LGPD Consent | LGPD e Controle de Cookies Security & Risk Analysis

wordpress.org/plugins/lgpd-consent

Displays a cookie consent banner compliant with the LGPD, logs user choices for audit purposes.

200 active installs v2.0.3 PHP 7.0+ WP 5.0+ Updated Feb 11, 2026
consentcookie-policycookieslgpdprivacy-compliance
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is LGPD Consent | LGPD e Controle de Cookies Safe to Use in 2026?

Generally Safe

Score 100/100

LGPD Consent | LGPD e Controle de Cookies has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The "lgpd-consent" v2.0.3 plugin demonstrates a strong security posture with excellent implementation of security best practices. The static analysis reveals a robust handling of its attack surface, with all identified entry points (AJAX handlers, shortcodes) protected by proper authentication and authorization checks. The code signals are equally positive, indicating a low risk of common vulnerabilities like SQL injection and cross-site scripting (XSS) due to a high percentage of prepared SQL statements and almost universal output escaping. The absence of file operations and dangerous functions further strengthens its security.

The plugin also shows a clean vulnerability history with no recorded CVEs, which is a significant indicator of the developer's commitment to security. The lack of any critical or high-severity taint flows further reinforces the notion that the code is well-written and resistant to common exploitation techniques. While there are three external HTTP requests, without further analysis, it's impossible to determine if these pose a direct risk. However, the overall picture is one of a well-maintained and secure plugin.

In conclusion, "lgpd-consent" v2.0.3 appears to be a highly secure plugin. Its strengths lie in its comprehensive use of security features like nonce and capability checks, meticulous output escaping, and reliance on prepared statements for SQL queries. The lack of historical vulnerabilities is a testament to its stable and secure development. The primary, albeit minor, area for potential scrutiny would be the nature of the external HTTP requests, though this is speculative without deeper analysis. For a plugin of this nature, its security performance is commendable.

Vulnerabilities
None known

LGPD Consent | LGPD e Controle de Cookies Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

LGPD Consent | LGPD e Controle de Cookies Code Analysis

Dangerous Functions
0
Raw SQL Queries
1
6 prepared
Unescaped Output
1
130 escaped
Nonce Checks
7
Capability Checks
6
File Operations
0
External Requests
3
Bundled Libraries
0

SQL Query Safety

86% prepared7 total queries

Output Escaping

99% escaped131 total outputs
Data Flows
All sanitized

Data Flow Analysis

4 flows
lgpd_consent_cyfer_validate_site_id (admin\class-lgpd-consent-cyfer-admin.php:543)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

LGPD Consent | LGPD e Controle de Cookies Attack Surface

Entry Points7
Unprotected0

AJAX Handlers 6

authwp_ajax_lgpd_validate_site_idadmin\class-lgpd-consent-cyfer-admin.php:110
authwp_ajax_lgpd_consent_dismiss_pro_noticeadmin\class-lgpd-consent-cyfer-admin.php:112
authwp_ajax_lgpd_consent_activate_licenseincludes\class-lgpd-license.php:17
authwp_ajax_lgpd_consent_deactivate_licenseincludes\class-lgpd-license.php:18
authwp_ajax_lgpd_consent_cyfer_save_consentpublic\class-lgpd-consent-cyfer-public.php:40
noprivwp_ajax_lgpd_consent_cyfer_save_consentpublic\class-lgpd-consent-cyfer-public.php:41

Shortcodes 1

[lgpd_consent_cyfer] public\class-lgpd-consent-cyfer-public.php:39
WordPress Hooks 13
actionadmin_enqueue_scriptsadmin\class-lgpd-consent-cyfer-admin.php:105
actionadmin_enqueue_scriptsadmin\class-lgpd-consent-cyfer-admin.php:106
actionadmin_menuadmin\class-lgpd-consent-cyfer-admin.php:107
actionadmin_initadmin\class-lgpd-consent-cyfer-admin.php:108
actionadmin_initadmin\class-lgpd-consent-cyfer-admin.php:109
actionadmin_noticesadmin\class-lgpd-consent-cyfer-admin.php:111
actionadmin_enqueue_scriptsincludes\class-lgpd-consent-cyfer.php:21
filterplugin_row_metaincludes\class-lgpd-consent-cyfer.php:24
actionadmin_initincludes\class-lgpd-license.php:16
actionwp_headpublic\class-lgpd-consent-cyfer-public.php:32
actionwp_enqueue_scriptspublic\class-lgpd-consent-cyfer-public.php:37
actionwp_footerpublic\class-lgpd-consent-cyfer-public.php:38
filterscript_loader_tagpublic\class-lgpd-consent-cyfer-public.php:69
Maintenance & Trust

LGPD Consent | LGPD e Controle de Cookies Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedFeb 11, 2026
PHP min version7.0
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs200
Developer Profile

LGPD Consent | LGPD e Controle de Cookies Developer Profile

Fernando Filho

5 plugins · 250 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect LGPD Consent | LGPD e Controle de Cookies

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/lgpd-consent/admin/css/lgpd-consent-cyfer-admin.css/wp-content/plugins/lgpd-consent/admin/js/lgpd-consent-cyfer-admin.js/wp-content/plugins/lgpd-consent/public/css/lgpd-consent-cyfer-public.css/wp-content/plugins/lgpd-consent/public/js/lgpd-consent-cyfer-public.js
Script Paths
/wp-content/plugins/lgpd-consent/admin/js/lgpd-consent-cyfer-admin.js/wp-content/plugins/lgpd-consent/public/js/lgpd-consent-cyfer-public.js
Version Parameters
lgpd-consent/admin/css/lgpd-consent-cyfer-admin.css?ver=lgpd-consent/admin/js/lgpd-consent-cyfer-admin.js?ver=lgpd-consent/public/css/lgpd-consent-cyfer-public.css?ver=lgpd-consent/public/js/lgpd-consent-cyfer-public.js?ver=

HTML / DOM Fingerprints

CSS Classes
lgpd-consent-cyfer-bar-containerlgpd-consent-cyfer-floating-icon-containerlgpd-consent-cyfer-buttonlgpd-consent-cyfer-accept-buttonlgpd-consent-cyfer-deny-buttonlgpd-consent-cyfer-settings-formlgpd-consent-cyfer-admin-noticelgpd-consent-cyfer-cloud-settings
HTML Comments
LGPD Consent Cyfer | LGPD e Controle de CookiesThis plugin manages LGPD cookie consent.Plugin Admin CSS EnqueuePlugin Admin JS Enqueue+8 more
Data Attributes
data-site-iddata-lgpdconsent-initdata-lgpdconsent-typedata-lgpdconsent-positiondata-lgpdconsent-aligndata-lgpdconsent-style+4 more
JS Globals
lgpdConsentAdminlgpdConsentPublicLGPD_CONSENT_CYFER_VERSIONLGPD_CONSENT_CYFER_PLUGIN_URL
REST Endpoints
/wp-json/lgpd-consent-cyfer/v1/settings/wp-json/lgpd-consent-cyfer/v1/logs
Shortcode Output
[lgpd_consent_banner][lgpd_consent_settings][lgpd_consent_stats]
FAQ

Frequently Asked Questions about LGPD Consent | LGPD e Controle de Cookies