Lead Sync – Divi 5 to Jetpack CRM Security & Risk Analysis

wordpress.org/plugins/sync-divi-jetcrm

Automatically sync Divi 5 Contact Form submissions to Jetpack CRM as leads. Streamline your lead generation and customer management.

0 active installs v1.0.0 PHP 7.4+ WP 6.0+ Updated Aug 18, 2025
contact-formdivijetpack-crmlead-generation
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Lead Sync – Divi 5 to Jetpack CRM Safe to Use in 2026?

Generally Safe

Score 100/100

Lead Sync – Divi 5 to Jetpack CRM has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 7mo ago
Risk Assessment

Based on the provided static analysis and vulnerability history, the 'sync-divi-jetcrm' plugin v1.0.0 exhibits a strong security posture. The static analysis reveals no identified attack surface points, no dangerous function usage, and all SQL queries are properly prepared. Furthermore, all output is correctly escaped, and there are no file operations or external HTTP requests to consider. The absence of known Common Vulnerabilities and Exposures (CVEs) in its history further reinforces this positive assessment.

However, a notable concern arises from the complete lack of capability checks and nonce checks. While the current attack surface appears minimal, any future introduction of new features, particularly those involving user interaction or data manipulation, without implementing these fundamental security measures would create significant vulnerabilities. The current version seems secure due to its limited functionality, but this lack of built-in access control mechanisms represents a potential weakness that should be addressed proactively if the plugin evolves. The plugin's strengths lie in its clean code and adherence to basic security practices for the functionality it currently offers, but its weakness lies in the absence of robust access control mechanisms.

Key Concerns

  • Missing capability checks
  • Missing nonce checks
Vulnerabilities
None known

Lead Sync – Divi 5 to Jetpack CRM Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Lead Sync – Divi 5 to Jetpack CRM Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
6 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped6 total outputs
Attack Surface

Lead Sync – Divi 5 to Jetpack CRM Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 3
actioninitsync-divi-jetcrm.php:70
actionadmin_noticessync-divi-jetcrm.php:81
actionet_pb_contact_form_submitsync-divi-jetcrm.php:86
Maintenance & Trust

Lead Sync – Divi 5 to Jetpack CRM Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedAug 18, 2025
PHP min version7.4
Downloads210

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Lead Sync – Divi 5 to Jetpack CRM Developer Profile

Jahidur Nadim

3 plugins · 40 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Lead Sync – Divi 5 to Jetpack CRM

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/sync-divi-jetcrm/assets/css/frontend.css/wp-content/plugins/sync-divi-jetcrm/assets/js/frontend.js
Script Paths
/wp-content/plugins/sync-divi-jetcrm/assets/js/frontend.js
Version Parameters
sync-divi-jetcrm/assets/css/frontend.css?ver=sync-divi-jetcrm/assets/js/frontend.js?ver=

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Lead Sync – Divi 5 to Jetpack CRM