GDPR-DSGVO compliant Embeds for YouTube Videos Security & Risk Analysis

wordpress.org/plugins/gdpr-dsgvo-compliant-embeds-for-youtube-videos

Enables GDPR-DSGVO compliant embedding of multiple YouTube Video iframes with user consent. Select light, dark or custom designs, add an optional priv …

10 active installs v1.0.1 PHP 7.4+ WP 4.9+ Updated Apr 6, 2026
dsgvogdpriframeprivacyyoutube-video
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is GDPR-DSGVO compliant Embeds for YouTube Videos Safe to Use in 2026?

Generally Safe

Score 100/100

GDPR-DSGVO compliant Embeds for YouTube Videos has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

This plugin, "gdpr-dsgvo-compliant-embeds-for-youtube-videos" version 1.0.1, exhibits a strong security posture based on the provided static analysis. The code demonstrates excellent practices by utilizing prepared statements for all SQL queries, ensuring output is properly escaped, and having no file operations or external HTTP requests. The presence of nonce checks is also a positive sign for securing potentially sensitive operations.

However, a notable area for concern is the complete absence of capability checks. While there are no AJAX handlers or REST API routes identified as unprotected, the single shortcode entry point lacks any capability checks. This means that any logged-in user, regardless of their role or permissions, could potentially execute the functionality associated with this shortcode. Given the plugin's purpose is to embed YouTube videos in a GDPR-compliant manner, the impact might be limited, but it still represents a potential avenue for privilege escalation or unwanted content manipulation if the shortcode's functionality is not inherently benign.

The plugin's vulnerability history is exceptionally clean, with no known CVEs recorded. This, combined with the positive static analysis findings, suggests a developer who prioritizes security. Nevertheless, the missing capability checks on the shortcode remain a weakness that, while not exploited historically, could be a target in future attacks. Overall, the plugin is well-secured with good coding practices, but the lack of permission checks on its single entry point introduces a minor, yet addressable, risk.

Key Concerns

  • Shortcode without capability checks
Vulnerabilities
None known

GDPR-DSGVO compliant Embeds for YouTube Videos Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

GDPR-DSGVO compliant Embeds for YouTube Videos Release Timeline

v1.0.1Current
v1.0.0
Code Analysis
Analyzed Apr 16, 2026

GDPR-DSGVO compliant Embeds for YouTube Videos Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
72 escaped
Nonce Checks
1
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped72 total outputs
Attack Surface

GDPR-DSGVO compliant Embeds for YouTube Videos Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[dsgvo_video] includes/frontend.php:11
WordPress Hooks 5
actionwp_enqueue_scriptsgdpr-dsgvo-compliant-embeds-for-youtube-videos.php:61
actionadmin_enqueue_scriptsincludes/admin.php:13
actioninitincludes/admin.php:25
actionadd_meta_boxesincludes/admin.php:45
actionsave_postincludes/admin.php:261
Maintenance & Trust

GDPR-DSGVO compliant Embeds for YouTube Videos Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedApr 6, 2026
PHP min version7.4
Downloads392

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

GDPR-DSGVO compliant Embeds for YouTube Videos Developer Profile

Solution First by M00dy

2 plugins · 60 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect GDPR-DSGVO compliant Embeds for YouTube Videos

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/gdpr-dsgvo-compliant-embeds-for-youtube-videos/assets/css/dsgvo-yt.css/wp-content/plugins/gdpr-dsgvo-compliant-embeds-for-youtube-videos/assets/js/dsgvo-yt.js/wp-content/plugins/gdpr-dsgvo-compliant-embeds-for-youtube-videos/assets/js/dsgvo-yt-color-picker.js
Script Paths
/wp-content/plugins/gdpr-dsgvo-compliant-embeds-for-youtube-videos/assets/js/dsgvo-yt.js/wp-content/plugins/gdpr-dsgvo-compliant-embeds-for-youtube-videos/assets/js/dsgvo-yt-color-picker.js
Version Parameters
gdpr-dsgvo-compliant-embeds-for-youtube-videos/assets/css/dsgvo-yt.css?ver=gdpr-dsgvo-compliant-embeds-for-youtube-videos/assets/js/dsgvo-yt.js?ver=gdpr-dsgvo-compliant-embeds-for-youtube-videos/assets/js/dsgvo-yt-color-picker.js?ver=

HTML / DOM Fingerprints

CSS Classes
dsgvo-yt-info-link
Data Attributes
data-dsgvo-yt-iframedata-dsgvo-yt-templatedata-dsgvo-yt-btn-textdata-dsgvo-yt-btn-shapedata-dsgvo-yt-overlay-bgdata-dsgvo-yt-button-bg+8 more
JS Globals
dsgvoYt
Shortcode Output
[dsgvo_video
FAQ

Frequently Asked Questions about GDPR-DSGVO compliant Embeds for YouTube Videos