SocialNotify: Notifications for Contact Form 7 Security & Risk Analysis

wordpress.org/plugins/eca-socialnotify-cf7

WhatsApp Notification for Contact Form 7 – Send WhatsApp messages using Twilio API when a form is submitted.

10 active installs v1.0.0 PHP 7.4+ WP 5.0+ Updated Jan 6, 2026
contact-form-7messagingnotificationstwiliowhatsapp
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is SocialNotify: Notifications for Contact Form 7 Safe to Use in 2026?

Generally Safe

Score 100/100

SocialNotify: Notifications for Contact Form 7 has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4mo ago
Risk Assessment

The "eca-socialnotify-cf7" v1.0.0 plugin exhibits a strong security posture based on the provided static analysis. It demonstrates excellent adherence to secure coding practices by utilizing prepared statements for all SQL queries, properly escaping all output, and incorporating nonce checks. The absence of exposed attack vectors such as AJAX handlers, REST API routes, shortcodes, and cron events with weak or no authentication is a significant strength. Furthermore, the plugin has no recorded vulnerability history, indicating a clean track record and likely diligent development and maintenance regarding security. The taint analysis also shows no identified flows with unsanitized paths, further bolstering confidence in its security. However, the lack of capability checks on any entry points (though the static analysis reports 0 entry points, this implies any potential entry points are not being secured with WordPress roles and permissions), combined with the absence of external HTTP requests (which, while good for reducing attack surface, can sometimes be a necessary component for legitimate functionality and their absence might indicate limited features), suggests that while the current codebase is secure, future expansion or integration could introduce risks if not handled with equivalent care. Overall, this plugin appears to be very secure as is, with its main area for potential future concern being the diligent implementation of capability checks if new features that require user permissions are added.

Vulnerabilities
None known

SocialNotify: Notifications for Contact Form 7 Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

SocialNotify: Notifications for Contact Form 7 Release Timeline

v1.0.1
v1.0.0Current
Code Analysis
Analyzed Apr 16, 2026

SocialNotify: Notifications for Contact Form 7 Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
63 escaped
Nonce Checks
1
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped63 total outputs
Attack Surface

SocialNotify: Notifications for Contact Form 7 Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 10
actionplugins_loadedincludes/class-eca-socialnotify-cf7.php:153
actionadmin_enqueue_scriptsincludes/class-eca-socialnotify-cf7.php:168
actionadmin_enqueue_scriptsincludes/class-eca-socialnotify-cf7.php:169
actionadmin_menuincludes/class-eca-socialnotify-cf7.php:172
actionadmin_initincludes/class-eca-socialnotify-cf7.php:173
filterwpcf7_editor_panelsincludes/class-eca-socialnotify-cf7.php:174
actionwpcf7_save_contact_formincludes/class-eca-socialnotify-cf7.php:175
actionwpcf7_before_send_mailincludes/class-eca-socialnotify-cf7.php:176
actionwp_enqueue_scriptsincludes/class-eca-socialnotify-cf7.php:190
actionwp_enqueue_scriptsincludes/class-eca-socialnotify-cf7.php:191
Maintenance & Trust

SocialNotify: Notifications for Contact Form 7 Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedJan 6, 2026
PHP min version7.4
Downloads657

Community Trust

Rating100/100
Number of ratings10
Active installs10
Developer Profile

SocialNotify: Notifications for Contact Form 7 Developer Profile

ECA Tech Inc

2 plugins · 10 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect SocialNotify: Notifications for Contact Form 7

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/eca-socialnotify-cf7/admin/css/eca-socialnotify-cf7-admin.css/wp-content/plugins/eca-socialnotify-cf7/admin/js/eca-socialnotify-cf7-admin.js/wp-content/plugins/eca-socialnotify-cf7/public/css/eca-socialnotify-cf7-public.css/wp-content/plugins/eca-socialnotify-cf7/public/js/eca-socialnotify-cf7-public.js
Script Paths
admin/js/eca-socialnotify-cf7-admin.jspublic/js/eca-socialnotify-cf7-public.js
Version Parameters
eca-socialnotify-cf7/admin/css/eca-socialnotify-cf7-admin.css?ver=eca-socialnotify-cf7/admin/js/eca-socialnotify-cf7-admin.js?ver=eca-socialnotify-cf7/public/css/eca-socialnotify-cf7-public.css?ver=eca-socialnotify-cf7/public/js/eca-socialnotify-cf7-public.js?ver=

HTML / DOM Fingerprints

CSS Classes
eca-socialnotify-cf7
Data Attributes
data-plugin-name="eca-socialnotify-cf7"
JS Globals
eca_socialnotify_cf7_params
FAQ

Frequently Asked Questions about SocialNotify: Notifications for Contact Form 7