Redfox Companion Security & Risk Analysis

wordpress.org/plugins/redfox-companion

Enhance Redfox Themes WordPress Themes additional functionality.

100 active installs v1.1 PHP + WP 3.3+ Updated Mar 29, 2019
room-sectionservice-section
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Redfox Companion Safe to Use in 2026?

Generally Safe

Score 85/100

Redfox Companion has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 7yr ago
Risk Assessment

Based on the static analysis and vulnerability history, redfox-companion v1.1 appears to have a strong security posture. The code analysis shows no identified dangerous functions, all SQL queries utilize prepared statements, and output is almost universally properly escaped. There are no file operations or external HTTP requests, and no vulnerabilities have been recorded in its history, indicating a proactive approach to security or a lack of historical exposure. The complete absence of identified entry points like AJAX handlers, REST API routes, shortcodes, and cron events, especially those without authentication or permission checks, is a significant strength. Similarly, the lack of identified taint flows suggests that user-supplied data is not being mishandled in a way that could lead to common vulnerabilities.

However, the complete absence of nonce checks and capability checks across all identified entry points (though there are none) is a potential concern. While the current lack of entry points mitigates this risk, if future versions introduce any, this lack of built-in checks could become a critical vulnerability. The absence of any recorded vulnerabilities is excellent but could also be a reflection of the plugin's limited usage or exposure, rather than an absolute guarantee of future safety. Overall, the plugin exhibits good coding practices, but the lack of explicit security checks on potential future entry points warrants caution and monitoring.

Key Concerns

  • Missing nonce checks on entry points
  • Missing capability checks on entry points
Vulnerabilities
None known

Redfox Companion Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Redfox Companion Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
2
56 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

97% escaped58 total outputs
Attack Surface

Redfox Companion Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 9
actioncustomize_registerinclude\carpress\customizer\sections\section-service.php:149
actioncustomize_registerinclude\carpress\customizer\sections\section-slider.php:167
filtercarpress_default_datainclude\carpress\functions\template-tags.php:79
filterhotel_paradise_customize_settingsinclude\hotel-paradise\customizer\sections\section-room.php:94
filterhotel_paradise_customize_settingsinclude\hotel-paradise\customizer\sections\section-service.php:117
actionhotel_paradise_sectionsinclude\hotel-paradise\home-page\section-room.php:107
actionhotel_paradise_sectionsinclude\hotel-paradise\home-page\section-service.php:138
filterhotel_paradise_default_datainclude\hotel-paradise\init.php:136
actioninitredfox-companion.php:23
Maintenance & Trust

Redfox Companion Maintenance & Trust

Maintenance Signals

WordPress version tested5.0.25
Last updatedMar 29, 2019
PHP min version
Downloads4K

Community Trust

Rating0/100
Number of ratings0
Active installs100
Alternatives

Redfox Companion Alternatives

No alternatives data available yet.

Developer Profile

Redfox Companion Developer Profile

redfoxthemes

1 plugin · 100 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Redfox Companion

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/redfox-companion/include/carpress/functions/template-tags.php/wp-content/plugins/redfox-companion/include/hotel-paradise/default-service/default-service.php/wp-content/plugins/redfox-companion/include/hotel-paradise/default-room/default-room.php/wp-content/plugins/redfox-companion/include/hotel-paradise/customizer/customizer.php/wp-content/plugins/redfox-companion/include/hotel-paradise/home-page/section-service.php/wp-content/plugins/redfox-companion/include/hotel-paradise/home-page/section-room.php/wp-content/plugins/redfox-companion/include/hotel-paradise/init.php

HTML / DOM Fingerprints

CSS Classes
slider-caption-title-noslider-caption-labelslider-caption-price-currencyslider-caption-price-numberslider-caption-price-innerslider-caption-price-titleslider-caption-price-subtitle
Data Attributes
data-theme-colordata-site-layoutdata-primary-sidebardata-animation-effectdata-googlefontsdata-single-post-meta+128 more
FAQ

Frequently Asked Questions about Redfox Companion