Get Chat App Security & Risk Analysis

wordpress.org/plugins/get-chat-app

Add a WhatsApp chat button to your website in seconds. Allow visitors to simply tap to chat through WhatsApp and other different platforms.

400 active installs v1.2.02 PHP 5.6+ WP 3.8+ Updated Dec 12, 2023
chatfacebook-messengergetchatwhatsappwhatsapp-chat
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Get Chat App Safe to Use in 2026?

Generally Safe

Score 85/100

Get Chat App has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2yr ago
Risk Assessment

The get-chat-app v1.2.02 plugin exhibits a strong security posture based on the provided static analysis. All identified entry points, including AJAX handlers, are protected by authentication checks. The plugin demonstrates excellent coding practices by utilizing prepared statements for all SQL queries and properly escaping all outputs, eliminating risks associated with SQL injection and cross-site scripting. The absence of file operations, external HTTP requests, and dangerous functions further bolsters its security. The single nonce check is a positive sign of basic security awareness.

However, the lack of capability checks on its two AJAX handlers is a notable concern. While the handlers are protected by authentication, they do not verify user roles or permissions, meaning any authenticated user could potentially trigger these actions. The plugin's vulnerability history is clean, with no known CVEs, which is a significant strength and suggests consistent security efforts or a lack of historical targeting. Despite this, the absence of capability checks presents an exploitable path for privilege escalation or unauthorized actions by authenticated users. Overall, the plugin is well-built with secure core practices, but this one oversight requires attention to achieve a truly robust security profile.

Key Concerns

  • AJAX handlers without capability checks
Vulnerabilities
None known

Get Chat App Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Get Chat App Release Timeline

v1.2.01
v1.2.00
v1.0.06
v1.0.05
v1.0.04
v1.0.03
v1.0.02
v1.0.01
Code Analysis
Analyzed Mar 16, 2026

Get Chat App Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
166 escaped
Nonce Checks
1
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped166 total outputs
Attack Surface

Get Chat App Attack Surface

Entry Points2
Unprotected0

AJAX Handlers 2

authwp_ajax_gcapSaveSettingsget-chat-app.php:127
noprivwp_ajax_gcapSaveSettingsget-chat-app.php:128
WordPress Hooks 7
actionadmin_menuget-chat-app.php:96
actiongcap_pro_features_show_buttonget-chat-app.php:108
actiongcap_pro_featuresget-chat-app.php:114
actiongcap_demoget-chat-app.php:120
actionadmin_enqueue_scriptsget-chat-app.php:192
actionadmin_enqueue_scriptsget-chat-app.php:202
actionwp_footerget-chat-app.php:217
Maintenance & Trust

Get Chat App Maintenance & Trust

Maintenance Signals

WordPress version tested6.4.8
Last updatedDec 12, 2023
PHP min version5.6
Downloads16K

Community Trust

Rating100/100
Number of ratings6
Active installs400
Developer Profile

Get Chat App Developer Profile

NickDuncan

5 plugins · 490 total installs

81
trust score
Avg Security Score
81/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Get Chat App

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/get-chat-app/assets/css/admin-style.min.css/wp-content/plugins/get-chat-app/assets/css/flexboxgrid.min.css/wp-content/plugins/get-chat-app/assets/js/gca_admin.js
Script Paths
/wp-content/plugins/get-chat-app/assets/js/gca_admin.js
Version Parameters
get-chat-app/assets/css/admin-style.min.css?ver=get-chat-app/assets/css/flexboxgrid.min.css?ver=get-chat-app/assets/js/gca_admin.js?ver=

HTML / DOM Fingerprints

CSS Classes
gcap-admin-wrap
HTML Comments
<!--Pro features button HTML--><!--Pro features HTML--><!--Demo HTML-->
Data Attributes
data-security
JS Globals
gcap_ajaxurlgcap_nonce
FAQ

Frequently Asked Questions about Get Chat App