
The Feedback Button Security & Risk Analysis
wordpress.org/plugins/the-feedback-buttonAdd a feedback button and collect visitor feedback with a click of a button.
Is The Feedback Button Safe to Use in 2026?
Generally Safe
Score 85/100The Feedback Button has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "the-feedback-button" v2.3 exhibits a strong security posture based on the provided static analysis data. The absence of any identified attack surface entries like AJAX handlers, REST API routes, or shortcodes significantly limits potential entry points for attackers. Furthermore, the code signals indicate a clean codebase with no dangerous functions, file operations, or external HTTP requests. The fact that all SQL queries use prepared statements is a major strength, mitigating the risk of SQL injection vulnerabilities. The vulnerability history also shows a perfect record with no known CVEs, suggesting a well-maintained and secure plugin over time.
However, the static analysis does reveal a critical weakness: 0% of output escaping is properly handled. With 4 total outputs analyzed, this means all of them are potentially vulnerable to cross-site scripting (XSS) attacks. This is a significant concern as even with a limited attack surface, unescaped output can lead to serious security breaches if an attacker can control the input that leads to these outputs. While the plugin's overall architecture appears robust, this lack of output sanitization presents a clear and present danger that needs immediate attention.
Key Concerns
- 0% of output escaping is properly handled
The Feedback Button Security Vulnerabilities
The Feedback Button Code Analysis
Output Escaping
The Feedback Button Attack Surface
WordPress Hooks 4
Maintenance & Trust
The Feedback Button Maintenance & Trust
Maintenance Signals
Community Trust
The Feedback Button Alternatives
Ajax Contact Forms (ACF SP)
ajax-contact-forms
Simple and friendly contact form plugin with button widget.
Feedback Button – Jotform
jotform-feedback-button
Display a beautiful feedback button on the side of your blog. When a reader clicks on it a feedback form pops up. Completely customizable.
Saber Feedback Button
saber-feedback-button
Gather feedback, identify bugs and collect ideas from your visitors with our simple feedback button. 10-day free trial!
All-in-one Sticky Floating Contact Form, Call, Click to Chat, and 50+ Social Icon Tabs – My Sticky Elements
mystickyelements
Get leads with a floating contact form tab, chat & social buttons like Facebook Messenger, WhatsApp, Viber, Telegram, Twitter, Instagram & more 🎉
Contact Form by BestWebSoft – Advanced WP Contact Form Builder for WordPress
contact-form-plugin
The most powerful and user-friendly WordPress contact form plugin. Create beautiful contact forms, widgets and pages using shortcodes.
The Feedback Button Developer Profile
1 plugin · 10 total installs
How We Detect The Feedback Button
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
http://cdn.thefeedbackbutton.com/assets/button/v2.jsHTML / DOM Fingerprints
the-feedback-buttondata-keythe_feedback_button_js