
Income Activator Referral Revenue Security & Risk Analysis
wordpress.org/plugins/income-activator-referral-revenueAdd an Income Activator Referral Form to your WordPress website. An Income Activator account is required to use this plug-in.
Is Income Activator Referral Revenue Safe to Use in 2026?
Generally Safe
Score 85/100Income Activator Referral Revenue has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "income-activator-referral-revenue" plugin version 1.0 exhibits a generally good security posture based on the provided static analysis. There are no identified dangerous functions, SQL queries are all prepared, and there are no observed file operations or external HTTP requests. The absence of known vulnerabilities (CVEs) is also a positive indicator. However, a significant concern arises from the limited output escaping, with only 25% of outputs being properly escaped. This suggests a potential for cross-site scripting (XSS) vulnerabilities where user-supplied data might be reflected in the output without proper sanitization.
While the total attack surface is small and appears to have no unprotected entry points according to the static analysis, the single shortcode represents a potential avenue for input. The lack of nonce checks and capability checks is also noteworthy. Although no vulnerabilities are currently listed in its history, the absence of these fundamental security measures means that the plugin could be susceptible to certain attacks if an input vulnerability is discovered or introduced in future versions. The plugin's strengths lie in its secure handling of database interactions and external requests, but its weaknesses are rooted in insufficient output sanitization and a lack of common security checks for its entry points.
Key Concerns
- Insufficient output escaping
- Missing nonce checks
- Missing capability checks
Income Activator Referral Revenue Security Vulnerabilities
Income Activator Referral Revenue Code Analysis
Output Escaping
Income Activator Referral Revenue Attack Surface
Shortcodes 1
WordPress Hooks 2
Maintenance & Trust
Income Activator Referral Revenue Maintenance & Trust
Maintenance Signals
Community Trust
Income Activator Referral Revenue Alternatives
Easy Leads Free
easy-leads-free
Easy Leads Free - collect leads and contacts from your website to the database. Send mails to your leads from the admin panel after.
LH UTM Tracking
lh-utm-tracking
The proper way to capture UTMs on your (optin) forms.
WP Shortcodes Plugin — Shortcodes Ultimate
shortcodes-ultimate
A comprehensive collection of visual components for your site
MW WP Form
mw-wp-form
MW WP Form is shortcode base contact form plugin. This plugin have many features. For example you can use many validation rules, inquiry data saving, …
Shortcoder — Create Shortcodes for Anything
shortcoder
Create custom "Shortcodes" easily for HTML, JavaScript, CSS code snippets and use the shortcodes within posts, pages & widgets
Income Activator Referral Revenue Developer Profile
1 plugin · 10 total installs
How We Detect Income Activator Referral Revenue
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
<!--<embed script by Rupesh Gharat>-->[addform]