Gravity Forms Personality Quiz Add-On Security & Risk Analysis

wordpress.org/plugins/gravity-forms-personality-quiz-add-on

The Personality Quiz add-on for Gravity Forms lets you create simple, un-graded personality quizzes (think Buzzfeed-style quizzes).

500 active installs v1.1.0 PHP + WP 3.9+ Updated Jul 17, 2020
gravity-formsquiz
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Gravity Forms Personality Quiz Add-On Safe to Use in 2026?

Generally Safe

Score 85/100

Gravity Forms Personality Quiz Add-On has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5yr ago
Risk Assessment

The static analysis of gravity-forms-personality-quiz-add-on v1.1.0 reveals a generally strong security posture. The absence of dangerous functions, SQL queries, file operations, and external HTTP requests is a significant positive. Furthermore, the fact that all SQL queries utilize prepared statements and all output is properly escaped indicates good coding practices in these critical areas. The vulnerability history is also clean, with no recorded CVEs, which suggests a history of secure development or effective patching.

However, the static analysis does highlight a complete lack of any detected entry points such as AJAX handlers, REST API routes, shortcodes, or cron events that are protected by authentication or capability checks. While the total number of entry points is zero, which is itself a strength by reducing the attack surface, the absence of any *protected* entry points means there's no observable evidence of security mechanisms being implemented on potential interaction points. This could indicate that there are no user-facing interactions, or that the plugin simply doesn't implement any checks where they might be expected.

In conclusion, the plugin demonstrates excellent security fundamentals in its handling of database queries and output. The lack of known vulnerabilities is a strong indicator of a secure codebase. The primary area of concern, derived from the static analysis, is the complete absence of any detectable security checks on potential entry points. While a zero attack surface is ideal, the lack of any capability or nonce checks on any potential handlers, if they exist, represents an unknown risk. Without further information on the plugin's functionality and actual entry points, it's difficult to assign a specific risk, but the data suggests a very low, but not zero, risk profile.

Key Concerns

  • No capability checks observed
  • No nonce checks observed
Vulnerabilities
None known

Gravity Forms Personality Quiz Add-On Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Gravity Forms Personality Quiz Add-On Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
15 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped15 total outputs
Attack Surface

Gravity Forms Personality Quiz Add-On Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 9
actiongform_field_standard_settingsclass-gravity-forms-personality-quiz-addon.php:45
actiongform_editor_jsclass-gravity-forms-personality-quiz-addon.php:46
filtergform_enqueue_scriptsclass-gravity-forms-personality-quiz-addon.php:47
filtergform_field_contentclass-gravity-forms-personality-quiz-addon.php:48
actiongform_field_css_classclass-gravity-forms-personality-quiz-addon.php:49
actiongform_admin_pre_renderclass-gravity-forms-personality-quiz-addon.php:50
filtergform_replace_merge_tagsclass-gravity-forms-personality-quiz-addon.php:51
filtergform_entry_post_saveclass-gravity-forms-personality-quiz-addon.php:52
actiongform_loadedgravity-forms-personality-quiz-addon.php:35
Maintenance & Trust

Gravity Forms Personality Quiz Add-On Maintenance & Trust

Maintenance Signals

WordPress version tested5.4.19
Last updatedJul 17, 2020
PHP min version
Downloads21K

Community Trust

Rating96/100
Number of ratings4
Active installs500
Developer Profile

Gravity Forms Personality Quiz Add-On Developer Profile

dabernathy89

3 plugins · 530 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Gravity Forms Personality Quiz Add-On

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/gravity-forms-personality-quiz-add-on/css/admin.css/wp-content/plugins/gravity-forms-personality-quiz-add-on/css/frontend.css/wp-content/plugins/gravity-forms-personality-quiz-add-on/js/admin.js/wp-content/plugins/gravity-forms-personality-quiz-add-on/js/frontend.js
Script Paths
/wp-content/plugins/gravity-forms-personality-quiz-add-on/js/admin.js/wp-content/plugins/gravity-forms-personality-quiz-add-on/js/frontend.js
Version Parameters
gravity-forms-personality-quiz-add-on/css/admin.css?ver=gravity-forms-personality-quiz-add-on/css/frontend.css?ver=gravity-forms-personality-quiz-add-on/js/admin.js?ver=gravity-forms-personality-quiz-add-on/js/frontend.js?ver=

HTML / DOM Fingerprints

CSS Classes
gf_pq_quiz_question
Data Attributes
data-enable-personality-quiz
JS Globals
gf_pq_admin_strings
FAQ

Frequently Asked Questions about Gravity Forms Personality Quiz Add-On