
Planaday Connector Security & Risk Analysis
wordpress.org/plugins/planaday-connectorToon het cursusaanbod vanuit Planaday op jouw website met de verschillende shortcodes die deze WordPress plugin beschikbaar stelt.
Is Planaday Connector Safe to Use in 2026?
Generally Safe
Score 100/100Planaday Connector has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'planaday-connector' plugin version 1.2.0 exhibits a mixed security posture. On the positive side, the static analysis shows a complete absence of known CVEs and a lack of critical or high-severity findings in taint analysis, suggesting a generally clean codebase regarding historical and deep code vulnerabilities. The plugin also uses prepared statements for all its SQL queries, which is a strong defense against SQL injection. Furthermore, it demonstrates some use of nonce and capability checks, indicating an awareness of WordPress security best practices.
However, there are notable areas for improvement. The most significant concern is the extremely low percentage of properly escaped output (only 6%). This suggests a high risk of Cross-Site Scripting (XSS) vulnerabilities. While the taint analysis did not reveal any unsanitized paths, the low output escaping rate means that any data processed and outputted without explicit sanitization could be exploited. Additionally, the presence of file operations and external HTTP requests without clear indications of sanitization or validation is a potential concern, although the attack surface from direct entry points like AJAX, REST API, and shortcodes appears to be well-protected.
Overall, while the plugin has a clean vulnerability history and avoids common pitfalls like raw SQL queries and exploitable entry points, the pervasive issue with output escaping significantly lowers its security score. The plugin appears to have a solid foundation in preventing direct attacks through its limited attack surface, but the lack of robust output sanitization leaves it vulnerable to XSS attacks, which can have severe consequences. Addressing the output escaping is paramount to improving its security.
Key Concerns
- Low output escaping rate (6%)
Planaday Connector Security Vulnerabilities
Planaday Connector Release Timeline
Planaday Connector Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Planaday Connector Attack Surface
WordPress Hooks 21
Maintenance & Trust
Planaday Connector Maintenance & Trust
Maintenance Signals
Community Trust
Planaday Connector Alternatives
Carta Online
carta-online
Use the Carta Online WordPress plugin to embed your offerings on your website.
Planaday API
planaday-api
Toon het cursusaanbod vanuit Planaday op jouw website met deze Wordpress-plugin Dit kan middels een lijst, op cursussoort of alle cursussen en in vers …
Bumbal connector
bumbal
Bumbal connector is a plug-in for sending orders directly from WooCommerce to Bumbal planning software.
LeadConnector
leadconnector
LeadConnector: It helps you to add the LeadConnector chat widget and the LeadConnector funnel pages to your WordPress website.
Bit integrations – Easy Automator with no-code automation, integrate Webhook and automate 300+ Platform
bit-integrations
Perfect Automation and integration plugin: Connect 300+ platforms and automate CRM, Email marketing tools, Google Sheets, Contact forms, LMS and more
Planaday Connector Developer Profile
2 plugins · 30 total installs
How We Detect Planaday Connector
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/planaday-connector/src/Planaday/Platform/WordpressConfig/Blocks/Blocks.js/wp-content/plugins/planaday-connector/src/Planaday/Platform/WordpressConfig/AdminGUI/AdminGUI.js/wp-content/plugins/planaday-connector/src/Planaday/Platform/WordpressConfig/Assets/js/functions.js/wp-content/plugins/planaday-connector/src/Planaday/Platform/WordpressConfig/Blocks/Blocks.js/wp-content/plugins/planaday-connector/src/Planaday/Platform/WordpressConfig/AdminGUI/AdminGUI.js/wp-content/plugins/planaday-connector/src/Planaday/Platform/WordpressConfig/Assets/js/functions.jsplanaday-connector/src/Planaday/Platform/WordpressConfig/Assets/js/functions.js?ver=planaday-connector/src/Planaday/Platform/WordpressConfig/Blocks/Blocks.js?ver=planaday-connector/src/Planaday/Platform/WordpressConfig/AdminGUI/AdminGUI.js?ver=HTML / DOM Fingerprints
planaday-connectorPlugin Name: Planaday ConnectorPlugin URI: https://planaday.freshdesk.com/support/solutions/articles/11000058859-wordpress-in-website-met-publieke-apiDescription: Toon het cursusaanbod vanuit Planaday op jouw website met de verschillende shortcodes die deze WordPress plugin beschikbaar steltVersion: 1.2.0+7 moredata-planaday-connector-idwindow.planaday_connector_admin_paramswindow.planaday_connector_functionswindow.PlanadayConnectorwindow.PlanadayBlocks/wp-json/planaday-connector/[planaday_course_calendar][planaday_course_list][planaday_course_detail][planaday_testing_shortcode]