
Lawyer Locker Security & Risk Analysis
wordpress.org/plugins/lawyer-lockerEncrypted lockers for secure client communication and file sharing.
Is Lawyer Locker Safe to Use in 2026?
Generally Safe
Score 100/100Lawyer Locker has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'lawyer-locker' plugin v0.1 exhibits a generally strong security posture based on the provided static analysis. The absence of dangerous functions, the use of prepared statements for all SQL queries, and a high percentage of properly escaped output are significant strengths. Furthermore, the plugin implements a commendable number of nonce and capability checks, suggesting an awareness of common WordPress security best practices. The vulnerability history being entirely clear also contributes to a positive initial impression.
However, there are a few areas that warrant attention. The presence of two flows with unsanitized paths in the taint analysis indicates a potential for indirect vulnerabilities, even if they did not reach a critical or high severity in this specific analysis. These require careful examination to ensure no sensitive data can be manipulated or exposed indirectly. While the attack surface of 26 AJAX handlers is notable, the reported zero unprotected entry points is a crucial mitigation. The strength of this defense relies entirely on the effectiveness and completeness of those checks.
In conclusion, 'lawyer-locker' v0.1 demonstrates good security foundations with robust SQL and output handling practices and a clean vulnerability record. The main concern lies with the two unsanitized path flows, which, while not critical, represent potential vectors for subtle issues. The plugin's security is heavily dependent on the integrity of its authentication and authorization checks on the AJAX handlers.
Key Concerns
- Flows with unsanitized paths found
- Large AJAX attack surface (26 handlers)
Lawyer Locker Security Vulnerabilities
Lawyer Locker Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Lawyer Locker Attack Surface
AJAX Handlers 26
WordPress Hooks 15
Maintenance & Trust
Lawyer Locker Maintenance & Trust
Maintenance Signals
Community Trust
Lawyer Locker Alternatives
CryptX
cryptx
No more SPAM by spiders scanning your site for email addresses!
WP PGP Encrypted Emails
wp-pgp-encrypted-emails
Signs and encrypts emails using PGP/GPG keys or X.509 certificates. Provides OpenPGP and S/MIME functions via WordPress plugin API.
wp2pgpmail
wp2pgpmail
A simple PGP Mail Form Plugin. Enter your PGP public key, then visitors will be able to send you PGP encrypted messages by mail from a form.
CryptNote Secure Links
cryptnote-secure-links
Integrates CryptNote.pro to generate encrypted links directly from the WordPress dashboard and replace emails with secure links.
Encrypt Blogs
encrypt-blogs
Encrypt your blog content with time-based encryption using either PHP or GPG encryption methods.
Lawyer Locker Developer Profile
30 plugins · 52K total installs
How We Detect Lawyer Locker
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/lawyer-locker/assets/css/lawyer-locker-admin.css/wp-content/plugins/lawyer-locker/assets/js/lawyer-locker-admin.js/wp-content/plugins/lawyer-locker/assets/css/lawyer-locker-public.css/wp-content/plugins/lawyer-locker/assets/js/lawyer-locker-public.js/wp-content/plugins/lawyer-locker/assets/js/lawyer-locker-admin.js/wp-content/plugins/lawyer-locker/assets/js/lawyer-locker-public.jslawyer-locker/assets/css/lawyer-locker-admin.css?ver=lawyer-locker/assets/js/lawyer-locker-admin.js?ver=lawyer-locker/assets/css/lawyer-locker-public.css?ver=lawyer-locker/assets/js/lawyer-locker-public.js?ver=HTML / DOM Fingerprints
lawyer-locker-admin-wraplawyer-locker-public-wrapll-lockbox-container<!-- Lawyer Locker Admin Wrapper --><!-- Lawyer Locker Public Wrapper --><!-- Lockbox Content Start --><!-- Lockbox Content End -->data-locker-iddata-lockbox-idlawyerLockerAdminlawyerLockerPubliclawyerLockerAjaxUrl/wp-json/lawyer-locker/v1/save_encrypted_data/wp-json/lawyer-locker/v1/get_encrypted_data/wp-json/lawyer-locker/v1/upload_file/wp-json/lawyer-locker/v1/get_files/wp-json/lawyer-locker/v1/delete_file/wp-json/lawyer-locker/v1/log_activity/wp-json/lawyer-locker/v1/get_activity/wp-json/lawyer-locker/v1/save_lockbox/wp-json/lawyer-locker/v1/get_lockbox/wp-json/lawyer-locker/v1/get_client_name/wp-json/lawyer-locker/v1/get_privilege_footer/wp-json/lawyer-locker/v1/verify_password/wp-json/lawyer-locker/v1/get_file_limits/wp-json/lawyer-locker/v1/mark_locker_read