
Lucep Call Now Button Security & Risk Analysis
wordpress.org/plugins/lucep-call-now-buttonAn award winning "call now" (or click to call) widget that works on all of your pages! Proven to increase sales by over 72% and it's fr …
Is Lucep Call Now Button Safe to Use in 2026?
Generally Safe
Score 85/100Lucep Call Now Button has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'lucep-call-now-button' plugin version 1.0.3 exhibits a generally positive security posture based on the provided static analysis. The absence of any identified AJAX handlers, REST API routes, shortcodes, or cron events without proper authorization checks is a significant strength, indicating a minimal attack surface. Furthermore, the complete reliance on prepared statements for all SQL queries is excellent practice, mitigating SQL injection risks. However, there are areas for improvement. The taint analysis reveals two flows with unsanitized paths, which, while not classified as critical or high severity in this analysis, represent potential security blind spots that could be exploited if new vulnerabilities are discovered or if the classification thresholds are adjusted. Additionally, the output escaping is only 63% proper, suggesting that some user-supplied data might be rendered without adequate sanitization, potentially leading to cross-site scripting (XSS) vulnerabilities. The plugin's vulnerability history is clean, with no recorded CVEs, which is a strong indicator of good historical security management.
Key Concerns
- Taint flows with unsanitized paths identified
- Output escaping only 63% proper
- No capability checks implemented
- No nonce checks implemented
Lucep Call Now Button Security Vulnerabilities
Lucep Call Now Button Code Analysis
Output Escaping
Data Flow Analysis
Lucep Call Now Button Attack Surface
WordPress Hooks 4
Maintenance & Trust
Lucep Call Now Button Maintenance & Trust
Maintenance Signals
Community Trust
Lucep Call Now Button Alternatives
EchBay Phonering Alo
echbay-phonering-alo
Add Phonering Alo button to your website. A very simple yet very effective plugin that adds a Call Now button to your website for every device (mobile …
ATP Call Now
atp-call-now
Show button Call Now on your website (support desktop and mobile).
HT CALL ME
ht-call-now
This plugin places a Call Now button (click-to-call) to the bottom of the screen which is only visible for your mobile visitors.
WP Scarcity Jeet – Powerful scarcity and urgency timer for your landing pages
scarcity-jeet
Scarcity Jeet is a very flexible and powerful timer and banner widget. You can choose between many designs and even put in your own images and e-cove …
WebRTC Softphone
webrtc-softphone
WebRTC Softphone for Sip Calling with motion animate icon at the bottom of your site.
Lucep Call Now Button Developer Profile
1 plugin · 10 total installs
How We Detect Lucep Call Now Button
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/lucep-call-now-button/css/admin_style.csslucep-call-now-button/css/admin_style.css?ver=HTML / DOM Fingerprints
lucep_admin_wrap