
sendwithus Security & Risk Analysis
wordpress.org/plugins/sendwithusTransactional Email Made Easy - Now on WordPress!
Is sendwithus Safe to Use in 2026?
Generally Safe
Score 85/100sendwithus has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'sendwithus' plugin version 1.1.0 exhibits a mixed security posture. On the positive side, it shows no known vulnerabilities in its history, uses prepared statements for all SQL queries, and has no recorded issues with file operations, external HTTP requests, or dangerous functions. However, significant concerns arise from its attack surface. The plugin exposes two AJAX handlers, both of which lack authentication checks. This directly creates a significant risk of unauthorized access and execution of plugin functionalities by unauthenticated users. Furthermore, the output escaping is relatively low at 24%, indicating a risk of Cross-Site Scripting (XSS) vulnerabilities if user-controlled data is not properly sanitized before being displayed.
Key Concerns
- AJAX handlers without authentication checks
- Low output escaping percentage
sendwithus Security Vulnerabilities
sendwithus Code Analysis
Output Escaping
sendwithus Attack Surface
AJAX Handlers 2
WordPress Hooks 21
Maintenance & Trust
sendwithus Maintenance & Trust
Maintenance Signals
Community Trust
sendwithus Alternatives
Connect SendGrid for Emails
connect-sendgrid-for-emails
Connect SendGrid to your WordPress site to send emails using SendGrid's cloud-based email platform.
Primail
primail
The Primail plugin allows you to connect your WordPress site with Mandrill for improved email delivery and reliability
Elastic Email Sender
elastic-email-sender
Reconfigures wp_mail() to send email using Elastic Email API instead of SMTP.
SendWP
sendwp
Say hello to the easy solution to transactional email in WordPress.
Send Emails with Mandrill
send-emails-with-mandrill
'Send Emails with Mandrill' sends emails that are generated by WordPress through Mandrill, a transactional email service powered by MailChimp.
sendwithus Developer Profile
1 plugin · 10 total installs
How We Detect sendwithus
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/sendwithus/css/sendwithus_style.cssHTML / DOM Fingerprints
site_buttonwelcome-panelsendwithus_tablemultisitetable_description<!-- Font for sendwithus' logo --><!-- A check should be performed before loading the table to ensure that the user
has entered an API key - otherwise only an entry for API key should be displayed. --><!-- Just for the network admin--><!-- Only display if API key is populated -->+2 moreid="dashboard_button"id="api_entry"id="api_box"id="api_button"id="default_wordpress_email_id"id="multisite_table"