
Free Post Mail Security & Risk Analysis
wordpress.org/plugins/free-post-mailFree Post Mailは無料でご利用いただけるお問い合わせ・資料請求フォームです。 メールフォーム内の各入力項目はユーザー自身で自由に定義することができます。 また、フォームごとに受信メールアドレス、送信メールアドレス、自動返信メールの内容を指定することができます。 Localization …
Is Free Post Mail Safe to Use in 2026?
Generally Safe
Score 85/100Free Post Mail has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'free-post-mail' v1.0 plugin exhibits a generally positive security posture based on the provided static analysis. It demonstrates good practices by implementing nonce checks and capability checks for its entry points. The absence of dangerous functions, file operations, and external HTTP requests further reduces its potential attack surface. The SQL query usage is also promising, with a significant percentage employing prepared statements, mitigating risks of SQL injection.
However, there are minor areas for concern. While the total number of entry points is low and none are reported as unprotected, the static analysis indicates potential for improvement in output escaping, with approximately a quarter of outputs not being properly escaped. This could lead to Cross-Site Scripting (XSS) vulnerabilities if user-supplied data is involved in these outputs.
The plugin's vulnerability history is a significant strength; the complete lack of recorded CVEs, particularly at critical or high severity levels, suggests a history of secure development and maintenance. This, combined with the static analysis findings, indicates a low overall risk for this version. The main weakness lies in the potential for unescaped output, which warrants attention.
Key Concerns
- Unescaped output (26% of total)
Free Post Mail Security Vulnerabilities
Free Post Mail Code Analysis
SQL Query Safety
Output Escaping
Free Post Mail Attack Surface
AJAX Handlers 2
Shortcodes 1
WordPress Hooks 3
Maintenance & Trust
Free Post Mail Maintenance & Trust
Maintenance Signals
Community Trust
Free Post Mail Alternatives
Formzu WP
formzu-wp
メールフォーム無料作成サービス「フォームズ」のSSL通信フォームを簡単に設置できます。
Form1
form1
お問合わせフォームを簡単に設置できます。確認画面付きで管理画面から履歴を管理できます。
FormToSS-フォムトス- | Contact Form 7 と スプレッドシート(スプシ)の連携をノーコードで!
form-to-ss
このプラグインは、Contact Form 7 のフォームデータを、自動的に Google スプレッドシートに送信します。
OS-WPカスタマイズプラグイン
os-wpc
OS-WPカスタマイズプラグインは、次のような機能があります。
Free Post Mail Developer Profile
3 plugins · 10K total installs
How We Detect Free Post Mail
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/free-post-mail/css/free_post_mail.css/wp-content/plugins/free-post-mail/js/manage.js/wp-content/plugins/free-post-mail/js/manage.jsHTML / DOM Fingerprints
bulk-action-selector-topid="free_post_mail_id"id="insert_free_post_mail"[free_post_mail_filed]