Simple Tel Tracking Security & Risk Analysis

wordpress.org/plugins/simple-tel-tracking

Adds Google Analytic code to all tel links and mailto links.

90 active installs v1.0.0 PHP + WP 3.0.1+ Updated Nov 21, 2017
telseosimpletracking
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Simple Tel Tracking Safe to Use in 2026?

Generally Safe

Score 85/100

Simple Tel Tracking has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 8yr ago
Risk Assessment

The "simple-tel-tracking" plugin v1.0.0 exhibits a strong security posture based on the provided static analysis. The complete absence of identified dangerous functions, raw SQL queries, unescaped output, file operations, external HTTP requests, and taint analysis issues is highly commendable. Furthermore, the lack of any recorded vulnerability history, including CVEs, suggests a history of secure development or a very low profile that has not attracted attention from security researchers.

However, the analysis also reveals a concerning lack of security controls. The absence of nonce checks and capability checks on the identified entry points (even though there are none) is a potential weakness. If new entry points were added in future versions without these critical security measures, it could expose the plugin to various vulnerabilities. The very small attack surface (zero entry points) makes this less of an immediate concern, but it highlights a potential oversight in fundamental security practices that could become problematic if the plugin evolves.

In conclusion, "simple-tel-tracking" v1.0.0 appears to be a secure plugin in its current state, with no known vulnerabilities and robust code practices. The main area for improvement lies in the proactive implementation of standard security checks like nonce and capability checks, even for minimal entry points, to ensure future security resilience.

Key Concerns

  • Missing nonce checks on entry points
  • Missing capability checks on entry points
Vulnerabilities
None known

Simple Tel Tracking Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Simple Tel Tracking Release Timeline

No version history available.
Code Analysis
Analyzed Mar 16, 2026

Simple Tel Tracking Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

Simple Tel Tracking Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 1
actionwp_loadedsimple-tel-tracking.php:23
Maintenance & Trust

Simple Tel Tracking Maintenance & Trust

Maintenance Signals

WordPress version tested3.7.41
Last updatedNov 21, 2017
PHP min version
Downloads2K

Community Trust

Rating100/100
Number of ratings2
Active installs90
Developer Profile

Simple Tel Tracking Developer Profile

harrymt

2 plugins · 100 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Simple Tel Tracking

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/simple-tel-tracking/tracking-code.js
Script Paths
/wp-content/plugins/simple-tel-tracking/tracking-code.js
Version Parameters
simple-tel-tracking/tracking-code.js?ver=1.0.0

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Simple Tel Tracking