Pivotway Leads Generator Security & Risk Analysis

wordpress.org/plugins/pivotway-leads-generator

Pivotway is an easy way to automate your inbound marketing. Transform your website into a lead generation machine and drive revenue to your business.

0 active installs v2017.09.25 PHP 5.4+ WP 3.0.1+ Updated Sep 28, 2017
conversionsemailleadslistmarketing
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Pivotway Leads Generator Safe to Use in 2026?

Generally Safe

Score 85/100

Pivotway Leads Generator has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 8yr ago
Risk Assessment

The static analysis of the "pivotway-leads-generator" plugin v2017.09.25 reveals an exceptionally clean codebase with no identified entry points, dangerous functions, or unescaped outputs. The complete absence of SQL queries without prepared statements and file operations further strengthens its security posture. The plugin also shows a clean history with zero recorded vulnerabilities, suggesting a commitment to secure coding practices or a lack of historical scrutiny. However, the data also indicates a complete lack of nonce and capability checks across all entry points (even though there are currently none). This doesn't pose an immediate risk given the lack of exposed attack surface, but it highlights a potential for future vulnerabilities if new functionality is added without proper security controls. The plugin's strengths lie in its current lack of exploitable code and its clean vulnerability history. The main concern is the absence of security checks which, while not currently problematic, represents a latent risk should the plugin evolve or new functionalities be introduced.

Key Concerns

  • Missing nonce checks on all entry points
  • Missing capability checks on all entry points
Vulnerabilities
None known

Pivotway Leads Generator Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Pivotway Leads Generator Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

Pivotway Leads Generator Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 3
filterclean_urlleads-generator.php:36
actionwp_footerleads-generator.php:41
actionwp_dashboard_setupleads-generator.php:56
Maintenance & Trust

Pivotway Leads Generator Maintenance & Trust

Maintenance Signals

WordPress version tested4.8.28
Last updatedSep 28, 2017
PHP min version5.4
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Pivotway Leads Generator Developer Profile

angel

2 plugins · 10 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Pivotway Leads Generator

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/pivotway-leads-generator/embed.js
Script Paths
https://pivotway.com/apps/embed.js#asyncload
Version Parameters
pivotway-leads-generator/embed.js?ver=2017.09.25

HTML / DOM Fingerprints

JS Globals
pivotway_dashboard_widget_function
FAQ

Frequently Asked Questions about Pivotway Leads Generator