
Svetlik Analytics for Contact Form 7 Security & Risk Analysis
wordpress.org/plugins/svetlik-analytics-for-contact-form-7View analytics and insights for Contact Form 7 submissions directly in your WordPress dashboard.
Is Svetlik Analytics for Contact Form 7 Safe to Use in 2026?
Generally Safe
Score 100/100Svetlik Analytics for Contact Form 7 has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "svetlik-analytics-for-contact-form-7" v1.0.3 exhibits a generally strong security posture based on the provided static analysis. The absence of a significant attack surface, dangerous functions, file operations, and external HTTP requests is a positive indicator. The plugin also demonstrates good practices with 100% output escaping and a high percentage of prepared statements for SQL queries. The presence of a nonce check and capability checks further bolsters its security, suggesting an effort to protect against common web vulnerabilities.
However, the taint analysis reveals a concerning flow with an unsanitized path, classified as high severity. While the static analysis shows no direct vulnerabilities like unescaped output or raw SQL, this single high-severity taint flow represents a potential avenue for exploitation if not properly handled internally within the plugin's logic. The lack of any historical vulnerabilities is a significant strength, indicating a mature and relatively stable codebase in terms of past security issues. This suggests the developers have been diligent in addressing past problems or have avoided introducing them in the first place.
In conclusion, while the plugin has a strong foundation in secure coding practices and a clean vulnerability history, the identified high-severity taint flow is a specific area of concern that warrants investigation. It indicates a potential blind spot in how data is handled, which could be exploited under specific circumstances. Therefore, immediate attention should be paid to this particular taint flow to ensure it does not lead to a real-world vulnerability.
Key Concerns
- High severity taint flow with unsanitized path
Svetlik Analytics for Contact Form 7 Security Vulnerabilities
Svetlik Analytics for Contact Form 7 Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Svetlik Analytics for Contact Form 7 Attack Surface
WordPress Hooks 6
Maintenance & Trust
Svetlik Analytics for Contact Form 7 Maintenance & Trust
Maintenance Signals
Community Trust
Svetlik Analytics for Contact Form 7 Alternatives
GA Google Analytics – Connect Google Analytics to WordPress
ga-google-analytics
Adds Google Analytics tracking code to your WordPress site. Supports many tracking features.
Burst Statistics – Privacy-Friendly WordPress Analytics (Google Analytics Alternative)
burst-statistics
Analytics you'll actually use. Privacy-friendly, zero config, and designed to be actionable. Get insights, not just raw data.
Post Views Counter
post-views-counter
Post Views Counter allows you to collect and display how many times a post, page, or other content has been viewed in a simple, fast and reliable way.
Independent Analytics – Google Analytics Alternative for WordPress
independent-analytics
A simple WordPress analytics plugin that is privacy-friendly, fast, and an alternative to Google Analytics.
Statify
statify
Visitor statistics for WordPress with focus on data protection, transparency and clarity. Perfect as a widget in your WordPress Dashboard.
Svetlik Analytics for Contact Form 7 Developer Profile
4 plugins · 40 total installs
How We Detect Svetlik Analytics for Contact Form 7
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/svetlik-analytics-for-contact-form-7/assets/css/admin.css/wp-content/plugins/svetlik-analytics-for-contact-form-7/assets/js/admin.js/wp-content/plugins/svetlik-analytics-for-contact-form-7/assets/vendor/chart/chart.min.js/wp-content/plugins/svetlik-analytics-for-contact-form-7/assets/js/admin.jssvetlik-analytics-for-contact-form-7/assets/css/admin.css?ver=svetlik-analytics-for-contact-form-7/assets/js/admin.js?ver=