Pay Post By SMS Security & Risk Analysis

wordpress.org/plugins/pay-post-by-sms

Pay Post By SMS is simple yet powerful way to charge your website visitors for an access to restricted content. Charge your visitors for an access to …

0 active installs v1.2 PHP + WP 4.7+ Updated Jan 9, 2018
paymentpayment-gatewaypremium-smssmssms-payment
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Pay Post By SMS Safe to Use in 2026?

Generally Safe

Score 85/100

Pay Post By SMS has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 8yr ago
Risk Assessment

The pay-post-by-sms plugin version 1.2 exhibits a generally positive security posture due to the absence of known vulnerabilities and a low attack surface. The static analysis shows no exposed AJAX handlers, REST API routes, shortcodes, or cron events without proper authentication or permission checks, which is a strong indicator of good security practices. Furthermore, the code utilizes prepared statements for all its SQL queries and includes nonce checks, further strengthening its defenses against common web attacks.

Key Concerns

  • Low output escaping coverage
  • Flow with unsanitized path
Vulnerabilities
None known

Pay Post By SMS Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Pay Post By SMS Release Timeline

No version history available.
Code Analysis
Analyzed Mar 17, 2026

Pay Post By SMS Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
4 prepared
Unescaped Output
28
7 escaped
Nonce Checks
4
Capability Checks
7
File Operations
4
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared4 total queries

Output Escaping

20% escaped35 total outputs
Data Flows · Security
1 unsanitized

Data Flow Analysis

2 flows1 with unsanitized paths
check_sms_code (pay-post-by-sms.php:486)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Pay Post By SMS Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 16
actionplugins_loadedpay-post-by-sms.php:24
actionadmin_initpay-post-by-sms.php:63
actionadmin_menupay-post-by-sms.php:64
actionload-post.phppay-post-by-sms.php:65
actionload-post-new.phppay-post-by-sms.php:66
actionadmin_post_nopriv_check_sms_codepay-post-by-sms.php:67
actionadmin_post_check_sms_codepay-post-by-sms.php:68
filterthe_contentpay-post-by-sms.php:69
actionrest_api_initpay-post-by-sms.php:70
actionadd_meta_boxespay-post-by-sms.php:119
actionsave_postpay-post-by-sms.php:124
actionadmin_noticespay-post-by-sms.php:134
actionadmin_noticespay-post-by-sms.php:241
actionadmin_enqueue_scriptspay-post-by-sms.php:337
actionadmin_noticespay-post-by-sms.php:342
actionadmin_noticespay-post-by-sms.php:347
Maintenance & Trust

Pay Post By SMS Maintenance & Trust

Maintenance Signals

WordPress version tested4.9.29
Last updatedJan 9, 2018
PHP min version
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Pay Post By SMS Developer Profile

ONLINE Solutions Ltd.

1 plugin · 0 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Pay Post By SMS

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/pay-post-by-sms/assets/css/pay_post_by_sms.css

HTML / DOM Fingerprints

CSS Classes
pay-post-by-sms-form
HTML Comments
<!-- START pay-post-by-sms meta box --><!-- END pay-post-by-sms meta box -->
Data Attributes
data-pay-post-by-sms-nonce
JS Globals
pay_post_by_sms_params
REST Endpoints
/wp-json/pay-post-by-sms/v1/process_payment
Shortcode Output
[pay_post_by_sms_form][pay_post_by_sms_link]
FAQ

Frequently Asked Questions about Pay Post By SMS