
LLC Tax Security & Risk Analysis
wordpress.org/plugins/llc-taxDisplays llc tax rates by state in your WordPress sidebar or any widget area
Is LLC Tax Safe to Use in 2026?
Generally Safe
Score 100/100LLC Tax has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The llc-tax v1.1 plugin exhibits a strong security posture based on the provided static analysis. The complete absence of identified entry points like AJAX handlers, REST API routes, shortcodes, and cron events significantly limits the plugin's attack surface. Furthermore, the lack of dangerous function usage and the exclusive use of prepared statements for SQL queries are excellent security practices. File operations and external HTTP requests are also absent, further reducing potential risks.
However, a notable concern arises from the significantly low percentage (13%) of properly escaped output. This indicates a high potential for cross-site scripting (XSS) vulnerabilities if user-controlled data is displayed without adequate sanitization. The absence of nonce and capability checks on any entry points (though there are none) also means that if entry points were introduced or discovered, they would be inherently unprotected. The lack of any recorded vulnerability history is a positive sign, suggesting a history of secure development, but it does not negate the risks identified in the current code analysis.
In conclusion, while the plugin benefits from a minimal attack surface and robust SQL handling, the poor output escaping is a critical weakness that needs immediate attention. The absence of any identified taint flows is positive, but the output escaping issue means that vulnerabilities could still be introduced. Addressing the output escaping is paramount to improving the overall security of llc-tax v1.1.
Key Concerns
- Low output escaping percentage
- No nonce checks
- No capability checks
LLC Tax Security Vulnerabilities
LLC Tax Code Analysis
Output Escaping
LLC Tax Attack Surface
WordPress Hooks 11
Maintenance & Trust
LLC Tax Maintenance & Trust
Maintenance Signals
Community Trust
LLC Tax Alternatives
TaxJar – Sales Tax Automation for WooCommerce
taxjar-simplified-taxes-for-woocommerce
Trusted by more than 20,000 businesses, TaxJar’s award-winning solution makes it easy to automate sales tax reporting and filing, and determine econom …
Contasimple
contasimple
This module allows you to export all WooCommerce orders as invoices in Contasimple.
WC Total Price with Tax
wc-total-price-with-tax
A user-friendly plugin to calculate and display the total price, including taxes, for products, shipping, and fees on WooCommerce admin orders
CereTax
ceretax
Simplify sales tax complexity with CereTax for WooCommerce.
WooCommerce EU VAT Rates for Digital Goods Sync
woocommerce-eu-vat-rates-sync
This plugin will install and sync 2 new tax classes in WooCommerce;
LLC Tax Developer Profile
14 plugins · 1K total installs
How We Detect LLC Tax
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/llc-tax/assets/js/llc_main.js/wp-content/plugins/llc-tax/assets/css/llc_main.css/wp-content/plugins/llc-tax/assets/js/llc_admin_widget.js/wp-content/plugins/llc-tax/assets/js/llc_main.js/wp-content/plugins/llc-tax/assets/js/llc_admin_widget.jsllc-tax/assets/js/llc_main.js?ver=1.1llc-tax/assets/css/llc_main.css?ver=1.1llc-tax/assets/js/llc_admin_widget.js?ver=1.1HTML / DOM Fingerprints
llc_tax_pluginsTODO: WIDGET OPTION VARIABLEdata-llc_tax_pluginsllc_tax_plugins<script type="text/javascript"></script>