blockergravity-formstemporary-emailtemporary-email-blocker
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Disposable Email Blocker – GravityForms Safe to Use in 2026?

Generally Safe

Score 100/100

Disposable Email Blocker – GravityForms has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5mo ago
Risk Assessment

Based on the static analysis and vulnerability history, the "disposable-email-blocker-gravityforms" v2.0.3 plugin exhibits a strong security posture. The absence of any identified dangerous functions, raw SQL queries, or unescaped output indicates that the developers have adhered to best practices for secure coding. The plugin also has a clean vulnerability history with no known CVEs, further reinforcing its perceived security. The lack of external HTTP requests and file operations also reduces the potential attack surface.

While the plugin's code analysis reveals no immediate vulnerabilities, there are a few areas worth noting. The absence of nonce checks and capability checks on the identified entry points (cron events) is a potential concern. Although the number of entry points is low, if these cron events were to be triggered maliciously or in an unexpected context, they could potentially be exploited without proper authorization checks.

Overall, this plugin appears to be well-secured with no critical or high-severity issues found. The developers have demonstrated good coding hygiene. The primary area for improvement would be to implement capability checks and nonces for the cron events to further harden the plugin against potential misuse.

Key Concerns

  • Missing nonce checks on cron events
  • Missing capability checks on cron events
Vulnerabilities
None known

Disposable Email Blocker – GravityForms Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Disposable Email Blocker – GravityForms Release Timeline

v2.0.3Current
v2.0.2
v2.0.1
v2.0.0
Code Analysis
Analyzed Apr 16, 2026

Disposable Email Blocker – GravityForms Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
4 prepared
Unescaped Output
0
4 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared4 total queries

Output Escaping

100% escaped4 total outputs
Attack Surface

Disposable Email Blocker – GravityForms Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 4
actionadmin_noticesincludes/class-disposable-email-blocker-gravityforms.php:117
filtergform_form_settings_fieldsincludes/class-disposable-email-blocker-gravityforms.php:119
actiongform_create_disposable_email_domains_tableincludes/class-disposable-email-blocker-gravityforms.php:121
filtergform_field_validationincludes/class-disposable-email-blocker-gravityforms.php:134

Scheduled Events 2

gform_create_disposable_email_domains_table
gform_create_disposable_email_domains_table
Maintenance & Trust

Disposable Email Blocker – GravityForms Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 10, 2025
PHP min version8.0
Downloads3K

Community Trust

Rating100/100
Number of ratings1
Active installs10
Developer Profile

Disposable Email Blocker – GravityForms Developer Profile

Sajjad Hossain Sagor

34 plugins · 10K total installs

79
trust score
Avg Security Score
100/100
Avg Patch Time
139 days
View full developer profile
Detection Fingerprints

How We Detect Disposable Email Blocker – GravityForms

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/disposable-email-blocker-gravityforms/public/css/frontend.css/wp-content/plugins/disposable-email-blocker-gravityforms/public/js/frontend.js
Script Paths
/wp-content/plugins/disposable-email-blocker-gravityforms/public/js/frontend.js
Version Parameters
/wp-content/plugins/disposable-email-blocker-gravityforms/public/css/frontend.css?ver=/wp-content/plugins/disposable-email-blocker-gravityforms/public/js/frontend.js?ver=

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Disposable Email Blocker – GravityForms