
تلفنچی Security & Risk Analysis
wordpress.org/plugins/telefonchyاین افزونه اطلاعات لیست تماس سرویس تلفنچی را در پنل وردپرس شما نمایش می دهد
Is تلفنچی Safe to Use in 2026?
Generally Safe
Score 85/100تلفنچی has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The static analysis of the "telefonchy" plugin v1.0.5 indicates a generally strong security posture, with no critical or high-severity issues identified in the code. The plugin demonstrates good practices by avoiding dangerous functions, utilizing prepared statements for all SQL queries, and properly escaping the vast majority of its output. There are no identified vulnerabilities in its history, which is a positive sign of ongoing maintenance and security awareness.
However, there are a few areas that warrant attention. The absence of nonce checks and capability checks across all identified entry points is a significant concern, as it leaves the plugin susceptible to various types of attacks, especially if new entry points are added in the future. While the current attack surface is reported as zero, this relies on the completeness of the analysis. The presence of an external HTTP request, without further context on its purpose and whether it's properly secured, also poses a potential risk.
Overall, the plugin has a solid foundation, but the lack of essential security checks on its entry points is a notable weakness that needs to be addressed to achieve a more robust security profile. The clean vulnerability history is commendable, but it should not lead to complacency regarding fundamental security practices.
Key Concerns
- Missing nonce checks
- Missing capability checks
- External HTTP request without context
تلفنچی Security Vulnerabilities
تلفنچی Code Analysis
Output Escaping
تلفنچی Attack Surface
WordPress Hooks 3
Maintenance & Trust
تلفنچی Maintenance & Trust
Maintenance Signals
Community Trust
تلفنچی Alternatives
CallPage – Callback Widget
callpage
Widget for callback in 28 seconds! Gain 75% more leads from your website!
Mascaras CF7
mascaras-para-cf7
Adicione máscaras de telefone, CPF, CNPJ, CEP e Dinheiro nos campos do Contact Form 7, Elementor e outros tipos de formulários.
WEN Call To Action
wen-call-to-action
Easily create call to action for your WordPress site
Novocall – Callback Widget
novocall-callback-widget
Novocall is a powerful callback widget that helps increase your web conversion by prompting interested visitors with a free callback in seconds, while …
Airplane Mode
airplane-mode
Control loading of external files when developing locally
تلفنچی Developer Profile
2 plugins · 40 total installs
How We Detect تلفنچی
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/telefonchy/assets/bootstrap.bundle.min.js/wp-content/plugins/telefonchy/assets/bootstrap.rtl.min.css/wp-content/plugins/telefonchy/assets/bootstrap.bundle.min.jsHTML / DOM Fingerprints
dashicons-my-icdata-bs-theme