
GetResponse Add-On for FormCraft Security & Risk Analysis
wordpress.org/plugins/getresponse-for-formcraftCreate gorgeous optin forms for your site with FormCraft, and grow your GetResponse list.
Is GetResponse Add-On for FormCraft Safe to Use in 2026?
Generally Safe
Score 85/100GetResponse Add-On for FormCraft has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'getresponse-for-formcraft' v1.2 plugin exhibits a concerning security posture due to several critical weaknesses identified in the static analysis. While the plugin demonstrates good practices by not using raw SQL queries and has no recorded vulnerability history, the presence of three unprotected AJAX handlers represents a significant attack surface. Furthermore, the complete lack of output escaping for all analyzed outputs is a severe deficiency that could lead to Cross-Site Scripting (XSS) vulnerabilities if any user-supplied data is reflected directly to the browser. The taint analysis, though limited in scope, did reveal unsanitized flows, which, when combined with the lack of authentication on AJAX endpoints and insufficient output sanitization, increases the likelihood of exploitation. The absence of nonce checks and capability checks on the AJAX handlers further exacerbates these risks, leaving them open to unauthorized execution of actions. The plugin's strengths lie in its clean vulnerability history and secure SQL handling, but these are overshadowed by the immediate and severe risks posed by the unprotected entry points and unescaped outputs.
Key Concerns
- Unprotected AJAX handlers
- All outputs unescaped
- Taint flows with unsanitized paths
- Missing nonce checks on AJAX
- Missing capability checks on AJAX
GetResponse Add-On for FormCraft Security Vulnerabilities
GetResponse Add-On for FormCraft Code Analysis
Output Escaping
Data Flow Analysis
GetResponse Add-On for FormCraft Attack Surface
AJAX Handlers 3
WordPress Hooks 3
Maintenance & Trust
GetResponse Add-On for FormCraft Maintenance & Trust
Maintenance Signals
Community Trust
GetResponse Add-On for FormCraft Alternatives
MailChimp Add-On for FormCraft
mailchimp-for-formcraft
Create gorgeous optin forms for your site with FormCraft, and grow your MailChimp list.
Campaign Monitor Add-On for FormCraft
campaign-monitor-for-formcraft
Create gorgeous optin forms for your site with FormCraft, and grow your Campaign Monitor list.
MailPoet Add-On for FormCraft
mailpoet-for-formcraft
Create gorgeous optin forms for your site with FormCraft, and grow your MailPoet list.
Ultra Addons for Contact Form 7
ultimate-addons-for-contact-form-7
50+ Essential Addons for Contact Form 7 - Conditional Fields, Multi Step, Redirection, Columns, WooCommerce, Mailchimp & more
Lead Form Builder & Contact Form
lead-form-builder
Fast Drag & Drop Contact From Builder and Lead Generation Tool With Google One Tap Login. Supports Block Editor.
GetResponse Add-On for FormCraft Developer Profile
8 plugins · 11K total installs
How We Detect GetResponse Add-On for FormCraft
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/getresponse-for-formcraft/assets/logo.png/wp-content/plugins/getresponse-for-formcraft/assets/builder.js/wp-content/plugins/getresponse-for-formcraft/assets/builder.css/wp-content/plugins/getresponse-for-formcraft/assets/builder.jsgetresponse-for-formcraft/assets/builder.js?ver=getresponse-for-formcraft/assets/builder.css?ver=HTML / DOM Fingerprints
gr-coverapi-keynos-nothing-heresomething-heregr-inputselect-listselect-column+4 more<!-- .help-link --><!-- .api-key --><!-- .add-on options --><!-- .map-item -->+1 moreid='gr-cover'id='gr-valid-{{Addons.GetResponse.showOptions}}'data-post-id='265'ng-model='Addons.GetResponse.api_key'ng-click='testKey()'ng-show='Addons.GetResponse.showOptions'+11 morewindow.formcraft_getresponse_test_apiwindow.formcraft_getresponse_get_listswindow.formcraft_getresponse_get_columns/wp-json/formcraft-getresponse/v1/test_api/wp-json/formcraft-getresponse/v1/get_lists/wp-json/formcraft-getresponse/v1/get_columns[GR_printContent]