
Gravity Forms Data Persistence Add-On Security & Risk Analysis
wordpress.org/plugins/gravity-forms-data-persistence-add-onThis plugin makes your Gravity Forms data-persistent.
Is Gravity Forms Data Persistence Add-On Safe to Use in 2026?
Generally Safe
Score 85/100Gravity Forms Data Persistence Add-On has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
Based on the static analysis and vulnerability history, the "gravity-forms-data-persistence-add-on" v3.0 plugin exhibits a strong security posture with no known vulnerabilities and excellent adherence to secure coding practices. The absence of dangerous functions, the use of prepared statements for all SQL queries, and 100% output escaping are significant strengths. Furthermore, the plugin demonstrates robust security by having no identifiable attack surface (AJAX handlers, REST API routes, shortcodes, cron events) that lack proper authentication or permission checks.
Despite the overall good standing, the taint analysis reveals three flows with unsanitized paths. While these did not reach a critical or high severity level, they represent a potential area for concern that warrants further investigation. The lack of explicit capability checks and nonce checks, while not directly flagged as a problem in this analysis due to the absence of entry points requiring them, could become a weakness if the plugin's functionality were to expand or be integrated in ways that expose new attack vectors without these protective measures.
In conclusion, the plugin is currently in a very secure state. The historical lack of vulnerabilities is a positive indicator of ongoing security commitment. The primary area for improvement lies in scrutinizing and sanitizing the identified unsanitized paths in the taint analysis. The plugin's strengths in preventing common vulnerabilities are commendable, but vigilance regarding potential future exposure through new entry points without proper checks remains important.
Key Concerns
- Flows with unsanitized paths found
- No nonce checks present
- No capability checks present
Gravity Forms Data Persistence Add-On Security Vulnerabilities
Gravity Forms Data Persistence Add-On Code Analysis
SQL Query Safety
Data Flow Analysis
Gravity Forms Data Persistence Add-On Attack Surface
WordPress Hooks 6
Maintenance & Trust
Gravity Forms Data Persistence Add-On Maintenance & Trust
Maintenance Signals
Community Trust
Gravity Forms Data Persistence Add-On Alternatives
Gravity Forms Data Persistence Add-On Reloaded
gravity-forms-data-persistence-add-on-reloaded
This plugin makes your Gravity Forms data-persistent.
Gravity Forms Sticky Form
gravity-forms-sticky-form
A plugin that makes your Gravity Forms stick!
Advanced Custom Fields: Gravity Forms Add-on
acf-gravityforms-add-on
Provides an Advanced Custom Field which allows a WordPress user to select a Gravity Form as part of a field group configuration.
Smart phone field for Gravity Forms
smart-phone-field-for-gravity-forms
A simple and nice plugin to get auto country flag from user ip address on gravity form phone field.
Gravity Slider Fields
gravity-slider-fields
Adds slider fields to Gravity Forms
Gravity Forms Data Persistence Add-On Developer Profile
1 plugin · 100 total installs
How We Detect Gravity Forms Data Persistence Add-On
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
form_persist_valueform_enable_multiple_entry_entryform_persist_tooltipform_enable_multiple_entry_tooltipform