
inSIM Security & Risk Analysis
wordpress.org/plugins/insimSend your marketing SMS via your smartphone. Low-cost SMS marketing through your mobile plan.
Is inSIM Safe to Use in 2026?
Generally Safe
Score 100/100inSIM has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "insim" v4.0 plugin exhibits a concerning security posture primarily due to a large number of unprotected AJAX handlers, representing a significant attack surface. While the plugin demonstrates good practices in areas like output escaping and avoids known vulnerability types historically, the sheer volume of entry points without proper authentication checks is a major red flag. The taint analysis reveals a notable number of flows with unsanitized paths, with a high severity score of 8, indicating potential risks that require immediate attention. The absence of known CVEs and a clean vulnerability history is a positive indicator of past development efforts, but it does not negate the immediate risks identified in the static analysis. The plugin's strengths lie in its proper use of prepared statements for SQL and good output escaping, but these are overshadowed by the critical flaw of unprotected AJAX handlers and unsanitized paths.
Key Concerns
- Large attack surface without auth checks
- High number of unsanitized paths in taint analysis
- 8 Critical severity taint flows
- SQL queries not always prepared
- Output not always properly escaped
inSIM Security Vulnerabilities
inSIM Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
inSIM Attack Surface
AJAX Handlers 42
WordPress Hooks 36
Scheduled Events 2
Maintenance & Trust
inSIM Maintenance & Trust
Maintenance Signals
Community Trust
inSIM Alternatives
ClickSend SMS Woo Integration
clicksendsms
ClickSend SMS Woo Integration helps to send transactions & promotional sms to wooCommerce store owners.
MessageFlow
messageflow
A Free, one-click-to-install, SMS telecommunication plugin made for e-commerce stores.
Newsletters, Email Marketing, SMS and Popups by Omnisend
omnisend
Newsletters, Email Marketing, Email Automation, Forms, Pop Up, SMS by Omnisend
Email Marketing for WooCommerce by Omnisend
omnisend-connect
Email Marketing, Newsletter, Email Automation, Forms, Pop Up, SMS, Abandoned Cart made easy for WordPress & WooCommerce by Omnisend
افزونه پیامک ووکامرس Persian WooCommerce SMS
persian-woocommerce-sms
افزونه کامل و حرفه ای برای اطلاع رسانی پیامکی سفارشات و رویداد های محصولات ووکامرس
inSIM Developer Profile
3 plugins · 0 total installs
How We Detect inSIM
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.