
Easy Digital Downloads Digital Signature Security & Risk Analysis
wordpress.org/plugins/edd-digital-signature-add-onAutomatically require your Easy Digital Downloads customers to sign a legally binding contract before downloading your product. Easy to Use.
Is Easy Digital Downloads Digital Signature Safe to Use in 2026?
Generally Safe
Score 100/100Easy Digital Downloads Digital Signature has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The EDD Digital Signature Add-On v1.8.0 exhibits a generally strong security posture based on the provided static analysis. The plugin demonstrates good practices by consistently using prepared statements for all SQL queries and by implementing nonce and capability checks on its entry points. The absence of dangerous functions, file operations, and external HTTP requests further contributes to a reduced attack surface.
However, a notable concern arises from the output escaping. With only 64% of outputs properly escaped, there is a significant risk of Cross-Site Scripting (XSS) vulnerabilities. This is particularly concerning given that the plugin has multiple entry points (AJAX handlers and shortcodes) where user-supplied data could potentially be rendered without adequate sanitization.
The plugin's vulnerability history is clean, with no recorded CVEs. This is a positive indicator, suggesting the developers have historically maintained a secure codebase. Nevertheless, the potential for XSS due to insufficient output escaping remains the primary weakness identified in this analysis.
Key Concerns
- Insufficient output escaping (64%)
Easy Digital Downloads Digital Signature Security Vulnerabilities
Easy Digital Downloads Digital Signature Release Timeline
Easy Digital Downloads Digital Signature Code Analysis
SQL Query Safety
Output Escaping
Easy Digital Downloads Digital Signature Attack Surface
AJAX Handlers 1
Shortcodes 2
WordPress Hooks 37
Maintenance & Trust
Easy Digital Downloads Digital Signature Maintenance & Trust
Maintenance Signals
Community Trust
Easy Digital Downloads Digital Signature Alternatives
Smart Agreements
smart-agreements
The smart agreements plugin helps to create a agreement/contract and digital signature
Bulk Edit Posts and Products in Spreadsheet
wp-sheet-editor-bulk-spreadsheet-editor-for-posts-and-pages
Modern Bulk Editor for Posts and Pages, create and edit hundreds of posts at once in a spreadsheet inside wp-admin. Search and quick edits.
Digital Signature For Contact Form 7
digital-signature-for-contact-form-7
Contact Form 7 Signature Addon making autographs of people who want to get an E-signature in the system. We build too easy to access and use for users …
AffiliateWP – Affiliate Product Rates
affiliatewp-affiliate-product-rates
Allows you to set product referral rates on a per-affiliate level in AffiliateWP.
AffiliateWP – Allowed Products
affiliatewp-allowed-products
Allows only specific products to generate commission in AffiliateWP.
Easy Digital Downloads Digital Signature Developer Profile
10 plugins · 4K total installs
How We Detect Easy Digital Downloads Digital Signature
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/edd-digital-signature-add-on/assets/js/esign-iframe.js/wp-content/plugins/edd-digital-signature-add-on/about/assets/css/esig-snip-styles.css/wp-content/plugins/edd-digital-signature-add-on/about/assets/css/esig-about.css/wp-content/plugins/edd-digital-signature-add-on/assets/css/esig-about-alert.css/wp-content/plugins/edd-digital-signature-add-on/assets/js/esign-iframe.jsedd-digital-signature-add-on/assets/js/esign-iframe.js?ver=edd-digital-signature-add-on/about/assets/css/esig-snip-styles.css?ver=edd-digital-signature-add-on/about/assets/css/esig-about.css?ver=edd-digital-signature-add-on/assets/css/esig-about-alert.css?ver=HTML / DOM Fingerprints
bangBarerror