
PsyBooker – Calendar for Appointments Security & Risk Analysis
wordpress.org/plugins/psybooker-calendar-for-appointmentsProfessional appointment booking system designed specifically for therapists and psychologists.
Is PsyBooker – Calendar for Appointments Safe to Use in 2026?
Generally Safe
Score 100/100PsyBooker – Calendar for Appointments has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "psybooker-calendar-for-appointments" plugin v1.5.1 exhibits a mixed security posture. While it demonstrates good practices in its use of prepared statements for SQL queries and a significant number of nonce and capability checks, several concerning areas require attention. The presence of one unprotected AJAX handler represents a direct entry point for potential unauthenticated attacks. Furthermore, the taint analysis revealing two flows with unsanitized paths, although not classified as critical or high, indicates potential for vulnerabilities if these paths are exploitable. The plugin's vulnerability history is clean, with no recorded CVEs. This is a positive indicator, suggesting a generally well-maintained codebase. However, the static analysis findings, particularly the unprotected AJAX handler and the unsanitized paths, highlight that even without past vulnerabilities, proactive security measures are crucial. The overall risk is moderate due to the identified potential entry points and the presence of unsanitized data flows, despite the lack of historical vulnerabilities.
Key Concerns
- AJAX handler without authentication check
- Flows with unsanitized paths
- Lower percentage of properly escaped output
PsyBooker – Calendar for Appointments Security Vulnerabilities
PsyBooker – Calendar for Appointments Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
PsyBooker – Calendar for Appointments Attack Surface
AJAX Handlers 6
REST API Routes 2
Shortcodes 1
WordPress Hooks 20
Maintenance & Trust
PsyBooker – Calendar for Appointments Maintenance & Trust
Maintenance Signals
Community Trust
PsyBooker – Calendar for Appointments Alternatives
LatePoint – Calendar Booking Plugin for Appointments and Events
latepoint
Optimize your appointment scheduling with our plugin. Sync calendars, automate reminders, and keep your bookings organized.
Online Scheduling and Appointment Booking System – Bookly
bookly-responsive-appointment-booking-tool
Appointment booking system for WordPress — schedule appointments, manage calendars, send reminders, take payments. Start booking today!
Events Manager – Calendar, Bookings, Tickets, and more!
events-manager
Events calendar with bookings, scheduling, appointments, event registration, tickets, recurring events, and venue management.
Booking Calendar
booking
Original "Booking Calendar" plugin. Easily manage full-day bookings, time-slot appointments, or events in our all-in-one, outstanding booking system.
SimplyBook.me – Booking and reservations calendar
simplybook
Simply add a booking calendar to your site to schedule bookings, reservations, appointments and to collect payments.
PsyBooker – Calendar for Appointments Developer Profile
1 plugin · 10 total installs
How We Detect PsyBooker – Calendar for Appointments
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/psybooker-calendar-for-appointments/admin/wppa-admin.css/wp-content/plugins/psybooker-calendar-for-appointments/admin/wppa-admin.jspsybooker-calendar-for-appointments/admin/wppa-admin.css?ver=psybooker-calendar-for-appointments/admin/wppa-admin.js?ver=HTML / DOM Fingerprints
data-wppa-nonce-set-tfdata-wppa-nonce-set-tf-ajaxdata-wppa-nonce-load-daysdata-wppa-nonce-get-overridesdata-wppa-nonce-sync-googleWPPA_ADMIN