Simple PayPal Recurring Donations Security & Risk Analysis

wordpress.org/plugins/simple-paypal-recurring-donations

Accept PayPal recurring donations from your WordPress site easily.

10 active installs v1.0.3 PHP 5.6.0+ WP 3.0+ Updated Jul 4, 2019
donatedonationpaypalrecurringsubscription
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Simple PayPal Recurring Donations Safe to Use in 2026?

Generally Safe

Score 85/100

Simple PayPal Recurring Donations has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 6yr ago
Risk Assessment

The 'simple-paypal-recurring-donations' plugin version 1.0.3 demonstrates a generally good security posture based on the static analysis. The absence of dangerous functions, SQL injection risks (all queries use prepared statements), file operations, and external HTTP requests are strong indicators of secure coding practices. Taint analysis also shows no critical or high severity flows, further bolstering confidence in the code's safety. The presence of a nonce check is also a positive sign. However, the lack of capability checks on the single shortcode entry point represents a potential area of concern, as it might allow unauthorized users to trigger plugin functionality. The high percentage of properly escaped output (73%) is good, but there's room for improvement to reach closer to 100% to mitigate potential XSS vulnerabilities. The plugin's history of zero known CVEs is highly positive and suggests a history of responsible development or fortunate circumstances.

Key Concerns

  • No capability checks on shortcode
  • Output escaping is not 100%
Vulnerabilities
None known

Simple PayPal Recurring Donations Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Simple PayPal Recurring Donations Release Timeline

v1.0.3Current
v1.0.2
v1.0.0
Code Analysis
Analyzed Mar 17, 2026

Simple PayPal Recurring Donations Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
24
64 escaped
Nonce Checks
1
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

73% escaped88 total outputs
Attack Surface

Simple PayPal Recurring Donations Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[sprdntplgn] simple-paypal-recurring-donations.php:527
WordPress Hooks 6
actioninitsimple-paypal-recurring-donations.php:522
actionadmin_initsimple-paypal-recurring-donations.php:523
actionadmin_menusimple-paypal-recurring-donations.php:524
actionadmin_enqueue_scriptssimple-paypal-recurring-donations.php:525
actionwp_enqueue_scriptssimple-paypal-recurring-donations.php:526
filterwidget_textsimple-paypal-recurring-donations.php:528
Maintenance & Trust

Simple PayPal Recurring Donations Maintenance & Trust

Maintenance Signals

WordPress version tested5.2.24
Last updatedJul 4, 2019
PHP min version5.6.0
Downloads1K

Community Trust

Rating100/100
Number of ratings1
Active installs10
Developer Profile

Simple PayPal Recurring Donations Developer Profile

yknivag

3 plugins · 20 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Simple PayPal Recurring Donations

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/simple-paypal-recurring-donations/js/sprdntplgn-admin.js/wp-content/plugins/simple-paypal-recurring-donations/css/sprdntplgn-admin.css
Script Paths
/wp-content/plugins/simple-paypal-recurring-donations/js/sprdntplgn-admin.js
Version Parameters
simple-paypal-recurring-donations/js/sprdntplgn-admin.js?ver=simple-paypal-recurring-donations/css/sprdntplgn-admin.css?ver=

HTML / DOM Fingerprints

CSS Classes
sprdntplgn_description_shortcode_block
Shortcode Output
[sprdntplgn]
FAQ

Frequently Asked Questions about Simple PayPal Recurring Donations