Smart Phone Field For WPForms, Contact Form 7, Fluent Forms, Elementor Forms, WooCommerce Security & Risk Analysis

wordpress.org/plugins/smart-phone-field-for-wp-forms

Instruct your visitors to choose their country code when entering their mobile number to ensure accurate and correctly formatted data submissions.

1K active installs v1.0.4 PHP 7.4+ WP 6.0+ Updated Feb 5, 2026
contact-form-7phone-fieldsmart-phone-fieldwoocommercewpforms
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Smart Phone Field For WPForms, Contact Form 7, Fluent Forms, Elementor Forms, WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

Smart Phone Field For WPForms, Contact Form 7, Fluent Forms, Elementor Forms, WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The plugin "smart-phone-field-for-wp-forms" v1.0.4 exhibits a generally strong security posture based on the static analysis. The complete absence of dangerous functions, raw SQL queries, file operations, and external HTTP requests are all positive indicators. Furthermore, the plugin diligently implements nonce checks on its AJAX handlers and performs capability checks, which are crucial for securing entry points. The high percentage of properly escaped output also suggests a good understanding of preventing XSS vulnerabilities.

However, while the static analysis reveals no immediate critical vulnerabilities like unsanitized taint flows or SQL injection risks, the fact that there are 3 AJAX handlers with zero unprotected entry points is a good sign. The lack of any recorded vulnerability history is also a strong positive, indicating a well-maintained or historically secure plugin. The primary concern, if any, would be the diligence in maintaining this secure state as the plugin evolves, but based on the provided data, the plugin appears to be developed with security best practices in mind.

In conclusion, this plugin demonstrates a solid foundation of security, with robust implementation of core WordPress security features like nonces and capability checks, and careful handling of data with prepared statements and output escaping. The absence of any known vulnerabilities further reinforces its current secure state. While no significant weaknesses are apparent from this analysis, continuous vigilance and adherence to security principles will be key for future updates.

Vulnerabilities
None known

Smart Phone Field For WPForms, Contact Form 7, Fluent Forms, Elementor Forms, WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Smart Phone Field For WPForms, Contact Form 7, Fluent Forms, Elementor Forms, WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
10
126 escaped
Nonce Checks
3
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
1

Bundled Libraries

Select2

Output Escaping

93% escaped136 total outputs
Data Flows
All sanitized

Data Flow Analysis

3 flows
spf_save_plugins_data (includes\admin\dashboard.php:61)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Smart Phone Field For WPForms, Contact Form 7, Fluent Forms, Elementor Forms, WooCommerce Attack Surface

Entry Points3
Unprotected0

AJAX Handlers 3

authwp_ajax_spf_save_plugins_dataincludes\admin\dashboard.php:11
authwp_ajax_spf_global_settingincludes\admin\dashboard.php:12
authwp_ajax_spf_install_manage_pluginincludes\admin\dashboard.php:13
WordPress Hooks 35
actioninitincludes\addons\contact-form-7\contact-form-7.php:12
actionadmin_noticesincludes\addons\contact-form-7\contact-form-7.php:41
actionwpcf7_initincludes\addons\contact-form-7\field.php:12
actionadmin_initincludes\addons\contact-form-7\field.php:13
filterwpcf7_validate_smart_phone_fieldincludes\addons\contact-form-7\field.php:14
filterwpcf7_validate_smart_phone_field*includes\addons\contact-form-7\field.php:15
actionwpcf7_before_send_mailincludes\addons\contact-form-7\field.php:16
actionwp_enqueue_scriptsincludes\addons\contact-form-7\field.php:18
actionadmin_noticesincludes\addons\elementor-form\elementor-form.php:9
actionelementor_pro/forms/fields/registerincludes\addons\elementor-form\elementor-form.php:10
actionelementor/preview/initincludes\addons\elementor-form\field.php:174
actionelementor/frontend/after_enqueue_scriptsincludes\addons\elementor-form\field.php:175
actionwp_footerincludes\addons\elementor-form\field.php:188
actionwp_enqueue_scriptsincludes\addons\fluent-forms\field.php:19
actionwp_footerincludes\addons\fluent-forms\field.php:180
actionadmin_noticesincludes\addons\fluent-forms\fluent-forms.php:21
actionplugins_loadedincludes\addons\fluent-forms\fluent-forms.php:74
actionbefore_woocommerce_initincludes\addons\woo-commerce\woo-commerce.php:6
filterwoocommerce_settings_tabs_arrayincludes\addons\woo-commerce\woo-commerce.php:9
actionwoocommerce_settings_tabs_smart_phone_fieldincludes\addons\woo-commerce\woo-commerce.php:10
actionwoocommerce_update_options_smart_phone_fieldincludes\addons\woo-commerce\woo-commerce.php:11
filterwoocommerce_checkout_fieldsincludes\addons\woo-commerce\woo-commerce.php:14
actionwoocommerce_checkout_update_order_metaincludes\addons\woo-commerce\woo-commerce.php:15
actionwp_enqueue_scriptsincludes\addons\woo-commerce\woo-commerce.php:18
actionadmin_enqueue_scriptsincludes\addons\woo-commerce\woo-commerce.php:19
filterwpforms_field_properties_spf_phoneincludes\addons\wp-forms\field.php:15
actionwpforms_frontend_cssincludes\addons\wp-forms\field.php:16
actionwpforms_frontend_jsincludes\addons\wp-forms\field.php:17
actionwpforms_loadedincludes\addons\wp-forms\wp-forms.php:6
actionadmin_noticesincludes\addons\wp-forms\wp-forms.php:7
actionadmin_menuincludes\admin\dashboard.php:9
actionadmin_enqueue_scriptsincludes\admin\dashboard.php:10
actionwp_enqueue_scriptssmart-phone-field.php:24
actionactivated_pluginsmart-phone-field.php:26
actionwp_headsmart-phone-field.php:30
Maintenance & Trust

Smart Phone Field For WPForms, Contact Form 7, Fluent Forms, Elementor Forms, WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedFeb 5, 2026
PHP min version7.4
Downloads4K

Community Trust

Rating100/100
Number of ratings4
Active installs1K
Developer Profile

Smart Phone Field For WPForms, Contact Form 7, Fluent Forms, Elementor Forms, WooCommerce Developer Profile

PluginsCafe

16 plugins · 11K total installs

92
trust score
Avg Security Score
97/100
Avg Patch Time
24 days
View full developer profile
Detection Fingerprints

How We Detect Smart Phone Field For WPForms, Contact Form 7, Fluent Forms, Elementor Forms, WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/smart-phone-field-for-wp-forms/assets/css/intlTelInput2.css/wp-content/plugins/smart-phone-field-for-wp-forms/assets/css/spf_style.css/wp-content/plugins/smart-phone-field-for-wp-forms/assets/js/intlTelInputWithUtils.min.js/wp-content/plugins/smart-phone-field-for-wp-forms/includes/addons/contact-form-7/js/spf_cf7.js
Script Paths
/wp-content/plugins/smart-phone-field-for-wp-forms/assets/js/intlTelInputWithUtils.min.js/wp-content/plugins/smart-phone-field-for-wp-forms/includes/addons/contact-form-7/js/spf_cf7.js
Version Parameters
smart-phone-field-for-wp-forms/assets/css/intlTelInput2.css?ver=smart-phone-field-for-wp-forms/assets/css/spf_style.css?ver=smart-phone-field-for-wp-forms/assets/js/intlTelInputWithUtils.min.js?ver=smart-phone-field-for-wp-forms/includes/addons/contact-form-7/js/spf_cf7.js?ver=

HTML / DOM Fingerprints

CSS Classes
spf_wrapspf_validation
HTML Comments
<!-- Smart Phone Field --><!-- Admin notice --><!-- Tag Generator --><!-- Tag Generator Generator -->
Data Attributes
data-namedata-configdata-init_countrydata-fv
JS Globals
pcafe_spf_global_setting
Shortcode Output
<span class="wpcf7-form-control-wrap spf_wrap"
FAQ

Frequently Asked Questions about Smart Phone Field For WPForms, Contact Form 7, Fluent Forms, Elementor Forms, WooCommerce