GF IR Mobile add-on Security & Risk Analysis

wordpress.org/plugins/gf-ir-mobile-add-on

افزودن فرمت و اعتبارسنجی شماره موبایل ایران به فیلد Phone در Gravity Forms، با پشتیبانی از اعداد فارسی/عربی و فرمت‌های رایج 09، 98، +98 و 0098.

80 active installs v1.0.2 PHP 7.4+ WP 6.5+ Updated Jun 22, 2026
formsgravity-formsiran-mobilepersianphone-validation
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is GF IR Mobile add-on Safe to Use in 2026?

Generally Safe

Score 100/100

GF IR Mobile add-on has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The static analysis of gf-ir-mobile-add-on v1.0.0 reveals an exceptionally clean codebase with no identified entry points like AJAX handlers, REST API routes, shortcodes, or cron events that are exposed. Furthermore, the code shows no signs of dangerous functions, direct SQL queries, unescaped output, file operations, or external HTTP requests. The absence of any taint analysis findings indicates no identified pathways for malicious data injection. The vulnerability history is also completely clear, with no recorded CVEs of any severity.

This plugin exhibits strong security practices in its current version, with a remarkably small attack surface and diligent coding standards regarding sensitive operations. The lack of any detected issues in static analysis and the complete absence of historical vulnerabilities are positive indicators. However, the complete lack of any identified entry points is unusual and might suggest the plugin is very basic or has a limited scope. While the absence of issues is a strength, it also means there are no demonstrated security checks (like nonce or capability checks) to evaluate under load, as there are no demonstrable points where they would be applied.

In conclusion, gf-ir-mobile-add-on v1.0.0 appears to be a highly secure plugin based on the provided static analysis and vulnerability history. Its attack surface is effectively zero, and the code adheres to best practices for handling data and queries. The lack of historical vulnerabilities further reinforces this positive assessment. The primary observation is the potential simplicity of the plugin given the complete absence of any functional entry points that would typically require security considerations.

Vulnerabilities
None known

GF IR Mobile add-on Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

GF IR Mobile add-on Release Timeline

v1.0.2Current
v1.0.0
Code Analysis
Analyzed Mar 16, 2026

GF IR Mobile add-on Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

GF IR Mobile add-on Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 3
filtergform_phone_formatsGF IR Mobile add-on.php:28
actionwp_footerGF IR Mobile add-on.php:71
actiongform_enqueue_scriptsGF IR Mobile add-on.php:75
Maintenance & Trust

GF IR Mobile add-on Maintenance & Trust

Maintenance Signals

WordPress version tested7.0.2
Last updatedJun 22, 2026
PHP min version7.4
Downloads2K

Community Trust

Rating100/100
Number of ratings1
Active installs80
Developer Profile

GF IR Mobile add-on Developer Profile

Armin Jamali

2 plugins · 90 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect GF IR Mobile add-on

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

CSS Classes
ginput_container_phone
FAQ

Frequently Asked Questions about GF IR Mobile add-on