Formera Security & Risk Analysis

wordpress.org/plugins/formera

An advanced, high-performance Survey Maker with a premium SaaS-style interface.

0 active installs v1.0.2 PHP 7.2+ WP 5.0+ Updated Mar 26, 2026
feedbackformpollquestionnairesurvey
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Formera Safe to Use in 2026?

Generally Safe

Score 100/100

Formera has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The 'formera' v1.0.2 plugin exhibits a generally strong security posture with no recorded vulnerabilities or critical taint flows. The static analysis reveals excellent practices in output escaping and the absence of dangerous functions, file operations, or external HTTP requests. Crucially, all SQL queries are properly prepared, and the taint analysis found no issues with unsanitized paths. The plugin also demonstrates a good number of nonce and capability checks in its code.

Key Concerns

  • AJAX handlers without authentication checks
  • High number of unprotected entry points
Vulnerabilities
None known

Formera Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Formera Release Timeline

v2.0.0
v1.0.1
Code Analysis
Analyzed Apr 16, 2026

Formera Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
351 escaped
Nonce Checks
9
Capability Checks
8
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped351 total outputs
Data Flows · Security
All sanitized

Data Flow Analysis

7 flows
render_new_broadcast_form (admin/email.php:134)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
5 unprotected

Formera Attack Surface

Entry Points6
Unprotected5

AJAX Handlers 5

authwp_ajax_formera_submit_surveyformera.php:63
noprivwp_ajax_formera_submit_surveyformera.php:64
authwp_ajax_formera_save_surveyformera.php:69
authwp_ajax_formera_send_outreachformera.php:70
authwp_ajax_formera_use_templateformera.php:73

Shortcodes 1

[formera] formera.php:123
WordPress Hooks 6
actioninitformera.php:47
actioninitformera.php:50
actioninitformera.php:57
actionadmin_menuformera.php:101
actionadmin_enqueue_scriptsformera.php:104
actionwp_enqueue_scriptsformera.php:125
Maintenance & Trust

Formera Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 26, 2026
PHP min version7.2
Downloads215

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Formera Developer Profile

Nischal Acharya

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Formera

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/formera/admin/css/formera-admin.css/wp-content/plugins/formera/admin/js/formera-admin.js/wp-content/plugins/formera/public/css/formera-public.css/wp-content/plugins/formera/public/js/formera-public.js/wp-content/plugins/formera/admin/js/formera-email.js
Script Paths
/wp-content/plugins/formera/admin/js/formera-admin.js/wp-content/plugins/formera/public/js/formera-public.js/wp-content/plugins/formera/admin/js/formera-email.js
Version Parameters
formera-admin.css?ver=1.0.2formera-admin.js?ver=1.0.2formera-public.css?ver=1.0.2formera-public.js?ver=1.0.2formera-email.js?ver=1.0.2

HTML / DOM Fingerprints

CSS Classes
ds-app-containerds-animateds-sidebards-sidebar-logods-nav-item
Data Attributes
data-ds-theme
JS Globals
formera_adminformera_objformera_email
REST Endpoints
/wp-json/formera/v1/submit/wp-json/formera/v1/save/wp-json/formera/v1/outreach/wp-json/formera/v1/template
Shortcode Output
[formera
FAQ

Frequently Asked Questions about Formera