Fundraising Bar – A Sticky Customizable Donation Bar for WordPress Security & Risk Analysis

wordpress.org/plugins/fundraising-bar

A WordPress plugin that displays a donation bar for PayPal donations (one-time or recurring), with sandbox mode, custom amounts, fee coverage, and a l …

0 active installs v1.0.0 PHP + WP 5.0+ Updated Aug 28, 2025
donationsfundraisingnonprofitpaypalrecurring-donations
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Fundraising Bar – A Sticky Customizable Donation Bar for WordPress Safe to Use in 2026?

Generally Safe

Score 100/100

Fundraising Bar – A Sticky Customizable Donation Bar for WordPress has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 8mo ago
Risk Assessment

The "fundraising-bar" v1.0.0 plugin presents a strong initial security posture based on the provided static analysis. The absence of any detected dangerous functions, file operations, or external HTTP requests is commendable. Furthermore, all SQL queries are properly prepared, and all outputs are correctly escaped, indicating good coding practices in these areas. The plugin also has no recorded vulnerability history, which is a positive indicator.

However, the complete lack of entry points such as AJAX handlers, REST API routes, shortcodes, or cron events is unusual and could be a concern. While this reduces the immediate attack surface, it might imply limited functionality or a very specific use case that doesn't require user interaction. The absence of nonce checks and capability checks is also a notable weakness. If any entry points were to be introduced in future versions without proper authorization checks, this plugin could become vulnerable.

Overall, the plugin appears secure due to its limited functionality and good adherence to safe coding practices for the elements that do exist. The primary concern lies in the potential for future vulnerabilities if new features are added without implementing robust security checks like nonces and capability checks.

Key Concerns

  • No nonce checks implemented
  • No capability checks implemented
  • Zero total entry points is unusual
Vulnerabilities
None known

Fundraising Bar – A Sticky Customizable Donation Bar for WordPress Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Fundraising Bar – A Sticky Customizable Donation Bar for WordPress Release Timeline

v1.0.0Current
Code Analysis
Analyzed Apr 16, 2026

Fundraising Bar – A Sticky Customizable Donation Bar for WordPress Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
33 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped33 total outputs
Attack Surface

Fundraising Bar – A Sticky Customizable Donation Bar for WordPress Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 5
actionwp_enqueue_scriptsincludes/class-my-donation-bar-front.php:9
actionwp_footerincludes/class-my-donation-bar-front.php:10
actionadmin_menuincludes/class-my-donation-bar-settings.php:12
actionadmin_initincludes/class-my-donation-bar-settings.php:13
actionadmin_enqueue_scriptsincludes/class-my-donation-bar-settings.php:14
Maintenance & Trust

Fundraising Bar – A Sticky Customizable Donation Bar for WordPress Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedAug 28, 2025
PHP min version
Downloads762

Community Trust

Rating100/100
Number of ratings2
Active installs0
Developer Profile

Fundraising Bar – A Sticky Customizable Donation Bar for WordPress Developer Profile

Dmitry

4 plugins · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Fundraising Bar – A Sticky Customizable Donation Bar for WordPress

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/fundraising-bar/assets/css/style.css/wp-content/plugins/fundraising-bar/assets/js/script.js/wp-content/plugins/fundraising-bar/assets/js/frontend.js
Script Paths
/wp-content/plugins/fundraising-bar/assets/js/script.js/wp-content/plugins/fundraising-bar/assets/js/frontend.js
Version Parameters
fundraising-bar/assets/css/style.css?ver=fundraising-bar/assets/js/script.js?ver=fundraising-bar/assets/js/frontend.js?ver=

HTML / DOM Fingerprints

CSS Classes
my-donation-barmy-donation-bar-bottommy-donation-bar-topmy-donation-bar-contentclose-buttonmy-donation-bar-textmy-donation-bar-formdonation-amount+4 more
Data Attributes
data-amount
JS Globals
feePercentage
FAQ

Frequently Asked Questions about Fundraising Bar – A Sticky Customizable Donation Bar for WordPress