
Shortcodes for Gravity Form Security & Risk Analysis
wordpress.org/plugins/shortcodes-gravity-formDisplay Gravity Form shortcodes directly in the admin column for easier management and quick access.
Is Shortcodes for Gravity Form Safe to Use in 2026?
Generally Safe
Score 100/100Shortcodes for Gravity Form has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "shortcodes-gravity-form" plugin v1.1 exhibits a strong security posture based on the provided static analysis. The absence of any detected dangerous functions, raw SQL queries, unsanitized taint flows, or unescaped output is a positive indicator. Furthermore, the plugin has no recorded vulnerability history, suggesting a history of secure development or minimal exposure. The extremely limited attack surface, with zero AJAX handlers, REST API routes, shortcodes, or cron events, significantly reduces the potential for malicious exploitation.
However, the complete lack of any observed entry points or capability checks raises a concern. While this may be due to the plugin's intended functionality, it's unusual for a WordPress plugin not to have any mechanisms for interaction or administration. This could indicate a design that relies entirely on other plugins or themes for its operation, or potentially a missed area of attack surface in the analysis. Without any clear interaction points, it's difficult to assess the risk of privilege escalation or unauthorized actions, though the current analysis shows no immediate threats.
In conclusion, the plugin appears to be very secure in its current state, with no identified vulnerabilities or immediate risks from the code analysis. The main area for caution is the absence of any discernable interaction points, which, while not an immediate threat, warrants consideration regarding its integration and potential indirect security implications. The lack of historical vulnerabilities further reinforces its perceived security.
Key Concerns
- No nonce checks detected
- No capability checks detected
Shortcodes for Gravity Form Security Vulnerabilities
Shortcodes for Gravity Form Code Analysis
Output Escaping
Shortcodes for Gravity Form Attack Surface
WordPress Hooks 4
Maintenance & Trust
Shortcodes for Gravity Form Maintenance & Trust
Maintenance Signals
Community Trust
Shortcodes for Gravity Form Alternatives
گرویتی فرم فارسی
persian-gravity-forms
بسته کامل فارسی ساز گرویتی فرم
GravityExport Lite for Gravity Forms
gf-entries-in-excel
Export all Gravity Forms entries to Excel (.xlsx) or CSV via a download button or a secret shareable URL.
Multiple Columns for Gravity Forms
gf-form-multicolumn
Introduces new form elements into Gravity Forms which allow for simple column creation.
Surbma | Divi & Gravity Forms
surbma-divi-gravity-forms
Responsive Divi form styles for Gravity Forms.
Smart phone field for Gravity Forms
smart-phone-field-for-gravity-forms
A simple and nice plugin to get auto country flag from user ip address on gravity form phone field.
Shortcodes for Gravity Form Developer Profile
3 plugins · 2K total installs
How We Detect Shortcodes for Gravity Form
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.