EDD Hide Download Security & Risk Analysis

wordpress.org/plugins/edd-hide-download

Hide the default Easy Digital Downloads product page from the user, and redirect them to a custom page.

600 active installs v1.2.11.1 PHP 5.3+ WP 4.9+ Updated Nov 9, 2022
easy-digital-downloadsecommercehide-productlanding-pagepurchase-funnel
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is EDD Hide Download Safe to Use in 2026?

Generally Safe

Score 85/100

EDD Hide Download has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3yr ago
Risk Assessment

The plugin "edd-hide-download" v1.2.11.1 exhibits a strong security posture based on the provided static analysis. The absence of any identified AJAX handlers, REST API routes, shortcodes, or cron events with unprotected entry points is a significant positive. Furthermore, the code demonstrates good practices by exclusively using prepared statements for SQL queries, properly escaping all output, and avoiding file operations or external HTTP requests. The presence of capability checks also indicates an awareness of access control.

Key Concerns

  • Taint flow with unsanitized paths
  • No nonce checks on entry points
Vulnerabilities
None known

EDD Hide Download Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

EDD Hide Download Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
1 escaped
Nonce Checks
0
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped1 total outputs
Data Flows
1 unsanitized

Data Flow Analysis

2 flows1 with unsanitized paths
redirect_hidden (edd-hide-download.php:367)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

EDD Hide Download Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 7
actioninitedd-hide-download.php:121
actionedd_meta_box_settings_fieldsedd-hide-download.php:176
actionedd_metabox_fields_saveedd-hide-download.php:177
actionpre_get_postsedd-hide-download.php:178
filteredd_downloads_queryedd-hide-download.php:179
actionedd_meta_box_fieldsedd-hide-download.php:182
actiontemplate_redirectedd-hide-download.php:185
Maintenance & Trust

EDD Hide Download Maintenance & Trust

Maintenance Signals

WordPress version tested6.1.10
Last updatedNov 9, 2022
PHP min version5.3
Downloads23K

Community Trust

Rating100/100
Number of ratings7
Active installs600
Developer Profile

EDD Hide Download Developer Profile

Andrew Munro / AffiliateWP

17 plugins · 3K total installs

71
trust score
Avg Security Score
88/100
Avg Patch Time
3200 days
View full developer profile
Detection Fingerprints

How We Detect EDD Hide Download

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/edd-hide-download/edd-hide-download.php
Version Parameters
edd-hide-download/edd-hide-download.php?ver=edd-hide-download.php?ver=

HTML / DOM Fingerprints

Data Attributes
id="edd_hide_download"name="_edd_hide_download"id="edd_hide_redirect_download"name="_edd_hide_redirect_download"
FAQ

Frequently Asked Questions about EDD Hide Download