Quandoo Restaurant Reservations Security & Risk Analysis

wordpress.org/plugins/quandoo-restaurant-reservations

The official Quandoo restaurant reservation plugin. Quickly integrate a button or calendar widget to start receiving reservations straight away.

90 active installs v1.1.1 PHP 5.2.4+ WP 4.0+ Updated Apr 24, 2019
quandooreservationrestaurantrestaurant-bookingrestaurant-reservation
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Quandoo Restaurant Reservations Safe to Use in 2026?

Generally Safe

Score 85/100

Quandoo Restaurant Reservations has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 7yr ago
Risk Assessment

The "quandoo-restaurant-reservations" plugin version 1.1.1 exhibits a generally strong security posture based on the provided static analysis and vulnerability history. The absence of any known vulnerabilities (CVEs) and the clean taint analysis are significant positive indicators. The code also demonstrates good practices with proper SQL prepared statements and a high percentage of properly escaped output. The presence of nonce and capability checks for its limited entry points further bolsters its security.

However, the static analysis does reveal a single shortcode, which, while not explicitly stated as unprotected, represents an entry point that could potentially be leveraged if not properly secured. The limited scope of the analysis, particularly the "Total flows analyzed: 0" in the taint analysis, suggests that there might be aspects of the plugin's functionality that were not deeply scrutinized by the taint analysis tool. While the current findings are reassuring, vigilance should be maintained for any future updates or more in-depth security audits.

In conclusion, the plugin appears to be well-developed with a focus on security, indicated by its clean vulnerability history and adherence to secure coding practices in SQL and output handling. The main area for potential concern is the shortcode, which, although small in number, warrants careful implementation to ensure no vulnerabilities are introduced.

Key Concerns

  • Single shortcode entry point
Vulnerabilities
None known

Quandoo Restaurant Reservations Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Quandoo Restaurant Reservations Release Timeline

No version history available.
Code Analysis
Analyzed Mar 16, 2026

Quandoo Restaurant Reservations Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
11
56 escaped
Nonce Checks
1
Capability Checks
2
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

84% escaped67 total outputs
Attack Surface

Quandoo Restaurant Reservations Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[qbook] classes\class-quandoo-reservation-frontend.php:40
WordPress Hooks 11
actionadmin_initclasses\class-quandoo-reservation-admin.php:9
actionadmin_menuclasses\class-quandoo-reservation-admin.php:12
actionwp_footerclasses\class-quandoo-reservation-frontend.php:35
actioninitclasses\class-quandoo-reservation-post-type.php:18
actionadmin_menuclasses\class-quandoo-reservation-post-type.php:23
actionsave_postclasses\class-quandoo-reservation-post-type.php:24
filterenter_title_hereclasses\class-quandoo-reservation-post-type.php:25
actionmanage_posts_custom_columnclasses\class-quandoo-reservation-post-type.php:31
actionadmin_enqueue_scriptsclasses\class-quandoo-reservation-settings.php:326
actionplugins_loadedquandoo-reservation.php:24
actioninitquandoo-reservation.php:65
Maintenance & Trust

Quandoo Restaurant Reservations Maintenance & Trust

Maintenance Signals

WordPress version tested5.1.22
Last updatedApr 24, 2019
PHP min version5.2.4
Downloads4K

Community Trust

Rating0/100
Number of ratings0
Active installs90
Developer Profile

Quandoo Restaurant Reservations Developer Profile

Quandoo Official

1 plugin · 90 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Quandoo Restaurant Reservations

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/quandoo-restaurant-reservations/assets/js/ quandoo-reservation-admin.js/wp-content/plugins/quandoo-restaurant-reservations/assets/css/quandoo-reservation-admin.css
Script Paths
/wp-content/plugins/quandoo-restaurant-reservations/assets/js/quandoo-reservation-admin.js

HTML / DOM Fingerprints

CSS Classes
qbook-cta-text
Data Attributes
data-qbook-widgetdata-qbook-restaurant-id
JS Globals
quandoo_reservation_admin_params
Shortcode Output
<div class="qbook-cta-text">
FAQ

Frequently Asked Questions about Quandoo Restaurant Reservations