
Email Validation Filter for Contact Form 7 Security & Risk Analysis
wordpress.org/plugins/email-validation-filter-for-contact-form-7Added mail validation function to Contact Form 7. Protected by rejection filter, RFC filter, and DNS filter.
Is Email Validation Filter for Contact Form 7 Safe to Use in 2026?
Generally Safe
Score 92/100Email Validation Filter for Contact Form 7 has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "email-validation-filter-for-contact-form-7" v1.0.3 exhibits a strong security posture based on the provided static analysis. The absence of any identified dangerous functions, raw SQL queries, file operations, or external HTTP requests is a significant positive indicator. Furthermore, the high percentage of properly escaped output suggests a good practice of preventing cross-site scripting (XSS) vulnerabilities.
The analysis also reveals no identified vulnerabilities in its history, nor any exploitable attack surface points such as unprotected AJAX handlers, REST API routes, shortcodes, or cron events. The taint analysis showing zero flows with unsanitized paths is excellent, indicating that user-supplied data is likely being handled safely. The complete lack of capability checks and nonce checks, while typically a concern, is less alarming here due to the seemingly non-existent attack surface.
Overall, the plugin appears to be well-developed from a security perspective, with no immediate or evident risks based on the provided data. Its strengths lie in its clean code and lack of historical vulnerabilities. The only potential area for scrutiny, given the lack of other issues, would be the complete absence of capability and nonce checks, which in a more complex plugin or with a larger attack surface, would be a significant concern. However, in this case, the risk is mitigated by the minimal attack surface.
Email Validation Filter for Contact Form 7 Security Vulnerabilities
Email Validation Filter for Contact Form 7 Code Analysis
Output Escaping
Email Validation Filter for Contact Form 7 Attack Surface
WordPress Hooks 9
Maintenance & Trust
Email Validation Filter for Contact Form 7 Maintenance & Trust
Maintenance Signals
Community Trust
Email Validation Filter for Contact Form 7 Alternatives
WP Armour – Honeypot Anti Spam
honeypot
Fastest growing Anti Spam plugin. No API calls, subscriptions, captcha or puzzle. Full GDPR complaint. For comments, contact form, login, registration
Reoon Email Verifier
reoon-email-verifier
Safeguard your online forms against invalid, temporary, disposable, and harmful email addresses with real-time verification.
DeBounce Email Validator
debounce-io-email-validator
Real-time email validation for WordPress forms. Block invalid, disposable, and risky emails to keep your database clean and improve deliverability.
Byteplant Email Validator
email-validator-by-byteplant
With the Byteplant Email Validator plugin you can easily verify with a real-time live check if an email address really exists and is valid (https://ww …
UserCheck
usercheck
Protect your WordPress site from disposable email addresses using the UserCheck API.
Email Validation Filter for Contact Form 7 Developer Profile
1 plugin · 200 total installs
How We Detect Email Validation Filter for Contact Form 7
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
wpcf7-email-validation-filter-panelname="wpcf7-email-validation-filter[reject][active]"id="wpcf7-email-validation-filter-reject-active"name="wpcf7-email-validation-filter[reject][lists]"id="wpcf7-email-validation-filter-lists"name="wpcf7-email-validation-filter[reject][error]"id="wpcf7-email-validation-filter-error"+8 more