
DonatePress – Donation, Crowdfunding and Fundraising Platform Security & Risk Analysis
wordpress.org/plugins/donatepressAdd a donation button using Gutenberg and accept payment via PayPal.
Is DonatePress – Donation, Crowdfunding and Fundraising Platform Safe to Use in 2026?
Generally Safe
Score 85/100DonatePress – Donation, Crowdfunding and Fundraising Platform has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The donatepress plugin version 0.1 exhibits a seemingly strong security posture based on the static analysis. There are no identified dangerous functions, SQL queries are all prepared, and outputs are properly escaped. Crucially, there are no detected taint flows or vulnerabilities in its history. The attack surface is minimal, with only one shortcode and no AJAX handlers or REST API routes exposed without authentication. This suggests diligent adherence to secure coding practices within the analyzed code itself. However, the complete lack of nonce checks and capability checks across all entry points is a significant concern. While there are no current issues, this absence of critical security controls leaves the plugin vulnerable to potential attacks if any input were ever to be processed without proper authorization or validation in future versions or through unforeseen interactions. The clean vulnerability history is positive but doesn't negate the inherent risk posed by missing essential security mechanisms.
Key Concerns
- Missing nonce checks on all entry points
- Missing capability checks on all entry points
DonatePress – Donation, Crowdfunding and Fundraising Platform Security Vulnerabilities
DonatePress – Donation, Crowdfunding and Fundraising Platform Code Analysis
DonatePress – Donation, Crowdfunding and Fundraising Platform Attack Surface
Shortcodes 1
WordPress Hooks 4
Maintenance & Trust
DonatePress – Donation, Crowdfunding and Fundraising Platform Maintenance & Trust
Maintenance Signals
Community Trust
DonatePress – Donation, Crowdfunding and Fundraising Platform Alternatives
WP Crowdfunding
wp-crowdfunding
WP Crowdfunding is a WordPress plugin for fundraising/backer sites. This WooCommerce based plugin lets you launch a site like Kickstarter easily.
GiveWP – Donation Plugin and Fundraising Platform
give
Accept donations and begin fundraising with GiveWP, the highest rated WordPress donation plugin for online giving.
Charitable – Donation Plugin for WordPress – Fundraising with Recurring Donations & More
charitable
The best WordPress donation plugin. Create fundraising donation forms, accept recurring donations, easy donor management, add crowdfunding, and more.
Leyka
leyka
Leyka is a plugin for crowdfunding and donations collection via WordPress website.
FundEngine – Donation and Crowdfunding Platform
wp-fundraising-donation
FundEngine - Fundraising Donation plugin and Crowdfunding Platform comes with Single donation and crowdfunding solution. You can use our plugin Either …
DonatePress – Donation, Crowdfunding and Fundraising Platform Developer Profile
1 plugin · 0 total installs
How We Detect DonatePress – Donation, Crowdfunding and Fundraising Platform
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/donatepress/dist/blocks.style.build.css/wp-content/plugins/donatepress/dist/blocks.build.js/wp-content/plugins/donatepress/dist/blocks.editor.build.css/wp-content/plugins/donatepress/dist/blocks.build.jsHTML / DOM Fingerprints
Donatepress_Payment_Blockdontepress_temdata-plugin-dir-pathdata-plugin-dir-urlcgbGlobal<form target="_blank" action="https://www.paypal.com/cgi-bin/webscr" method="post"><div class="Donatepress_Payment_Block"><input type="hidden" name="cmd" value="_donations"><input type="hidden" name="item_name"