Login With Google reCaptcha For WordPress And Woocomerce Security & Risk Analysis

wordpress.org/plugins/evg-google-recaptcha

Extended WordPress\Woocomerce Login With Google reCaptcha and hiding user/password errors

10 active installs v1.00 PHP + WP 3.1+ Updated Jun 5, 2017
admingoogle-recaptchaloginrecaptchasecurity
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Login With Google reCaptcha For WordPress And Woocomerce Safe to Use in 2026?

Generally Safe

Score 85/100

Login With Google reCaptcha For WordPress And Woocomerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 8yr ago
Risk Assessment

The "evg-google-recaptcha" v1.00 plugin exhibits a strong security posture based on the provided static analysis. The absence of any discovered AJAX handlers, REST API routes, shortcodes, or cron events indicates a very limited attack surface. Furthermore, the code signals reveal a clean bill of health regarding dangerous functions, file operations, and SQL queries, all of which use prepared statements. The plugin also demonstrates good practices with its output escaping, with only a small percentage of outputs potentially unescaped. The vulnerability history is also excellent, showing no known CVEs, which suggests a history of secure development and diligent patching if any issues were ever discovered.

While the lack of vulnerabilities and attack surface are significant strengths, the plugin does make one external HTTP request. The absence of nonce and capability checks is a concern, especially if this HTTP request or any other functionality could be triggered by an unauthenticated user or if sensitive data is processed. Taint analysis is also noted as having zero flows analyzed, which means there's no data to indicate if malicious input could be propagated through the application without proper sanitization. Overall, the plugin appears to be very secure due to its minimal attack surface and lack of known vulnerabilities, but the potential for unauthenticated actions or data manipulation due to missing checks warrants caution.

Key Concerns

  • No nonce checks implemented
  • No capability checks implemented
  • 1 external HTTP request
  • 20% output potentially unescaped
  • 0 taint flows analyzed
Vulnerabilities
None known

Login With Google reCaptcha For WordPress And Woocomerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Login With Google reCaptcha For WordPress And Woocomerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
1
4 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
1
Bundled Libraries
0

Output Escaping

80% escaped5 total outputs
Attack Surface

Login With Google reCaptcha For WordPress And Woocomerce Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 9
actionadmin_menuindex.php:36
actionadmin_initindex.php:38
actionlogin_formindex.php:40
actionwoocommerce_login_formindex.php:42
actionlogin_formindex.php:44
actionwoocommerce_login_formindex.php:46
actionwp_authenticate_userindex.php:49
actionwp_authenticate_userindex.php:51
filterlogin_errorsindex.php:56
Maintenance & Trust

Login With Google reCaptcha For WordPress And Woocomerce Maintenance & Trust

Maintenance Signals

WordPress version tested4.7.32
Last updatedJun 5, 2017
PHP min version
Downloads2K

Community Trust

Rating100/100
Number of ratings1
Active installs10
Developer Profile

Login With Google reCaptcha For WordPress And Woocomerce Developer Profile

evgeniypoznyak

2 plugins · 10 total installs

89
trust score
Avg Security Score
93/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Login With Google reCaptcha For WordPress And Woocomerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/evg-google-recaptcha/js/evg-google-recaptcha.js/wp-content/plugins/evg-google-recaptcha/css/evg-google-recaptcha.css
Script Paths
/wp-content/plugins/evg-google-recaptcha/js/evg-google-recaptcha.js
Version Parameters
evg-google-recaptcha/js/evg-google-recaptcha.js?ver=evg-google-recaptcha/css/evg-google-recaptcha.css?ver=

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Login With Google reCaptcha For WordPress And Woocomerce