
Steeply QR Security & Risk Analysis
wordpress.org/plugins/steeply-qrGenerate QR Codes for your Posts, Pages and Custom Post Types.
Is Steeply QR Safe to Use in 2026?
Generally Safe
Score 85/100Steeply QR has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'steeply-qr' plugin v1.0.5 presents a mixed security posture. While it demonstrates good practices like using prepared statements for all SQL queries and a lack of known historical vulnerabilities, significant concerns exist regarding its attack surface and data handling. The plugin exposes three AJAX handlers without any authentication or capability checks, creating a direct entry point for unauthenticated users to potentially interact with sensitive functionalities. Furthermore, a critical finding is the complete absence of output escaping for all detected output points, meaning user-supplied data could be rendered directly into the browser, opening the door for Cross-Site Scripting (XSS) vulnerabilities. The presence of the 'exec' function is also a red flag, suggesting a potential for arbitrary code execution if not handled with extreme care and robust sanitization, especially in conjunction with unauthenticated entry points.
Key Concerns
- Unprotected AJAX handlers
- No output escaping
- Dangerous function 'exec' found
- No capability checks
Steeply QR Security Vulnerabilities
Steeply QR Release Timeline
Steeply QR Code Analysis
Dangerous Functions Found
Output Escaping
Steeply QR Attack Surface
AJAX Handlers 3
Shortcodes 1
WordPress Hooks 8
Maintenance & Trust
Steeply QR Maintenance & Trust
Maintenance Signals
Community Trust
Steeply QR Alternatives
WPQR QR-Code Generator
wpqr-qr-code
QR-Code widget and shortcode in one QR-Code generator plugin. Use the QR-Code widget in your sidebars or generate QR-Codes in pages and articles.
Qr Code Adv
qr-code-adv
Qr code widget plugin for your WordPress sidebar. Qr code Adv displays QR codes of your site or any other external URL
Tori Codes
toric
Tori Codes adds QR barcodes to your site with ease. Provides UI to edit the QR content and display it on numerous pages using a shortcode.
Kaya QR Code Generator
kaya-qr-code-generator
Generate QR Code through Widgets and Shortcodes, without any dependencies.
UPI QR Code Payment Gateway for WooCommerce
upi-qr-code-payment-for-woocommerce
This Plugin enables WooCommerce shop owners to get direct and instant payments through UPI apps like BHIM, GooglePay, PhonePe or any banking UPI app.
Steeply QR Developer Profile
2 plugins · 0 total installs
How We Detect Steeply QR
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/steeply-qr/css/steeply-qr-admin.css/wp-content/plugins/steeply-qr/js/steeply-qr-admin.js/wp-content/plugins/steeply-qr/js/steeply-qr-admin.jssteeply-qr-admin.css?ver=steeply-qr-admin.js?ver=HTML / DOM Fingerprints
sqr-selectdata-sqr_post_id