Simple Calendar for Google Security & Risk Analysis

wordpress.org/plugins/simple-calendar-for-google

Lists Google's public calendars.

10 active installs v2.24 PHP 8.0+ WP 6.6+ Updated Nov 25, 2025
blockcalendargooglelists
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Simple Calendar for Google Safe to Use in 2026?

Generally Safe

Score 100/100

Simple Calendar for Google has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5mo ago
Risk Assessment

The static analysis of "simple-calendar-for-google" v2.24 reveals a strong security posture in several key areas. The plugin exhibits an exceptionally small attack surface with zero identified AJAX handlers, REST API routes, shortcodes, or cron events. Furthermore, there are no detected dangerous functions, file operations, or external HTTP requests, which significantly reduces the potential for common attack vectors. The code also demonstrates excellent output sanitization, with 100% of identified outputs being properly escaped, and no unsanitized taint flows were found. This suggests a developer who prioritizes secure coding practices for output handling and input validation.

However, a significant concern arises from the presence of a single SQL query that does not utilize prepared statements. This leaves the plugin vulnerable to SQL injection attacks if the input contributing to this query is not meticulously sanitized elsewhere. While there are no recorded historical vulnerabilities for this plugin, the absence of historical data does not guarantee future security. The lack of documented capability checks and nonce checks on potential entry points, although the entry points are currently zero, means that if any are introduced in future versions without proper security, the plugin would be exposed.

In conclusion, "simple-calendar-for-google" v2.24 demonstrates good security practices in its current state, particularly regarding its limited attack surface and robust output escaping. The primary weakness is the single unescaped SQL query. The lack of historical vulnerabilities is a positive indicator but should not be solely relied upon. Future development should address the SQL query and ensure any new entry points are adequately protected with capability and nonce checks.

Key Concerns

  • Raw SQL query without prepared statements
Vulnerabilities
None known

Simple Calendar for Google Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Simple Calendar for Google Release Timeline

No version history available.
Code Analysis
Analyzed Mar 17, 2026

Simple Calendar for Google Code Analysis

Dangerous Functions
0
Raw SQL Queries
1
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

0% prepared1 total queries
Attack Surface

Simple Calendar for Google Attack Surface

Entry Points0
Unprotected0
Maintenance & Trust

Simple Calendar for Google Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedNov 25, 2025
PHP min version8.0
Downloads4K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Simple Calendar for Google Developer Profile

Katsushi Kawamori

54 plugins · 56K total installs

79
trust score
Avg Security Score
100/100
Avg Patch Time
178 days
View full developer profile
Detection Fingerprints

How We Detect Simple Calendar for Google

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/simple-calendar-for-google/css/frontend.css/wp-content/plugins/simple-calendar-for-google/css/print.css/wp-content/plugins/simple-calendar-for-google/js/frontend.js
Script Paths
/wp-content/plugins/simple-calendar-for-google/js/frontend.js
Version Parameters
/wp-content/plugins/simple-calendar-for-google/css/frontend.css?ver=/wp-content/plugins/simple-calendar-for-google/css/print.css?ver=/wp-content/plugins/simple-calendar-for-google/js/frontend.js?ver=

HTML / DOM Fingerprints

CSS Classes
simple-calendar-for-google
FAQ

Frequently Asked Questions about Simple Calendar for Google