STARTEND Subscription Add-On for GravityForms Security & Risk Analysis

wordpress.org/plugins/startend-subscription-add-on-for-gravityforms

Description: STARTEND is a Gravity Forms Add-on that allows you to set one or many future start dates and customize an automated end date for your Gra …

20 active installs v4.0.6 PHP + WP + Updated Feb 21, 2024
addondategravity-formsgravity-forms-stripestripe
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is STARTEND Subscription Add-On for GravityForms Safe to Use in 2026?

Generally Safe

Score 85/100

STARTEND Subscription Add-On for GravityForms has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2yr ago
Risk Assessment

The 'startend-subscription-add-on-for-gravityforms' plugin v4.0.6 presents a generally positive security posture based on the static analysis. The absence of any identified attack surface vectors like AJAX handlers, REST API routes, or shortcodes is a significant strength, indicating that the plugin likely does not expose direct entry points for external manipulation. Furthermore, the strict use of prepared statements for all SQL queries and the robust output escaping (72%) demonstrate good defensive coding practices against common web vulnerabilities such as SQL injection and Cross-Site Scripting (XSS). The plugin also shows no history of known vulnerabilities, which is a strong indicator of ongoing security diligence by the developers. The only potential area of concern, albeit minor and without immediate exploitable evidence in this analysis, is the bundled Freemius library v1.0, which may warrant future review for known vulnerabilities if it is outdated. Overall, the plugin appears to be built with security in mind, with a low immediate risk profile.

Key Concerns

  • Bundled Freemius library v1.0
Vulnerabilities
None known

STARTEND Subscription Add-On for GravityForms Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

STARTEND Subscription Add-On for GravityForms Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
2 prepared
Unescaped Output
15
39 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
1

Bundled Libraries

Freemius1.0

SQL Query Safety

100% prepared2 total queries

Output Escaping

72% escaped54 total outputs
Attack Surface

STARTEND Subscription Add-On for GravityForms Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 20
actiongform_loadedgravitystripe-start-date-addon.php:27
actionplugins_loadedgravitystripe-start-date-addon.php:28
actiongform_enqueue_scriptsgravitystripe-start-date-addon.php:84
actionadmin_enqueue_scriptsincludes\class-gse-addon.php:38
actionwp_enqueue_scriptsincludes\class-gse-addon.php:44
filtergform_noconflict_stylesincludes\class-gse-addon.php:72
filtergform_noconflict_scriptsincludes\class-gse-addon.php:78
filtergss_set_result_array_valuesincludes\class-gse-addon.php:85
filtergform_gravityformsstripe_feed_settings_fieldsincludes\class-gse-addon.php:92
filtergform_gravityformsstripe_feed_settings_fieldsincludes\class-gse-addon.php:98
filtergform_field_groups_form_editorincludes\class-gse-addon.php:105
filtergform_submission_data_pre_process_paymentincludes\class-gse-addon.php:112
filtergform_gravityformsstripe_pre_process_feedsincludes\class-gse-addon.php:118
filtergform_stripe_subscription_params_pre_update_customerincludes\class-gse-addon.php:124
actiongform_post_payment_actionincludes\class-gse-addon.php:131
actiongform_post_add_subscription_paymentincludes\class-gse-addon.php:137
actiontemplate_redirectincludes\class-gse-addon.php:144
actiongform_editor_js_set_default_valuesincludes\class-gse-addon.php:152
actiongform_editor_jsincludes\class-gse-addon.php:153
filtergform_tooltipsincludes\class-gse-addon.php:160
Maintenance & Trust

STARTEND Subscription Add-On for GravityForms Maintenance & Trust

Maintenance Signals

WordPress version tested6.3.8
Last updatedFeb 21, 2024
PHP min version
Downloads1K

Community Trust

Rating100/100
Number of ratings1
Active installs20
Developer Profile

STARTEND Subscription Add-On for GravityForms Developer Profile

Concurrent

2 plugins · 80 total installs

89
trust score
Avg Security Score
93/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect STARTEND Subscription Add-On for GravityForms

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/startend-subscription-add-on-for-gravityforms/css/gse.css/wp-content/plugins/startend-subscription-add-on-for-gravityforms/js/gse.js
Script Paths
/wp-content/plugins/startend-subscription-add-on-for-gravityforms/js/gse.js
Version Parameters
startend-subscription-add-on-for-gravityforms/css/gse.css?ver=startend-subscription-add-on-for-gravityforms/js/gse.js?ver=

HTML / DOM Fingerprints

CSS Classes
gfsd_date
JS Globals
gse
FAQ

Frequently Asked Questions about STARTEND Subscription Add-On for GravityForms