
Floating Chat Buttons – Click to Call or Chat, Email Security & Risk Analysis
wordpress.org/plugins/floating-contact-buttonsElevate user engagement through Floating Chat Buttons, facilitating immediate connections via chat, email, callback, and additional channels.
Is Floating Chat Buttons – Click to Call or Chat, Email Safe to Use in 2026?
Generally Safe
Score 100/100Floating Chat Buttons – Click to Call or Chat, Email has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "floating-contact-buttons" plugin version 1.2.8 exhibits a generally strong security posture based on the provided static analysis. All identified entry points (3 AJAX handlers) have nonce and capability checks, indicating good defensive practices against common WordPress attacks. The plugin also makes excellent use of prepared statements for its single SQL query, and a high percentage of its output is properly escaped, mitigating risks of cross-site scripting (XSS). Furthermore, there is no recorded vulnerability history, which suggests a history of secure development and maintenance.
While the overall assessment is positive, a minor concern arises from the presence of an external HTTP request without explicit mention of how its security is handled. Although taint analysis shows no unsanitized paths, this external interaction represents a potential, albeit small, attack vector if not properly secured. The lack of shortcodes, cron events, and REST API routes limits the overall attack surface, further contributing to its good security standing. In conclusion, this plugin appears to be well-developed from a security perspective, with its strengths far outweighing any potential minor concerns.
Key Concerns
- External HTTP request
Floating Chat Buttons – Click to Call or Chat, Email Security Vulnerabilities
Floating Chat Buttons – Click to Call or Chat, Email Code Analysis
SQL Query Safety
Output Escaping
Floating Chat Buttons – Click to Call or Chat, Email Attack Surface
AJAX Handlers 3
WordPress Hooks 11
Maintenance & Trust
Floating Chat Buttons – Click to Call or Chat, Email Maintenance & Trust
Maintenance Signals
Community Trust
Floating Chat Buttons – Click to Call or Chat, Email Alternatives
Click to Call or Chat Buttons
click-to-call-or-chat-buttons
This plugin adds Phone Call and WhatsApp button on your webpage.
SaleChaty – AI Chatbot
salechaty-ai-chatbot
Your Cross-Border AI Private Domain Operation Assistant
WBJet-HelloTap
wbjet-hellotap
Boost your leads and sales! Add beautiful, customizable floating WhatsApp and Call buttons to your WordPress website in seconds.
Click to Chat – HoliThemes
click-to-chat-for-whatsapp
WhatsApp Chat🔥. Let's make your Web page visitors contact you through 'WhatsApp', 'WhatsApp Business'. Add matching Widget✅
Joinchat
creame-whatsapp-me
WhatsApp, Messenger, Telegram, Phone call… capture users through their favorite Apps and turn into clients
Floating Chat Buttons – Click to Call or Chat, Email Developer Profile
12 plugins · 210K total installs
How We Detect Floating Chat Buttons – Click to Call or Chat, Email
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/floating-contact-buttons/feedback/css/admin-feedback-style.css/wp-content/plugins/floating-contact-buttons/feedback/js/admin-feedback-script.js/wp-content/plugins/floating-contact-buttons/feedback/js/admin-feedback-script.jsfloating-contact-buttons/feedback/css/admin-feedback-style.css?ver=floating-contact-buttons/feedback/js/admin-feedback-script.js?ver=HTML / DOM Fingerprints
fcb-feedback-sectioncp_feedback_ajax_object