
Give – Double the Donation Security & Risk Analysis
wordpress.org/plugins/give-double-the-donationEmpower your GiveWP donors to have their company match their donations with the most powerful Company Matching platform: Double the Donation.
Is Give – Double the Donation Safe to Use in 2026?
Generally Safe
Score 100/100Give – Double the Donation has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "give-double-the-donation" plugin v2.1.2 exhibits a concerning security posture primarily due to its unprotected entry points and weak output escaping. While the plugin demonstrates good practices in database interaction by exclusively using prepared statements and has no recorded vulnerabilities or critical taint flows, the absence of permission callbacks on its two REST API routes presents a significant risk. This means any user, regardless of their role, could potentially interact with these API endpoints, leading to unauthorized actions or information disclosure if the API functionality is not robustly secured internally. The low percentage of properly escaped output (23%) is another major red flag, increasing the likelihood of cross-site scripting (XSS) vulnerabilities where user-supplied data is not properly sanitized before being displayed on the frontend.
Key Concerns
- REST API routes without permission callbacks
- Low percentage of properly escaped output
- No nonce checks
- No capability checks
Give – Double the Donation Security Vulnerabilities
Give – Double the Donation Release Timeline
Give – Double the Donation Code Analysis
Output Escaping
Give – Double the Donation Attack Surface
REST API Routes 2
WordPress Hooks 5
Maintenance & Trust
Give – Double the Donation Maintenance & Trust
Maintenance Signals
Community Trust
Give – Double the Donation Alternatives
GiveWP Donation Widgets for Elementor
givewp-donation-widgets-for-elementor
A GiveWP add-on which allows you to embed any GiveWP shortcode into your Elementor-powered pages.
Seamless Donations is Sunset
seamless-donations
Sunset Notice
Double the Donation – A workplace giving tool
double-the-donation
Double the Donation – Easily add our matching gifts plugin and volunteering plugin on your site to help your fundraising efforts
Give – Paystack Gateway
paystack-for-give
Fundraise with Paystack and GiveWP.
Give – Divi Donation Modules
give-donation-modules-for-divi
A GiveWP add-on which allows you to embed any GiveWP shortcode into your Divi-powered pages.
Give – Double the Donation Developer Profile
1 plugin · 100 total installs
How We Detect Give – Double the Donation
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/give-double-the-donation/build/backend.asset.php/wp-content/plugins/give-double-the-donation/build/backend.js/wp-content/plugins/give-double-the-donation/build/frontend.asset.php/wp-content/plugins/give-double-the-donation/build/frontend.jshttps://doublethedonation.com/api/js/ddplugin.jsgive-double-the-donation/build/backend.asset.php?ver=give-double-the-donation/build/frontend.asset.php?ver=HTML / DOM Fingerprints
data-give-dtd-public-keyDDCONF/wp-json/givewp/dtd/donation/