PDFSmith – HTML to PDF Converter Security & Risk Analysis

wordpress.org/plugins/pdfsmith

Convert WordPress posts and pages into beautiful, print-ready PDFs using a simple shortcode or auto-insert button.

0 active installs v0.1.1 PHP 7.4+ WP 5.8+ Updated Dec 6, 2025
export-pdfhtml-to-pdfpdfpdf-generatorprint-to-pdf
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is PDFSmith – HTML to PDF Converter Safe to Use in 2026?

Generally Safe

Score 100/100

PDFSmith – HTML to PDF Converter has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5mo ago
Risk Assessment

The plugin 'pdfsmith' v0.1.1 exhibits a strong security posture based on the provided static analysis. It demonstrates excellent adherence to secure coding practices, with 100% of SQL queries using prepared statements and all output properly escaped. The complete absence of dangerous functions, file operations, and unsanitized taint flows further strengthens its security. The plugin also implements adequate security checks, including nonce and capability checks on its entry points, and it has no recorded vulnerabilities or CVEs, indicating a historically stable and secure codebase.

Vulnerabilities
None known

PDFSmith – HTML to PDF Converter Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

PDFSmith – HTML to PDF Converter Release Timeline

v0.1.1Current
v0.1.0
Code Analysis
Analyzed Apr 6, 2026

PDFSmith – HTML to PDF Converter Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
41 escaped
Nonce Checks
2
Capability Checks
4
File Operations
0
External Requests
2
Bundled Libraries
0

Output Escaping

100% escaped41 total outputs
Data Flows · Security
All sanitized

Data Flow Analysis

2 flows
pdfsmith_ajax_generate_pdf (public/ajax-handler.php:7)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

PDFSmith – HTML to PDF Converter Attack Surface

Entry Points3
Unprotected0

AJAX Handlers 2

authwp_ajax_pdfsmith_generatepublic/ajax-handler.php:83
noprivwp_ajax_pdfsmith_generatepublic/ajax-handler.php:84

Shortcodes 1

[pdfsmith] public/shortcode.php:25
WordPress Hooks 5
actionadmin_menuadmin/settings-page.php:8
filterpdfsmith_register_providersincludes/provider-html2pdf.php:84
actionwp_enqueue_scriptspdfsmith.php:40
actioninitpdfsmith.php:58
filterthe_contentpdfsmith.php:97
Maintenance & Trust

PDFSmith – HTML to PDF Converter Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedDec 6, 2025
PHP min version7.4
Downloads221

Community Trust

Rating100/100
Number of ratings1
Active installs0
Developer Profile

PDFSmith – HTML to PDF Converter Developer Profile

Ajay Kumar

3 plugins · 40 total installs

91
trust score
Avg Security Score
95/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect PDFSmith – HTML to PDF Converter

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/pdfsmith/assets/css/frontend.css/wp-content/plugins/pdfsmith/assets/js/frontend.js/wp-content/plugins/pdfsmith/blocks/pdfsmith-button/editor.js
Script Paths
/wp-content/plugins/pdfsmith/assets/js/frontend.js
Version Parameters
pdfsmith/assets/css/frontend.css?ver=pdfsmith/assets/js/frontend.js?ver=pdfsmith/blocks/pdfsmith-button/editor.js?ver=

HTML / DOM Fingerprints

CSS Classes
pdfsmith-download-btn
Data Attributes
data-nonce
JS Globals
pdfsmith_vars
Shortcode Output
[pdfsmith]
FAQ

Frequently Asked Questions about PDFSmith – HTML to PDF Converter