MediaHawk Call Tracking Integration Security & Risk Analysis
wordpress.org/plugins/mediahawk-call-trackingPlugin adds Mediahawk call tracking software to website. To make numbers changing you have to add class to number wrap element.
Is MediaHawk Call Tracking Integration Safe to Use in 2026?
Generally Safe
Score 85/100MediaHawk Call Tracking Integration has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The mediahawk-call-tracking plugin v2.0 exhibits a generally good security posture based on the provided static analysis. The absence of dangerous functions, file operations, external HTTP requests, and SQL queries not using prepared statements are strong indicators of secure coding practices. Furthermore, the plugin boasts a small attack surface with no identified AJAX handlers or REST API routes that lack proper authorization checks, and no known historical vulnerabilities further bolster its security reputation. However, the presence of a shortcode as an entry point, while not inherently vulnerable in this analysis, represents a potential area for future concern if not carefully managed. The lack of nonce and capability checks on this shortcode, while currently showing no exploitable flows, is a notable omission that could become a risk if the shortcode's functionality is expanded or if indirect vulnerabilities are discovered.
Key Concerns
- Shortcode entry point without explicit auth checks
- Missing nonce checks on entry points
- Missing capability checks on entry points
- Minor unescaped output identified
MediaHawk Call Tracking Integration Security Vulnerabilities
MediaHawk Call Tracking Integration Code Analysis
Output Escaping
MediaHawk Call Tracking Integration Attack Surface
Shortcodes 1
WordPress Hooks 3
Maintenance & Trust
MediaHawk Call Tracking Integration Maintenance & Trust
Maintenance Signals
Community Trust
MediaHawk Call Tracking Integration Alternatives
MediaHawk Call Tracking Integration Developer Profile
1 plugin · 10 total installs
How We Detect MediaHawk Call Tracking Integration
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
//www.dynamicnumbers.mediahawk.co.uk/mhct.min.jsHTML / DOM Fingerprints
mediahawk-wrapmediahawk-labelsmediahawk-sidebarmediahawk-improve-sitemediahawk-supportdata-mhct-campaignid_mhct[mediahawk_number