Golf Handicap Calculator Security & Risk Analysis

wordpress.org/plugins/golf-handicap-calculator

Works out the handicap for a user according to the UK CONGU regulations using a form for a single user on a website

10 active installs v1.0.3 PHP + WP 3.0.1+ Updated Dec 2, 2014
calculatorcardgolfhandicapscore
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Golf Handicap Calculator Safe to Use in 2026?

Generally Safe

Score 85/100

Golf Handicap Calculator has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 11yr ago
Risk Assessment

The golf-handicap-calculator plugin v1.0.3 exhibits a mixed security posture. On the positive side, it demonstrates good practices regarding SQL queries, exclusively using prepared statements, and has a clean vulnerability history with no recorded CVEs. The attack surface is relatively small, with only two shortcodes as entry points, and notably, there are no unprotected AJAX handlers or REST API routes. However, a significant concern arises from the complete lack of output escaping. This means that any data displayed to users, potentially originating from user input or other sources, is not being sanitized, leaving it vulnerable to cross-site scripting (XSS) attacks. Additionally, the absence of nonce checks on the identified entry points, while not directly linked to AJAX or REST, is still a weakness that could be exploited if these shortcodes become more complex or interact with sensitive data.

Key Concerns

  • Output escaping is not implemented
  • Missing nonce checks
Vulnerabilities
None known

Golf Handicap Calculator Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Golf Handicap Calculator Release Timeline

v1.0.3Current
v1.0.0
Code Analysis
Analyzed Apr 16, 2026

Golf Handicap Calculator Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
11 prepared
Unescaped Output
10
0 escaped
Nonce Checks
0
Capability Checks
2
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared11 total queries

Output Escaping

0% escaped10 total outputs
Attack Surface

Golf Handicap Calculator Attack Surface

Entry Points2
Unprotected0

Shortcodes 2

[ghc_form] shortcode.php:2
[ghc_user_details] shortcode.php:3
WordPress Hooks 9
actionadmin_menuadmin-page.php:2
actionadmin_initadmin-page.php:3
actionshow_user_profileadmin-page.php:35
actionedit_user_profileadmin-page.php:36
actionpersonal_options_updateadmin-page.php:37
actionedit_user_profile_updateadmin-page.php:38
actionwp_enqueue_scriptsgolf-handicap-calculator.php:26
actionwp_enqueue_scriptsgolf-handicap-calculator.php:27
actioninitshortcode.php:4
Maintenance & Trust

Golf Handicap Calculator Maintenance & Trust

Maintenance Signals

WordPress version tested4.0.0
Last updatedDec 2, 2014
PHP min version
Downloads3K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Golf Handicap Calculator Developer Profile

fozzyluke123

2 plugins · 70 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Golf Handicap Calculator

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/golf-handicap-calculator/style.css/wp-content/plugins/golf-handicap-calculator/submit.js
Script Paths
/wp-content/plugins/golf-handicap-calculator/submit.js
Version Parameters
golf-handicap-calculator/style.css?ver=golf-handicap-calculator/submit.js?ver=

HTML / DOM Fingerprints

Data Attributes
user-iduser_sexcard-1-parcard-1-scorecard-2-parcard-2-score+3 more
Shortcode Output
[ghc_form][ghc_user_details]
FAQ

Frequently Asked Questions about Golf Handicap Calculator