
Storage for EDD via Box Security & Risk Analysis
wordpress.org/plugins/storage-for-edd-via-boxEnable secure cloud storage and delivery of your digital products through Box for Easy Digital Downloads.
Is Storage for EDD via Box Safe to Use in 2026?
Generally Safe
Score 100/100Storage for EDD via Box has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "storage-for-edd-via-box" plugin version 1.1.0 exhibits a generally strong security posture based on the provided static analysis and vulnerability history. The plugin implements robust security measures such as comprehensive nonce and capability checks on its entry points, and all identified SQL queries utilize prepared statements. Furthermore, a high percentage of output is properly escaped, and there are no recorded historical vulnerabilities, suggesting a diligent development team and stable codebase.
However, a notable concern arises from the taint analysis, which indicates four flows with unsanitized paths. While the analysis did not flag these as critical or high severity, unsanitized paths are a potential vector for injection attacks if user-supplied data is not handled with extreme care. The presence of file operations, even if only one is identified, also warrants attention, particularly in conjunction with unsanitized paths.
In conclusion, the plugin demonstrates good security practices with a clean vulnerability history and strong authentication/authorization mechanisms. The primary area for improvement lies in thoroughly sanitizing all user-supplied input that flows into potentially sensitive operations, especially those involving file operations. Addressing these unsanitized paths would significantly enhance the plugin's overall security.
Key Concerns
- Flows with unsanitized paths found
- File operation identified
Storage for EDD via Box Security Vulnerabilities
Storage for EDD via Box Code Analysis
Bundled Libraries
Output Escaping
Data Flow Analysis
Storage for EDD via Box Attack Surface
AJAX Handlers 2
WordPress Hooks 18
Maintenance & Trust
Storage for EDD via Box Maintenance & Trust
Maintenance Signals
Community Trust
Storage for EDD via Box Alternatives
Storage for EDD via Dropbox
storage-for-edd-via-dropbox
Enable secure cloud storage and delivery of your digital products through Dropbox for Easy Digital Downloads.
Storage for EDD via OneDrive
storage-for-edd-via-onedrive
Enable secure cloud storage and delivery of your digital products through Microsoft OneDrive for Easy Digital Downloads.
Cloud Storage Manager for Fluent Forms – Google Drive, Dropbox, OneDrive, S3 Uploads
cloud-storage-manager
Upload Fluent Forms files to Google Drive, Dropbox, OneDrive, S3, and Cloudflare R2. Save server space with cloud storage.
Storage for EDD via S3-Compatible
storage-for-edd-via-s3-compatible
Enable secure cloud storage and delivery of your digital products through S3-compatible services for Easy Digital Downloads.
Storage for Woo via Dropbox
storage-for-woo-via-dropbox
Enable secure cloud storage and delivery of your WooCommerce digital products through Dropbox.
Storage for EDD via Box Developer Profile
9 plugins · 51K total installs
How We Detect Storage for EDD via Box
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/storage-for-edd-via-box/assets/css/box-integration.css/wp-content/plugins/storage-for-edd-via-box/assets/js/box-integration.js/wp-content/plugins/storage-for-edd-via-box/assets/js/box-integration.jsstorage-for-edd-via-box/assets/css/box-integration.css?ver=storage-for-edd-via-box/assets/js/box-integration.js?ver=HTML / DOM Fingerprints
edbx-settings-section-titleedbx-oauth-status-connectededbx-oauth-status-disconnectededbx-folder-selector-wrapperedbx-folder-selectoredbx-input-groupedbx-button-groupedbx-button-primary+2 more<!-- Main Box Storage Plugin Settings --><!-- Box OAuth Status --><!-- Box Folder Selector --><!-- EDD Settings: Box Integration -->data-edbx-oauth-statusdata-edbx-folder-iddata-edbx-folder-nameedbx_admin_params/wp-json/edbx/v1/folders