
GSheetConnector For Ninja Forms Security & Risk Analysis
wordpress.org/plugins/gsheetconnector-ninja-formsThis plugin is a bridge between your WordPress Ninja Forms and Google Sheets.
Is GSheetConnector For Ninja Forms Safe to Use in 2026?
Generally Safe
Score 99/100GSheetConnector For Ninja Forms has a strong security track record. Known vulnerabilities have been patched promptly.
The "gsheetconnector-ninja-forms" plugin version 2.0.2 exhibits a generally good security posture, with several positive indicators. The absence of any critical or high severity vulnerabilities in its history, and the lack of critical or high taint flows in the static analysis, are encouraging signs. Furthermore, the plugin implements nonce checks on all its AJAX handlers and has capability checks in place, which are crucial for preventing unauthorized access and actions. However, there are areas for improvement. A significant portion of its outputs are not properly escaped (38%), presenting a potential risk of Cross-Site Scripting (XSS) vulnerabilities if user-supplied data is not handled carefully. While the SQL query security is somewhat split (50% prepared), the presence of raw SQL queries could still be a vector for SQL injection if not meticulously managed.
The plugin's vulnerability history, while free of critical or high severity issues, does show one medium severity vulnerability related to 'Missing Authorization' in the past. The fact that this is currently unpatched is a concern, although the provided data indicates 'Currently unpatched: 0'. Assuming the data is consistent, this historical vulnerability is addressed in the current version. The bundled Freemius v1.0 library, while not explicitly flagged as outdated, could be a point of attention in future reviews. Overall, the plugin demonstrates strong security practices with its authentication and authorization checks, but the output escaping and SQL query practices warrant attention to further harden its security.
Key Concerns
- Outputs not properly escaped (38%)
- SQL queries not using prepared statements (50%)
- Bundled Freemius v1.0 library
- Medium severity vulnerability history (Missing Authorization)
GSheetConnector For Ninja Forms Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
GSheetConnector For Ninja Forms <= 2.0.1 - Missing Authorization to Authenticated (Subscriber+) System Information Exposure
GSheetConnector For Ninja Forms Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
GSheetConnector For Ninja Forms Attack Surface
AJAX Handlers 8
WordPress Hooks 21
Maintenance & Trust
GSheetConnector For Ninja Forms Maintenance & Trust
Maintenance Signals
Community Trust
GSheetConnector For Ninja Forms Alternatives
Integration for Google Sheets and Contact Form 7, WPForms, Elementor, Ninja Forms
integration-for-contact-form-7-and-google-sheets
Send Contact Form 7, WPForms, Elementor, Ninja Forms, Contact Form Entries Plugin and many other contact form submissions to Google Sheets.
WP Contact Slider – Contact Form Slider Widget
wp-contact-slider
Helps you to show slide out contact form to display CF7, Gravity forms, Ninja Forms, WP Forms, display random text/HTML and support some other forms.
Integration for Mailchimp and Contact Form 7, WPForms, Elementor, Ninja Forms
cf7-mailchimp
Send Contact Form 7, WPforms, Elementor, Ninja Forms, CRM Perks Forms and many other contact form submissions to Mailchimp.
Integration for HubSpot and Contact Form 7, WPForms, Elementor, Ninja Forms
cf7-hubspot
Send Contact Form 7, WPForms, Elementor, Ninja Forms, WPforms, Elementor, Ninja Forms, Contact Form Entries Plugin and many other contact form submiss …
TelSender – Сontact form 7, Events, Wpforms, ninja forms and woocommerce to telegram bot
telsender
TelSender - a plugin that works with contact form 7 and the woocommerce store in wordpress. It sends applications from forms to a chat telegram.
GSheetConnector For Ninja Forms Developer Profile
11 plugins · 63K total installs
How We Detect GSheetConnector For Ninja Forms
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/gsheetconnector-ninja-forms/assets/css/gs-nf-admin-style.css/wp-content/plugins/gsheetconnector-ninja-forms/assets/css/gs-nf-front-style.css/wp-content/plugins/gsheetconnector-ninja-forms/assets/js/gs-nf-admin-script.js/wp-content/plugins/gsheetconnector-ninja-forms/assets/js/gs-nf-front-script.jsgsheetconnector-ninja-forms/assets/css/gs-nf-admin-style.css?ver=gsheetconnector-ninja-forms/assets/css/gs-nf-front-style.css?ver=gsheetconnector-ninja-forms/assets/js/gs-nf-admin-script.js?ver=gsheetconnector-ninja-forms/assets/js/gs-nf-front-script.js?ver=HTML / DOM Fingerprints
gsheetconnector-ninja-formsfreemiusAs Per our wc-gsheetconnector commented.Customizing the Opt Message Freemius include utility classes+15 moredata-plugin-slug="gsheetconnector-ninja-forms"window.gsheetconnector