
HDTasks | Client and Team Task Lists Security & Risk Analysis
wordpress.org/plugins/hdtasksHDTasks. Project task management for teams and creatives
Is HDTasks | Client and Team Task Lists Safe to Use in 2026?
Generally Safe
Score 85/100HDTasks | Client and Team Task Lists has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "hdtasks" plugin v0.2 exhibits a generally positive security posture, with no recorded vulnerabilities in its history and a static analysis that highlights good practices. All identified AJAX handlers include authentication checks, and there are no instances of raw SQL queries or critical/high severity taint flows. The absence of file operations and external HTTP requests also contributes to a more secure profile. However, the plugin's output escaping is only at 57%, which is a significant concern. While not all outputs are necessarily exploitable, a large percentage of unescaped data passing through the plugin increases the risk of cross-site scripting (XSS) vulnerabilities, especially if user-supplied data is involved in these outputs.
Key Concerns
- Low output escaping percentage (57%)
HDTasks | Client and Team Task Lists Security Vulnerabilities
HDTasks | Client and Team Task Lists Release Timeline
HDTasks | Client and Team Task Lists Code Analysis
Output Escaping
Data Flow Analysis
HDTasks | Client and Team Task Lists Attack Surface
AJAX Handlers 12
WordPress Hooks 9
Maintenance & Trust
HDTasks | Client and Team Task Lists Maintenance & Trust
Maintenance Signals
Community Trust
HDTasks | Client and Team Task Lists Alternatives
Dashboard To-Do List
dashboard-to-do-list
A dashboard to-do list widget with the option to show the to-do list on the website. This is a great tool for web developers building a new website.
Docket WP
docket-wp
The Docket WP plugin connects your Docket WP account into any WordPress installation. You will need a Docket WP account in order to use the plugin.
Todo Block
todo-block
Adds ToDo list block that shows checkboxes on frontend and backend of your site.
Todo for BuddyPress & BuddyBoss
bp-user-to-do-list
Transform your BuddyPress or BuddyBoss community into a powerful task management platform. Members can create personal todos, collaborate on group tas …
Swift Todo List
swift-todolist
A simple and customizable to-do list plugin for WordPress that allows users to create, update, view, and delete tasks.
HDTasks | Client and Team Task Lists Developer Profile
6 plugins · 8K total installs
How We Detect HDTasks | Client and Team Task Lists
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/hdtasks/includes/admin_style.css/wp-content/plugins/hdtasks/includes/admin_script.js/wp-content/plugins/hdtasks/includes/moment.js/wp-content/plugins/hdtasks/includes/sortable.js/wp-content/plugins/hdtasks/includes/script.js/wp-content/plugins/hdtasks/includes/editor/trumbowyg.min.js/wp-content/plugins/hdtasks/includes/editor/ui/trumbowyg.min.css/wp-content/plugins/hdtasks/style.css/wp-content/plugins/hdtasks/includes/admin_script.js/wp-content/plugins/hdtasks/includes/moment.js/wp-content/plugins/hdtasks/includes/sortable.js/wp-content/plugins/hdtasks/includes/script.js/wp-content/plugins/hdtasks/includes/editor/trumbowyg.min.jshdtasks/includes/admin_style.css?v=hdtasks/includes/admin_script.js?v=hdtasks/includes/moment.js?v=hdtasks/includes/sortable.js?v=hdtasks/includes/script.js?v=hdtasks/style.css?v=HTML / DOM Fingerprints
cs-loader-innerselectselectboxselect-hiddencontenteditable<!-- [wpfcNOT] -->data-idhdt_ajaxproject_idcurrent_user