DSGVO/GDPR Cookies, DSE, Impressum & Google Fonts Proxy Security & Risk Analysis

wordpress.org/plugins/dsgvo-de

DSGVO konforme Cookie Hinweise, Datenschutzerklärung, Google Analytics und Google Fonts Lösung

700 active installs v1.9 PHP 5.4+ WP 4.3+ Updated Jun 18, 2018
datenschutzdsgvogdsprgoogle-fonts
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is DSGVO/GDPR Cookies, DSE, Impressum & Google Fonts Proxy Safe to Use in 2026?

Generally Safe

Score 85/100

DSGVO/GDPR Cookies, DSE, Impressum & Google Fonts Proxy has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 7yr ago
Risk Assessment

The dsgvo-de plugin version 1.9 exhibits a generally strong security posture based on the provided static analysis. The absence of dangerous functions, file operations, and external HTTP requests is a positive indicator. Crucially, all SQL queries are prepared, and there are no recorded vulnerabilities or CVEs, suggesting a history of secure development. The presence of both nonce and capability checks also demonstrates an awareness of core WordPress security practices.

However, a significant concern arises from the extremely low percentage of properly escaped output (1%). This indicates a high likelihood of cross-site scripting (XSS) vulnerabilities, as user-supplied data is likely being rendered directly in the browser without sufficient sanitization. While the static analysis found no immediate taint flows with unsanitized paths, the lack of output escaping means that any such flow, if it were to exist, would have a high probability of leading to an XSS exploit.

In conclusion, while the plugin benefits from a clean vulnerability history and solid foundational security checks like prepared statements and authentication mechanisms, the severe deficiency in output escaping presents a notable risk. The plugin's small attack surface is a mitigating factor, but the output escaping issue needs immediate attention to prevent potential XSS attacks.

Key Concerns

  • Insufficient output escaping
Vulnerabilities
None known

DSGVO/GDPR Cookies, DSE, Impressum & Google Fonts Proxy Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

DSGVO/GDPR Cookies, DSE, Impressum & Google Fonts Proxy Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
66
1 escaped
Nonce Checks
1
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

1% escaped67 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
show_admin_page (bc-dsgvo-de.php:419)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

DSGVO/GDPR Cookies, DSE, Impressum & Google Fonts Proxy Attack Surface

Entry Points2
Unprotected0

Shortcodes 2

[bc_dsgvo_dse] bc-dsgvo-de.php:16
[bc_dsgvo_imprint] bc-dsgvo-de.php:17
WordPress Hooks 7
filterscript_loader_srcbc-dsgvo-de.php:42
filterstyle_loader_srcbc-dsgvo-de.php:43
filtertemplate_directory_uribc-dsgvo-de.php:44
filterstylesheet_directory_uribc-dsgvo-de.php:45
actionwp_footerbc-dsgvo-de.php:356
actionwp_footerbc-dsgvo-de.php:410
actionadmin_menubc-dsgvo-de.php:413
Maintenance & Trust

DSGVO/GDPR Cookies, DSE, Impressum & Google Fonts Proxy Maintenance & Trust

Maintenance Signals

WordPress version tested4.9.29
Last updatedJun 18, 2018
PHP min version5.4
Downloads8K

Community Trust

Rating100/100
Number of ratings1
Active installs700
Developer Profile

DSGVO/GDPR Cookies, DSE, Impressum & Google Fonts Proxy Developer Profile

Marcus Ripkens

1 plugin · 700 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect DSGVO/GDPR Cookies, DSE, Impressum & Google Fonts Proxy

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/dsgvo-de/css/style.css/wp-content/plugins/dsgvo-de/js/scripts.js
Script Paths
/wp-content/plugins/dsgvo-de/js/scripts.js
Version Parameters
dsgvo-de/css/style.css?ver=dsgvo-de/js/scripts.js?ver=

HTML / DOM Fingerprints

CSS Classes
bc-dsgvo-dse-containerbc-dsgvo-imprint-container
Data Attributes
data-dsgvo-imprint-companydata-dsgvo-imprint-addressdata-dsgvo-imprint-zipdata-dsgvo-imprint-citydata-dsgvo-imprint-ceodata-dsgvo-imprint-court+10 more
Shortcode Output
<h2>Impressum</h2><h3>Betreiber und verantwortlich im Sinne des Telemediengesetzes:</h3><h2>Datenschutzerklärung</h2><p>Verantwortliche Stelle im Sinne der Datenschutzgesetze, insbesondere der EU-Datenschutzgrundverordnung (DSGVO), ist:
FAQ

Frequently Asked Questions about DSGVO/GDPR Cookies, DSE, Impressum & Google Fonts Proxy