LSX PayFast Gateway for Give Security & Risk Analysis

wordpress.org/plugins/lsx-give-payfast-gateway

PayFast payment gateway for Give.

200 active installs v1.2.8 PHP + WP 5.3+ Updated Aug 11, 2023
donationsgivewplsxpayfastpayment-gateway
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is LSX PayFast Gateway for Give Safe to Use in 2026?

Generally Safe

Score 85/100

LSX PayFast Gateway for Give has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2yr ago
Risk Assessment

The plugin "lsx-give-payfast-gateway" v1.2.8 exhibits a strong security posture based on the provided static analysis. There are no identified entry points into the plugin that are unprotected by authentication or authorization checks, which is a significant positive indicator. The code also demonstrates good security practices by exclusively using prepared statements for SQL queries and properly escaping all identified output, further minimizing common web application vulnerabilities.

The absence of any critical, high, or medium severity taint flows and dangerous functions suggests a well-written and secure codebase. The plugin's history is also clean, with no known CVEs, which implies a history of secure development or diligent patching if vulnerabilities were found in the past.

While the overall security is excellent, the fact that no nonce checks are implemented across any potential entry points (even though all entry points are protected by capability checks) could be a minor area for improvement for defense-in-depth. However, given the robust capability checks and lack of other vulnerabilities, the current risk is very low.

Vulnerabilities
None known

LSX PayFast Gateway for Give Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

LSX PayFast Gateway for Give Release Timeline

v1.2.8Current
v1.2.7
v1.2.6
v1.2.5
v1.2.4
v1.2.3
v1.2.1
v1.2
Code Analysis
Analyzed Mar 16, 2026

LSX PayFast Gateway for Give Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
2 escaped
Nonce Checks
0
Capability Checks
1
File Operations
0
External Requests
2
Bundled Libraries
0

Output Escaping

100% escaped2 total outputs
Attack Surface

LSX PayFast Gateway for Give Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 10
actiongive_recurring_cancel_payfast_subscriptionclasses\class-give-recurring-payfast.php:42
actiongive_subscription_cancelledclasses\class-give-recurring-payfast.php:43
actionsave_postclasses\class-give-recurring-payfast.php:46
actiongive_gateway_payfastgive-payfast.php:21
actiongive_recurring_available_gatewaysgive-payfast.php:37
actiongive_payfast_cc_formgive-payfast.php:42
actionplugins_loadedgive-payfast.php:50
filtergive_payment_gatewaysgive-payfast.php:62
actionwp_headgive-payfast.php:382
filtergive_settings_gatewaysgive-payfast.php:424
Maintenance & Trust

LSX PayFast Gateway for Give Maintenance & Trust

Maintenance Signals

WordPress version tested6.3.8
Last updatedAug 11, 2023
PHP min version
Downloads8K

Community Trust

Rating100/100
Number of ratings1
Active installs200
Developer Profile

LSX PayFast Gateway for Give Developer Profile

Ash Shaw

17 plugins · 710 total installs

81
trust score
Avg Security Score
90/100
Avg Patch Time
51 days
View full developer profile
Detection Fingerprints

How We Detect LSX PayFast Gateway for Give

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/lsx-give-payfast-gateway/assets/css/payfast.css/wp-content/plugins/lsx-give-payfast-gateway/assets/js/payfast.js
Script Paths
/wp-content/plugins/lsx-give-payfast-gateway/assets/js/payfast.js
Version Parameters
lsx-give-payfast-gateway/assets/css/payfast.css?ver=lsx-give-payfast-gateway/assets/js/payfast.js?ver=

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about LSX PayFast Gateway for Give