
Login With Google reCaptcha For WordPress And Woocomerce Security & Risk Analysis
wordpress.org/plugins/evg-google-recaptchaExtended WordPress\Woocomerce Login With Google reCaptcha and hiding user/password errors
Is Login With Google reCaptcha For WordPress And Woocomerce Safe to Use in 2026?
Generally Safe
Score 85/100Login With Google reCaptcha For WordPress And Woocomerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "evg-google-recaptcha" v1.00 plugin exhibits a strong security posture based on the provided static analysis. The absence of any discovered AJAX handlers, REST API routes, shortcodes, or cron events indicates a very limited attack surface. Furthermore, the code signals reveal a clean bill of health regarding dangerous functions, file operations, and SQL queries, all of which use prepared statements. The plugin also demonstrates good practices with its output escaping, with only a small percentage of outputs potentially unescaped. The vulnerability history is also excellent, showing no known CVEs, which suggests a history of secure development and diligent patching if any issues were ever discovered.
While the lack of vulnerabilities and attack surface are significant strengths, the plugin does make one external HTTP request. The absence of nonce and capability checks is a concern, especially if this HTTP request or any other functionality could be triggered by an unauthenticated user or if sensitive data is processed. Taint analysis is also noted as having zero flows analyzed, which means there's no data to indicate if malicious input could be propagated through the application without proper sanitization. Overall, the plugin appears to be very secure due to its minimal attack surface and lack of known vulnerabilities, but the potential for unauthenticated actions or data manipulation due to missing checks warrants caution.
Key Concerns
- No nonce checks implemented
- No capability checks implemented
- 1 external HTTP request
- 20% output potentially unescaped
- 0 taint flows analyzed
Login With Google reCaptcha For WordPress And Woocomerce Security Vulnerabilities
Login With Google reCaptcha For WordPress And Woocomerce Code Analysis
Output Escaping
Login With Google reCaptcha For WordPress And Woocomerce Attack Surface
WordPress Hooks 9
Maintenance & Trust
Login With Google reCaptcha For WordPress And Woocomerce Maintenance & Trust
Maintenance Signals
Community Trust
Login With Google reCaptcha For WordPress And Woocomerce Alternatives
Power Captcha reCAPTCHA
power-captcha-recaptcha
Protect WordPress/WooCommerce/Contact Form 7 forms from spam, brute-force attacks, fake comments, accounts, or registrations with Google reCAPTCHA.
Checkout Captcha for WooCommerce
jkm-checkout-captcha-for-woo
Adds reCAPTCHA verification to WooCommerce checkout, login, registration, and password reset forms to prevent spam and bot transactions.
ThinkCaptcha – Login Captcha, Register Captcha & Checkout reCAPTCHA
thinkcaptcha
Secure WordPress & WooCommerce forms with Google reCAPTCHA. Stop spam, bots, and brute-force attacks effectively.
Loginizer
loginizer
Loginizer is a WordPress security plugin which helps you fight against bruteforce attacks.
Advanced Google reCAPTCHA
advanced-google-recaptcha
Captcha protection against spam comments & brute force login attacks using Google reCAPTCHA.
Login With Google reCaptcha For WordPress And Woocomerce Developer Profile
2 plugins · 10 total installs
How We Detect Login With Google reCaptcha For WordPress And Woocomerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/evg-google-recaptcha/js/evg-google-recaptcha.js/wp-content/plugins/evg-google-recaptcha/css/evg-google-recaptcha.css/wp-content/plugins/evg-google-recaptcha/js/evg-google-recaptcha.jsevg-google-recaptcha/js/evg-google-recaptcha.js?ver=evg-google-recaptcha/css/evg-google-recaptcha.css?ver=