
I Agree! Popups Security & Risk Analysis
wordpress.org/plugins/i-agree-popupsCreate T&C and disclaimer popups for use across your entire WordPress site or on individual posts and pages.
Is I Agree! Popups Safe to Use in 2026?
Generally Safe
Score 85/100I Agree! Popups has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'i-agree-popups' v1.0 plugin exhibits a generally good security posture based on the provided static analysis. The absence of known vulnerabilities and CVEs is a strong positive indicator. Furthermore, the plugin demonstrates good practices by utilizing prepared statements for all SQL queries, employing nonce checks, and incorporating capability checks, suggesting an awareness of common WordPress security pitfalls. The zero-count for critical taint flows and unsanitized paths in the taint analysis also suggests that data is being handled with a reasonable degree of care.
However, a significant concern arises from the output escaping. With 42 total outputs and only 31% properly escaped, there is a substantial risk of Cross-Site Scripting (XSS) vulnerabilities. This means that user-supplied or otherwise dynamic data displayed within the plugin's interface is likely not being sufficiently sanitized, leaving it open to malicious script injection. While the attack surface appears minimal in terms of entry points, the lack of robust output escaping represents a tangible security weakness that could be exploited.
In conclusion, 'i-agree-popups' v1.0 benefits from a clean vulnerability history and good practices in data handling and authentication. Nevertheless, the pervasive issue with output escaping presents a notable risk. If the plugin is intended for public release or handles any user-configurable content, addressing the output escaping concerns should be a high priority to mitigate potential XSS attacks.
Key Concerns
- Significant portion of output not properly escaped
I Agree! Popups Security Vulnerabilities
I Agree! Popups Code Analysis
Output Escaping
I Agree! Popups Attack Surface
WordPress Hooks 16
Maintenance & Trust
I Agree! Popups Maintenance & Trust
Maintenance Signals
Community Trust
I Agree! Popups Alternatives
Modal Window – create popup modal window
modal-window
WordPress popup plugin for easily creating a popup and modal window with any kind of content and settings.
Easy Modal
easy-modal
The #1 WordPress Popup Plugin! Make glorious & powerful popups and market your content like never before - all in minutes!
Popup Box – Easily Create WordPress Popups
popup-box
Popup Box lets you create responsive, customizable WordPress popups with live preview, flexible triggers, and smart targeting to boost engagement and …
Modal Guten Block
modal-block
This plugin provides a Gutenberg Modal / Popup Block.
Disclaimer Popup
disclaimer-popup
Disclaimer Popup is a free plugin that will help you to quickly create a disclaimer popup complete with texts and images
I Agree! Popups Developer Profile
1 plugin · 600 total installs
How We Detect I Agree! Popups
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/i-agree-popups/assets/css/i-agree-popups.cssHTML / DOM Fingerprints
iAgreePopuppopupBGpopupContainerpopupContentpopupChoicesyesNopopupChoiceButtonagree+1 more<!-- I Agree! Popups - http://www.talismansolutions.co.uk/i-agree-popups -->data-popup-idrememberMe