
GDPress Security & Risk Analysis
wordpress.org/plugins/gdpressMore than a privacy plugin
Is GDPress Safe to Use in 2026?
Generally Safe
Score 85/100GDPress has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "gdpress" v2.0.1 plugin exhibits a mixed security posture. On the positive side, it demonstrates good practices by primarily using prepared statements for its SQL queries and having no recorded vulnerabilities or CVEs. This suggests a history of generally secure development. However, the static analysis reveals significant concerns, particularly regarding the attack surface. With three out of four identified entry points lacking authentication checks, these AJAX handlers represent a direct pathway for potential unauthorized actions. Furthermore, the plugin's output escaping is only 57% proper, leaving a substantial portion of its output potentially vulnerable to cross-site scripting (XSS) attacks. While taint analysis showed no immediate critical flows, the combination of unprotected entry points and insufficient output sanitization creates a plausible scenario for exploitation.
Key Concerns
- Unprotected AJAX handlers
- Insufficient output escaping
- No nonce checks on AJAX
GDPress Security Vulnerabilities
GDPress Code Analysis
SQL Query Safety
Output Escaping
GDPress Attack Surface
AJAX Handlers 3
Shortcodes 1
WordPress Hooks 77
Scheduled Events 3
Maintenance & Trust
GDPress Maintenance & Trust
Maintenance Signals
Community Trust
GDPress Alternatives
Inazo's flamingo automatically delete old messages
inazo-flamingo-automatically-delete-old-messages
This plugin help you to auto removed all information stored by flamingo.
Manage Privacy Options Page
manage-privacy-options
Add roles that can edit the privacy page.
Wider Gravity Forms Stop Entries
wider-gravity-forms-stop-entries
Selectively stop Gravity Forms entries being stored on your web server to comply with privacy and the GDPR.
Gravity Forms: GDPR Framework Add-On
gdpr-for-gravity-forms
The easiest way to make your Gravity Forms GDPR-compliant. Fully documented, extendable and developer-friendly.
Disable Privacy Tools
disable-privacy-tools
Removes the tools for creating a privacy policy and exporting/erasing personal data.
GDPress Developer Profile
19 plugins · 2K total installs
How We Detect GDPress
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/gdpress/gp-content/css/gdpress-admin-bar.css/wp-content/plugins/gdpress/gp-content/css/gdpress-form.css/wp-content/plugins/gdpress/gp-content/css/gdpress-admin.css/wp-content/plugins/gdpress/gp-content/css/gdpress-theme.css/wp-content/plugins/gdpress/gp-content/css/gdpress-style.css/wp-content/plugins/gdpress/gp-content/js/gdpress-admin.js/wp-content/plugins/gdpress/gp-content/js/gdpress-form.js/wp-content/plugins/gdpress/gp-content/js/gdpress-theme.jsgdpress/gp-content/css/gdpress-admin-bar.css?ver=gdpress/gp-content/css/gdpress-form.css?ver=gdpress/gp-content/css/gdpress-admin.css?ver=gdpress/gp-content/css/gdpress-theme.css?ver=gdpress/gp-content/css/gdpress-style.css?ver=gdpress/gp-content/js/gdpress-admin.js?ver=gdpress/gp-content/js/gdpress-form.js?ver=gdpress/gp-content/js/gdpress-theme.js?ver=HTML / DOM Fingerprints
gdpress-formGDPress_Form/wp-json/gdpress/[gdpress]