
LDW Mobile Contact Optimizer Security & Risk Analysis
wordpress.org/plugins/ldw-mobile-contact-optimizerDon’t waste any contact! Be reached in 1 click from mobile.
Is LDW Mobile Contact Optimizer Safe to Use in 2026?
Generally Safe
Score 85/100LDW Mobile Contact Optimizer has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin 'ldw-mobile-contact-optimizer' v0.2 presents a mixed security posture. While the static analysis indicates no identified attack surface entries (AJAX, REST API, shortcodes, cron events) and a clean vulnerability history with zero known CVEs, there are significant concerns stemming from the lack of output escaping. All identified output operations (20 total) are unescaped, which is a major security weakness that could lead to Cross-Site Scripting (XSS) vulnerabilities if user-supplied data is ever incorporated into these outputs. Furthermore, the absence of any capability checks or nonce checks on the identified entry points (though there are zero such points) is noteworthy, as it suggests a reliance on the assumption that these are not needed, which might be premature if the plugin's functionality evolves. The taint analysis also shows no flows, which is positive, but this could be due to a lack of complex data interactions or limitations in the analysis itself given the other identified issues. Overall, the plugin has a strong foundation in avoiding common vulnerabilities like SQL injection and has no known past exploits. However, the pervasive lack of output escaping creates a substantial XSS risk that needs immediate attention.
Key Concerns
- 0% output escaping found
- No capability checks on entry points
- No nonce checks on entry points
LDW Mobile Contact Optimizer Security Vulnerabilities
LDW Mobile Contact Optimizer Release Timeline
LDW Mobile Contact Optimizer Code Analysis
Output Escaping
LDW Mobile Contact Optimizer Attack Surface
WordPress Hooks 7
Maintenance & Trust
LDW Mobile Contact Optimizer Maintenance & Trust
Maintenance Signals
Community Trust
LDW Mobile Contact Optimizer Alternatives
Mobile Only Contact Footer
mobile-only-contact-footer
An editable, fixed position div that sticks to the bottom of web page on mobile devices.
Mobile Contact Line
mobile-contact-line
Simple plugin that allow you add mobile contact line to your wordpress site
SGDIEN Contact Footer
sgdien-contact-footer
Thanh liên hệ cố định trên mobile và nút Hotline tùy chỉnh cho PC. Bao gồm 3 preset dựng sẵn, gọn nhẹ, không phụ thuộc theme.
Mobile Call to Action
mobile-call-to-action
Mobile Call to Action plugin is used to add a custom Call to action button in the footer of your website. It can take 2 actions, one is for phone call …
WPtouch – Make your WordPress Website Mobile-Friendly
wptouch
With just a few clicks, make your WordPress website mobile-friendly (iPhone, Android, and more). Recommended by Google, it will instantly enable a mob …
LDW Mobile Contact Optimizer Developer Profile
1 plugin · 50 total installs
How We Detect LDW Mobile Contact Optimizer
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/ldw-mobile-contact-optimizer/assets/js/script.jswp-content/plugins/ldw-mobile-contact-optimizer/assets/js/script.jsHTML / DOM Fingerprints
ldw-mco-cssldw-mco-settingsldw-mco-creditsid="ldw_phone"name="ldw_mco[phone]"id="ldw_email"name="ldw_mco[email]"id="ldw_mapurl"name="ldw_mco[mapurl]"+7 morevar ldw_mco