Kiss Feedback Security & Risk Analysis

wordpress.org/plugins/kiss-feedback

Get easy Feedback from Clients.

10 active installs v1.0.0 PHP 5.2.4+ WP 3.1+ Updated Sep 11, 2020
commentsfeedbackproject-managementscreencastvideo-chat
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Kiss Feedback Safe to Use in 2026?

Generally Safe

Score 85/100

Kiss Feedback has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5yr ago
Risk Assessment

Based on the static analysis and vulnerability history provided, the 'kiss-feedback' plugin v1.0.0 exhibits an exceptionally strong security posture. The absence of any identified attack surface entries, such as AJAX handlers, REST API routes, shortcodes, or cron events, is a significant strength, indicating that the plugin has minimal points of interaction that could be exploited. Furthermore, the code signals reveal no dangerous functions, all SQL queries utilize prepared statements, and all outputs are properly escaped, demonstrating adherence to fundamental secure coding practices. The plugin also avoids file operations and external HTTP requests, further reducing its potential attack vectors. The lack of any recorded vulnerabilities, including CVEs, further reinforces this positive assessment. However, the complete absence of nonce and capability checks across all entry points, which are currently zero, warrants attention. While there is no attack surface to check, if any functionality were to be added in future versions without these essential security measures, it could introduce vulnerabilities. This plugin's current state is excellent, but future development should prioritize robust authentication and authorization checks.

Key Concerns

  • No nonce checks implemented
  • No capability checks implemented
Vulnerabilities
None known

Kiss Feedback Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Kiss Feedback Release Timeline

No version history available.
Code Analysis
Analyzed Apr 16, 2026

Kiss Feedback Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

Kiss Feedback Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 1
actionwp_headkiss-feedback.php:61
Maintenance & Trust

Kiss Feedback Maintenance & Trust

Maintenance Signals

WordPress version tested5.5.18
Last updatedSep 11, 2020
PHP min version5.2.4
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Kiss Feedback Developer Profile

revmakx

8 plugins · 224K total installs

71
trust score
Avg Security Score
89/100
Avg Patch Time
707 days
View full developer profile
Detection Fingerprints

How We Detect Kiss Feedback

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Script Paths
https://app.kissfeedback.com/direct-inclusion.js

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Kiss Feedback