q-invoice Sisow iDeal for Gravity Forms Security & Risk Analysis

wordpress.org/plugins/qinvoice-sisow-ideal-for-gravity-forms

Adds Sisow iDeal and other payment methods to your Gravity Forms.

10 active installs v0.0.1 PHP + WP 4.0+ Updated Mar 10, 2020
idealpaypaymentpaypalsisow
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is q-invoice Sisow iDeal for Gravity Forms Safe to Use in 2026?

Generally Safe

Score 85/100

q-invoice Sisow iDeal for Gravity Forms has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 6yr ago
Risk Assessment

The plugin "qinvoice-sisow-ideal-for-gravity-forms" v0.0.1 demonstrates a strong security posture based on the static analysis provided. There are no identified AJAX handlers, REST API routes, shortcodes, or cron events, significantly limiting the potential attack surface. Furthermore, the code signals indicate excellent security practices, with no dangerous functions, all SQL queries using prepared statements, and all output properly escaped. The absence of file operations and external HTTP requests (beyond one which is not detailed but not flagged as risky) also contributes positively. The taint analysis revealing no unsanitized paths is another excellent indicator of secure coding.

This plugin's vulnerability history is clean, with no known CVEs, indicating a low likelihood of previously exploited vulnerabilities. The complete lack of recorded vulnerabilities and the absence of critical or high-severity issues in the past further bolster this confidence. The fact that there are no currently unpatched vulnerabilities is a direct reflection of this positive history. Overall, the plugin appears to be well-developed with a focus on security, adhering to best practices in areas such as SQL injection prevention and output sanitization. The limited attack surface and lack of historical issues make it a relatively low-risk option.

While the plugin exhibits many strengths, the lack of nonce checks and capability checks is a notable weakness. While the static analysis shows zero unprotected entry points currently, this absence of checks could become a vulnerability if new entry points are added or if existing functionality is exposed in an unintended way without proper authorization. The fact that there are no known vulnerabilities might be due to the plugin's limited functionality or recent release, rather than an exhaustive security audit that has confirmed the absence of all potential issues. Therefore, while current analysis is very positive, ongoing monitoring and potential for future vulnerabilities due to missing checks should be considered.

Key Concerns

  • Missing nonce checks
  • Missing capability checks
Vulnerabilities
None known

q-invoice Sisow iDeal for Gravity Forms Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

q-invoice Sisow iDeal for Gravity Forms Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
3 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
1
Bundled Libraries
0

Output Escaping

100% escaped3 total outputs
Attack Surface

q-invoice Sisow iDeal for Gravity Forms Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 4
actionplugins_loadedqinvoice-sisow-ideal-for-gravity-forms.php:20
actiongform_loadedqinvoice-sisow-ideal-for-gravity-forms.php:22
actionwpqinvoice-sisow-ideal-for-gravity-forms.php:39
actionadmin_noticesqinvoice-sisow-ideal-for-gravity-forms.php:41
Maintenance & Trust

q-invoice Sisow iDeal for Gravity Forms Maintenance & Trust

Maintenance Signals

WordPress version tested5.4.19
Last updatedMar 10, 2020
PHP min version
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

q-invoice Sisow iDeal for Gravity Forms Developer Profile

q-invoice.nl

4 plugins · 90 total installs

86
trust score
Avg Security Score
89/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect q-invoice Sisow iDeal for Gravity Forms

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/qinvoice-sisow-ideal-for-gravity-forms/sisow/sisowapi.php/wp-content/plugins/qinvoice-sisow-ideal-for-gravity-forms/class-qinvoice-sisow.php/wp-content/plugins/qinvoice-sisow-ideal-for-gravity-forms/languages
Version Parameters
qinvoice-sisow-ideal-for-gravity-forms/sisow/sisowapi.php?ver=qinvoice-sisow-ideal-for-gravity-forms/class-qinvoice-sisow.php?ver=

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about q-invoice Sisow iDeal for Gravity Forms