Cryptocurrency Payment for GiveWP Security & Risk Analysis

wordpress.org/plugins/lkngc-cryptocurrency-for-givewp

Payment via Cryptocurrencies: Bitcoin and Ethereum.

0 active installs v4.0.3 PHP 7.4+ WP 5.7+ Updated Mar 12, 2026
bitcoincryptodonationethereumgivewp
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Cryptocurrency Payment for GiveWP Safe to Use in 2026?

Generally Safe

Score 100/100

Cryptocurrency Payment for GiveWP has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 21d ago
Risk Assessment

This plugin exhibits a mixed security posture. On the positive side, it demonstrates good practices by exclusively using prepared statements for SQL queries and ensuring all output is properly escaped, indicating an awareness of common web vulnerabilities like SQL injection and cross-site scripting. The absence of dangerous functions, file operations, and known CVEs further strengthens its security profile. However, significant concerns arise from the attack surface. The plugin exposes a REST API route without any permission callbacks, creating a direct and unprotected entry point that could be leveraged by unauthenticated attackers. This lack of authorization for a critical entry point is a notable weakness. The absence of nonce checks and capability checks across all entry points, combined with the lack of taint analysis results (which might indicate limited testing or a very simple code structure), suggests potential gaps in defending against various attack vectors. The plugin's vulnerability history being clean is a positive indicator, but it doesn't negate the immediate risks identified in the static analysis. Overall, while the plugin avoids common pitfalls in data handling and output, the unprotected REST API endpoint represents a significant security risk that needs immediate attention.

Key Concerns

  • REST API route without permission callback
  • No nonce checks
  • No capability checks
Vulnerabilities
None known

Cryptocurrency Payment for GiveWP Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Cryptocurrency Payment for GiveWP Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
45 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
3
Bundled Libraries
0

Output Escaping

100% escaped45 total outputs
Attack Surface
1 unprotected

Cryptocurrency Payment for GiveWP Attack Surface

Entry Points1
Unprotected1

REST API Routes 1

POST/wp-json/lkngc-cryptocurrency-for-givewp-verification/v1/notificationIncludes\LkngcCryptocurrencyForGivewp.php:213
WordPress Hooks 9
actionplugins_loadedIncludes\LkngcCryptocurrencyForGivewp.php:121
actionadmin_enqueue_scriptsIncludes\LkngcCryptocurrencyForGivewp.php:134
actiongive_view_donation_details_billing_afterIncludes\LkngcCryptocurrencyForGivewp.php:135
actiongivewp_register_payment_gatewayIncludes\LkngcCryptocurrencyForGivewp.php:136
filtergive_get_settings_gatewaysIncludes\LkngcCryptocurrencyForGivewp.php:137
filtergive_get_sections_gatewaysIncludes\LkngcCryptocurrencyForGivewp.php:138
actionrest_api_initIncludes\LkngcCryptocurrencyForGivewp.php:139
actionwp_enqueue_scriptsIncludes\LkngcCryptocurrencyForGivewp.php:152
actionwp_enqueue_scriptsIncludes\LkngcCryptocurrencyForGivewp.php:153
Maintenance & Trust

Cryptocurrency Payment for GiveWP Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedMar 12, 2026
PHP min version7.4
Downloads368

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Cryptocurrency Payment for GiveWP Developer Profile

linknacional

18 plugins · 5K total installs

99
trust score
Avg Security Score
98/100
Avg Patch Time
6 days
View full developer profile
Detection Fingerprints

How We Detect Cryptocurrency Payment for GiveWP

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/lkngc-cryptocurrency-for-givewp/assets/css/lkngc-cryptocurrency-for-givewp.css/wp-content/plugins/lkngc-cryptocurrency-for-givewp/assets/js/lkngc-cryptocurrency-for-givewp.js
Script Paths
/wp-content/plugins/lkngc-cryptocurrency-for-givewp/assets/js/lkngc-cryptocurrency-for-givewp.js
Version Parameters
lkngc-cryptocurrency-for-givewp/assets/css/lkngc-cryptocurrency-for-givewp.css?ver=lkngc-cryptocurrency-for-givewp/assets/js/lkngc-cryptocurrency-for-givewp.js?ver=

HTML / DOM Fingerprints

CSS Classes
lkngc-cryptocurrency-for-givewp-settings
HTML Comments
<!-- Cryptocurrency Payment for GiveWP --><!-- Main plugin file --><!-- Plugin Name: Cryptocurrency Payment for GiveWP -->
Data Attributes
data-lkngc-cryptocurrency-for-givewp-walletdata-lkngc-cryptocurrency-for-givewp-enable-error-margindata-lkngc-cryptocurrency-for-givewp-error-margindata-lkngc-cryptocurrency-for-givewp-debugdata-lkngc-cryptocurrency-for-givewp-debug-advanced
JS Globals
window.lkngc_cryptocurrency_for_givewp_varslkngc_cryptocurrency_for_givewp_vars
Shortcode Output
[give_lkngc_cryptocurrency_payment_form]
FAQ

Frequently Asked Questions about Cryptocurrency Payment for GiveWP