
ReDi QR Service Bell Security & Risk Analysis
wordpress.org/plugins/redi-qr-service-bellQR code waiter calling for restaurants. Scan to call waiter, request menu, or ask for the bill—no app needed.
Is ReDi QR Service Bell Safe to Use in 2026?
Generally Safe
Score 100/100ReDi QR Service Bell has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "redi-qr-service-bell" plugin v1.01 presents a mixed security posture. On the positive side, it demonstrates excellent adherence to secure coding practices regarding output escaping and the use of prepared statements for SQL queries. The absence of dangerous functions, file operations, and external HTTP requests further contributes to a generally robust codebase. The plugin also has no recorded vulnerability history, suggesting a history of stable and secure development.
However, a significant concern arises from its attack surface. The plugin exposes one REST API route without any permission callbacks. This single, unprotected entry point is a clear vulnerability, as it could allow unauthorized users to interact with the plugin's functionality. While the taint analysis showed no critical or high severity flows, the lack of authentication on this REST API route creates a direct pathway for potential exploitation if any functionality exposed through it is sensitive or can be manipulated in an insecure way.
In conclusion, while the plugin excels in many secure coding areas, the unprotected REST API route is a critical weakness that must be addressed. The absence of known vulnerabilities is a positive sign, but it doesn't negate the immediate risk presented by the exposed API endpoint. Developers should prioritize adding appropriate authentication and authorization checks to this route.
Key Concerns
- Unprotected REST API route without permission callback
ReDi QR Service Bell Security Vulnerabilities
ReDi QR Service Bell Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
ReDi QR Service Bell Attack Surface
REST API Routes 1
WordPress Hooks 10
Maintenance & Trust
ReDi QR Service Bell Maintenance & Trust
Maintenance Signals
Community Trust
ReDi QR Service Bell Alternatives
Stylish Price List – Price Table Builder & QR Code Restaurant Menu
stylish-price-list
Stop Losing Customers Due to Confusing Pricing - Transform confused visitors into paying customers with crystal-clear price lists that increase conver …
WaiterAid Booking
waiteraid-booking
Display a customizable WaiterAid booking button on your website.
Kaya QR Code Generator
kaya-qr-code-generator
Generate QR Code through Widgets and Shortcodes, without any dependencies.
WP Tripadvisor Review Widgets
review-widgets-for-tripadvisor
Embed Tripadvisor reviews fast and easily into your WordPress site. Increase SEO, trust and sales using Tripadvisor reviews.
UPI QR Code Payment Gateway for WooCommerce
upi-qr-code-payment-for-woocommerce
This Plugin enables WooCommerce shop owners to get direct and instant payments through UPI apps like BHIM, GooglePay, PhonePe or any banking UPI app.
ReDi QR Service Bell Developer Profile
2 plugins · 900 total installs
How We Detect ReDi QR Service Bell
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/redi-qr-service-bell/public/css/admin.css/wp-content/plugins/redi-qr-service-bell/public/js/admin-actions.js/wp-content/plugins/redi-qr-service-bell/public/js/admin-actions.jsredi-qr-service-bell-admin-style?ver=1.01redi-qr-service-bell-admin-actions?ver=1.0.0HTML / DOM Fingerprints
redi-qr-service-bell<!-- ReDi QR Service Bell --><!-- BEGIN: ReDi QR Service Bell -->data-plugin-name="ReDi QR Service Bell"data-plugin-version="1.01"window.redi_qr_service_bell_vars[redi_qr_call_waiter][redi_qr_request_menu][redi_qr_prompt_payment]