
Simple Contact Bar Security & Risk Analysis
wordpress.org/plugins/simple-contact-barSimple Contact Bar: A plugin that easily adds Call Now and WhatsApp Message buttons to your site, along with customizable options and a popup feature …
Is Simple Contact Bar Safe to Use in 2026?
Generally Safe
Score 100/100Simple Contact Bar has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "simple-contact-bar" plugin v1.0.5 presents a generally positive security posture based on the static analysis. The absence of dangerous functions, SQL injection vulnerabilities due to prepared statements, and external HTTP requests are strong indicators of good coding practices. Furthermore, the lack of known CVEs and a clean vulnerability history suggests a well-maintained and relatively secure plugin. However, there are areas that warrant caution. A significant concern is the 58% rate of properly escaped output. This means nearly half of the plugin's output is not properly escaped, creating a potential for cross-site scripting (XSS) vulnerabilities, especially when combined with the presence of 8 shortcodes which can be exploited to inject malicious scripts. The 0 nonce checks and 0 capability checks on AJAX handlers and REST API routes, while currently not exploitable due to the lack of such entry points, indicate a potential weakness if future versions introduce these features without proper security measures. While the current attack surface appears limited and protected, the unescaped output is the most pressing concern from this analysis.
Key Concerns
- Significant portion of output is not properly escaped
- No nonce checks on AJAX handlers
- No capability checks on REST API routes
Simple Contact Bar Security Vulnerabilities
Simple Contact Bar Code Analysis
Output Escaping
Simple Contact Bar Attack Surface
Shortcodes 8
WordPress Hooks 8
Maintenance & Trust
Simple Contact Bar Maintenance & Trust
Maintenance Signals
Community Trust
Simple Contact Bar Alternatives
Click to Call or Chat Buttons
click-to-call-or-chat-buttons
This plugin adds Phone Call and WhatsApp button on your webpage.
Call Now Button – The #1 Click to Call Button for WordPress
call-now-button
The web's #1 click to call button for your website! A simple and powerful plugin that adds a Call Now Button to your website.
Really Simple Click To Call Bar
really-simple-click-to-call
A simple plugin that adds a click to call bar/call now button for mobile visitors.
Floating Click to Contact Buttons
floating-click-to-contact-buttons
Tạo các nút gọi, nút chat Zalo, nút Chat messenger, nút để lại thông tin để tư vấn, nút chỉ đường. Trình bày các nút đẹp mắt ở góc phải dưới màn hình, …
Mobile Contact Line
mobile-contact-line
Simple plugin that allow you add mobile contact line to your wordpress site
Simple Contact Bar Developer Profile
1 plugin · 100 total installs
How We Detect Simple Contact Bar
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/simple-contact-bar/css/style.csssimple-contact-bar/css/style.css?ver=ver=1.0.5HTML / DOM Fingerprints
scb-containerscb-call-buttonscb-whatsapp-buttonscb-popup-buttonscb-social-linkscb-animated-circlescb-pulse-animation<!-- Simple Contact Bar --><!-- Simple Contact Bar: Call Now Button --><!-- Simple Contact Bar: WhatsApp Button --><!-- Simple Contact Bar: Social Links -->+1 moredata-scb-iddata-scb-typedata-scb-urldata-scb-textSCB_OPTIONSSimpleContactBar[simple_contact_bar][simple_contact_bar type="call"][simple_contact_bar type="whatsapp"][simple_contact_bar type="social"]