
Mailster Add-On for FormCraft Security & Risk Analysis
wordpress.org/plugins/formcraft-mymailCreate gorgeous optin forms for your site with FormCraft, and grow your Mailster list.
Is Mailster Add-On for FormCraft Safe to Use in 2026?
Generally Safe
Score 85/100Mailster Add-On for FormCraft has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The security posture of the formcraft-mymail plugin v1.2 appears to be strong based on the static analysis and vulnerability history provided. The absence of any identified dangerous functions, SQL queries requiring prepared statements, file operations, or external HTTP requests is a positive indicator. Furthermore, the lack of known CVEs and a recorded vulnerability history suggests a well-maintained and secure codebase. The plugin also exhibits a minimal attack surface with zero identified entry points like AJAX handlers, REST API routes, or shortcodes, and importantly, no unprotected ones.
However, the static analysis does highlight a potential area for concern: output escaping. With only 33% of outputs properly escaped, there's a risk of cross-site scripting (XSS) vulnerabilities if user-supplied data is displayed without adequate sanitization. While the taint analysis shows no unsanitized paths, this could be due to the limited flows analyzed. The absence of nonce and capability checks is also noteworthy, although this is mitigated by the extremely small attack surface. Overall, the plugin demonstrates good security practices in preventing common vulnerabilities like SQL injection and unauthorized access, but the output escaping needs attention.
Key Concerns
- Low percentage of properly escaped output
- No nonce checks
- No capability checks
Mailster Add-On for FormCraft Security Vulnerabilities
Mailster Add-On for FormCraft Code Analysis
Output Escaping
Mailster Add-On for FormCraft Attack Surface
WordPress Hooks 3
Maintenance & Trust
Mailster Add-On for FormCraft Maintenance & Trust
Maintenance Signals
Community Trust
Mailster Add-On for FormCraft Alternatives
Lead Form Builder & Contact Form
lead-form-builder
Fast Drag & Drop Contact From Builder and Lead Generation Tool With Google One Tap Login. Supports Block Editor.
MailPoet Add-On for FormCraft
mailpoet-for-formcraft
Create gorgeous optin forms for your site with FormCraft, and grow your MailPoet list.
MetForm – Contact Form, Survey, Quiz, & Custom Form Builder for Elementor
metform
The most popular Elementor forms builder to create WordPress forms like contact forms, booking forms, feedback form, survey forms, application forms a …
RTMForm Builder
romethemeform
RTMForm For Elementor Plugin is an Form Builder for Elementor, and Widget Ready to use.
Contact Form by Supsystic
contact-form-by-supsystic
Contact Form Builder with drag-and-drop editor to create responsive, mobile ready contact forms in a second. Custom fields and contact form templates
Mailster Add-On for FormCraft Developer Profile
8 plugins · 11K total installs
How We Detect Mailster Add-On for FormCraft
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/formcraft-mymail/assets/builder.js/wp-content/plugins/formcraft-mymail/assets/builder.cssassets/builder.jsformcraft-mymail/assets/builder.css?ver=formcraft-mymail/assets/builder.js?ver=HTML / DOM Fingerprints
mailster-covermapped-mailsternos-{{Addons.Mailster.Map.length}}nothing-heresomething-herew-25is-textselect-list+6 moreng-repeatng-modelng-clickdata-toggleng-disabledng-ifAddons.Mailster.MapAddons.Mailster.DoubleSelectedListSelectedColumnFieldNameformcraft_mailster_addon+2 more