
EDD Mobile Security & Risk Analysis
wordpress.org/plugins/edd-mobileA mobile app for Easy Digital Downloads
Is EDD Mobile Safe to Use in 2026?
Generally Safe
Score 85/100EDD Mobile has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "edd-mobile" plugin v1.0.3 demonstrates a generally good security posture based on the provided static analysis. It boasts a minimal attack surface with all identified entry points secured, and importantly, no direct SQL queries were found without the use of prepared statements. The absence of known CVEs and a clean vulnerability history further contributes to this positive assessment, suggesting a development team that is either diligent about security or has not yet encountered significant vulnerabilities. However, a significant concern arises from the complete lack of output escaping for all identified outputs. This means that user-supplied data, if it can be injected into these outputs, could potentially be rendered as active code or malicious content in the user's browser, leading to cross-site scripting (XSS) vulnerabilities. While the taint analysis showed no issues, this is likely due to the limited analysis performed or the absence of complex data flow paths. The presence of a nonce check is a positive sign, but its effectiveness is diminished without proper capability checks and output escaping.
Key Concerns
- 100% of outputs are unescaped
- No capability checks on entry points
EDD Mobile Security Vulnerabilities
EDD Mobile Release Timeline
EDD Mobile Code Analysis
Output Escaping
EDD Mobile Attack Surface
AJAX Handlers 2
WordPress Hooks 7
Maintenance & Trust
EDD Mobile Maintenance & Trust
Maintenance Signals
Community Trust
EDD Mobile Alternatives
Easy Digital Downloads Free Link
easy-digital-downloads-free-link
replace EDD add-to-cart button with download link when product is free
EDD Auto Register
edd-auto-register
Automatically creates a WP user account at checkout, based on customer's email address.
Easy Digital Downloads Featured Downloads
edd-featured-downloads
Easily feature your downloads
Counten- Sale Counter Advanced
counten-sale-counter-advanced
A Sale Counter Plugin work with the Easy Digital Download Products
Sale Price for EDD
edd-sale-price
Promote your downloads with a sale price!
EDD Mobile Developer Profile
9 plugins · 190 total installs
How We Detect EDD Mobile
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/edd-mobile/themes/img/icon.png/wp-content/plugins/edd-mobile/themes/img/startup.png/wp-content/plugins/edd-mobile/themes/img/startup@2x.png/wp-content/plugins/edd-mobile/themes/img/startup@5.png/wp-content/plugins/edd-mobile/themes/css/ios.css/wp-content/plugins/edd-mobile/themes/src/lib/jquery-1.7.min.js/wp-content/plugins/edd-mobile/themes/src/lib/jqtouch.min.js/wp-content/plugins/edd-mobile/themes/src/edd-mobile.js/wp-content/plugins/edd-mobile/color-pick.jsedd-mobile/color-pick.js?ver=edd-mobile/themes/css/ios.css?ver=edd-mobile/themes/src/edd-mobile.js?ver=HTML / DOM Fingerprints
edd-mobilejqttoolbararrowdatano-cacheroundedTranslators: HTML head titleTranslators: Site headlinedata-endpointdata-storagedata-typekeytokensite_urlendpointapi_urlreferrer+10 more<li class="arrow data"><a href="#products" data-endpoint="products" data-storage="products">Products</a></li><li class="arrow data"><a href="#customers" data-endpoint="customers" data-storage="customers">Customers</a></li><li class="arrow data"><a href="#sales" data-endpoint="sales" data-storage="sales">Sales</a></li><li class="arrow data no-cache"><a href="#detail" data-endpoint="stats" data-type="earnings" data-storage="stats-earnings">Earnings</a></li>