
iGMS Direct Booking Security & Risk Analysis
wordpress.org/plugins/igms-direct-bookingiGMS is introducing the Direct Booking Widget. It allows your guests to select and book dates with you right via your website.
Is iGMS Direct Booking Safe to Use in 2026?
Generally Safe
Score 85/100iGMS Direct Booking has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "igms-direct-booking" v1.3 exhibits a mixed security posture. On the positive side, it demonstrates good practices by using prepared statements for all SQL queries, avoiding dangerous functions, file operations, and external HTTP requests. Its static analysis reveals a minimal attack surface with no identified unprotected entry points like AJAX handlers or REST API routes. Furthermore, the plugin has no known vulnerability history, indicating a lack of publicly disclosed security flaws.
Key Concerns
- All output is unescaped
- No nonce checks implemented
- No capability checks implemented
iGMS Direct Booking Security Vulnerabilities
iGMS Direct Booking Code Analysis
Output Escaping
iGMS Direct Booking Attack Surface
Shortcodes 1
WordPress Hooks 7
Maintenance & Trust
iGMS Direct Booking Maintenance & Trust
Maintenance Signals
Community Trust
iGMS Direct Booking Alternatives
SimplyBook.me – Booking and reservations calendar
simplybook
Simply add a booking calendar to your site to schedule bookings, reservations, appointments and to collect payments.
FareHarbor for WordPress
fareharbor
Easily add FareHarbor reservation calendars, booking embeds, and buttons to your site.
VikBooking Hotel Booking Engine & PMS
vikbooking
Famous Booking Engine, PMS and Hotel Reservations plugin for property managers. The best solution for accommodations to drive more direct bookings.
Pinpoint Booking System – Version 2
booking-system
Book anything, anytime, anywhere.
Salon Booking System – Free Version
salon-booking-system
Appointment scheduling plugin for salons, spas, and wellness centers to streamline bookings and improve customer satisfaction.
iGMS Direct Booking Developer Profile
1 plugin · 100 total installs
How We Detect iGMS Direct Booking
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/igms-direct-booking/blocks/DirectBookingReservationBlock.js/wp-content/plugins/igms-direct-booking/view/UpdateDirectBookingWidgetSettings.js/wp-content/plugins/igms-direct-booking/blocks/DirectBookingReservationBlock.js/wp-content/plugins/igms-direct-booking/view/UpdateDirectBookingWidgetSettings.jsigms-direct-booking/style.css?ver=igms-direct-booking/view/direct-booking-settings-page.js?ver=igms-direct-booking/blocks/DirectBookingReservationBlock.js?ver=HTML / DOM Fingerprints
wordpress-direct-bookingdirect-booking-logindirect-booking-widget-igms-logindirect-booking-settings-headerdirect-booking-settings-titledirect-booking-settings-user-infoid="wordpressDirectBookingWidget"id="directBookingSettingsProfileInfo"directBookingWidgetPropertiesupdateRoutes