Skeedee Booking Widget Security & Risk Analysis

wordpress.org/plugins/skeedee-booking-widget

Plugin will connect widget from Skeedee.com to your WordPress website without code editing.

0 active installs v1.0 PHP 5.4+ WP 4.0+ Updated Mar 26, 2023
calendarmarketingscheduleschedulingwidget
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Skeedee Booking Widget Safe to Use in 2026?

Generally Safe

Score 85/100

Skeedee Booking Widget has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3yr ago
Risk Assessment

The "skeedee-booking-widget" v1.0 plugin exhibits a strong security posture based on the provided static analysis. The absence of any identified dangerous functions, SQL queries without prepared statements, and improper output escaping are significant strengths. Furthermore, the plugin demonstrates good security practices by incorporating nonce and capability checks, which are crucial for protecting against common WordPress vulnerabilities. The lack of any recorded vulnerabilities in its history further reinforces this positive assessment.

However, the most significant concern stemming from this analysis is the complete lack of any discernible attack surface. With zero AJAX handlers, REST API routes, shortcodes, or cron events, it's impossible to definitively assess the security of its potential entry points. While this might indicate a very limited or non-functional plugin, it also means that any future additions to the plugin could introduce vulnerabilities without being caught by this analysis. The taint analysis also reported zero flows, which, while good, could be a consequence of the limited attack surface rather than a testament to robust sanitization of actual data flows.

In conclusion, the plugin currently appears secure due to its limited functionality and adherence to basic WordPress security best practices. The absence of vulnerabilities and adherence to prepared statements and proper escaping are commendable. The primary weakness is the inability to thoroughly test its security due to its minimal attack surface, which leaves potential for future unaddressed risks if new features are added without adequate security scrutiny.

Key Concerns

  • No discernible attack surface
Vulnerabilities
None known

Skeedee Booking Widget Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Skeedee Booking Widget Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
5 escaped
Nonce Checks
1
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped5 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
skde_admin_form (skeedee-booking-widget.php:16)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Skeedee Booking Widget Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 1
actionadmin_menuskeedee-booking-widget.php:10
Maintenance & Trust

Skeedee Booking Widget Maintenance & Trust

Maintenance Signals

WordPress version tested6.1.10
Last updatedMar 26, 2023
PHP min version5.4
Downloads4K

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Skeedee Booking Widget Developer Profile

Skeedee.com

1 plugin · 0 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Skeedee Booking Widget

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Script Paths
https://widget.skeedee.com/components/widget.js

HTML / DOM Fingerprints

CSS Classes
wrap
Data Attributes
name="skeedee"value="<?php echo esc_html($wIdValue); ?>"
JS Globals
window.Widget
FAQ

Frequently Asked Questions about Skeedee Booking Widget