
Feedback Company Security & Risk Analysis
wordpress.org/plugins/the-feedback-companyThis plugin integrates Feedback Company review widgets and order registration into Wordpress/WooCommerce
Is Feedback Company Safe to Use in 2026?
Generally Safe
Score 100/100Feedback Company has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'the-feedback-company' v3.3.2 plugin exhibits a generally strong security posture based on the provided static analysis. The absence of any identified dangerous functions, file operations, or external HTTP requests is commendable. Furthermore, the plugin demonstrates awareness of security principles by utilizing prepared statements for a portion of its SQL queries and implementing proper output escaping on all identified outputs, albeit at a moderate rate (30%). The plugin also has a clean vulnerability history with no known CVEs, suggesting a good track record of security maintenance.
However, there are areas for concern that prevent a perfect score. The complete lack of nonce checks and capability checks across all entry points is a significant weakness. While the current static analysis shows no unprotected AJAX handlers or REST API routes, the absence of these fundamental security mechanisms means that any future additions or modifications to these components could inadvertently introduce vulnerabilities. This reliance on the absence of exploitable code rather than explicit security controls is a potential risk, especially as plugins evolve.
In conclusion, the plugin is currently in a relatively secure state, with no immediate critical flaws detected. Its clean history and some good coding practices are positive indicators. Nevertheless, the omission of essential security checks like nonces and capability checks for its entry points represents a notable weakness that, if unaddressed, could lead to vulnerabilities in the future. Addressing these missing checks would significantly bolster the plugin's overall security.
Key Concerns
- Missing nonce checks on entry points
- Missing capability checks on entry points
- SQL queries not using prepared statements (75%)
- Output escaping only 30% properly
Feedback Company Security Vulnerabilities
Feedback Company Code Analysis
SQL Query Safety
Output Escaping
Feedback Company Attack Surface
Shortcodes 7
WordPress Hooks 23
Maintenance & Trust
Feedback Company Maintenance & Trust
Maintenance Signals
Community Trust
Feedback Company Alternatives
Customer Reviews for WooCommerce
customer-reviews-woocommerce
Customer Reviews for WooCommerce plugin helps you get more sales with social proof. Set up automated review reminders and increase conversion rate.
Photo Reviews for WooCommerce
woo-photo-reviews
Let customers attach photos to reviews, enhanced with filterable grids and overall ratings. Auto-send review reminders and coupon emails
ReviewX – Multi-Criteria Reviews for WooCommerce with Google Reviews & Schema
reviewx
Drive woocommerce business growth with social proof: gather product reviews with multicriteria ratings, auto-reminder emails, discounts, and more.
Faview – Virtual Reviews for WooCommerce
woo-virtual-reviews
Faview - Virtual Reviews for WooCommerce generates and displays canned reviews to boost your customer engagement.
Customer Reviews Collector for WooCommerce
customer-reviews-collector-for-woocommerce
Collect reviews on Google, Facebook, Yelp, Trustindex and other platforms automatically, with the help of our system.
Feedback Company Developer Profile
1 plugin · 800 total installs
How We Detect Feedback Company
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/the-feedback-company/css/style.css/wp-content/plugins/the-feedback-company/css/components.css/wp-content/plugins/the-feedback-company/js/feedbackcompany-sdk.js/wp-content/plugins/the-feedback-company/js/feedbackcompany-sdk.min.js/wp-content/plugins/the-feedback-company/js/feedbackcompany-widget-bar.js/wp-content/plugins/the-feedback-company/js/feedbackcompany-widget-main.js/wp-content/plugins/the-feedback-company/js/feedbackcompany-widget-sticky.js/wp-content/plugins/the-feedback-company/js/feedbackcompany-widget-product-extended.js+2 more/wp-content/plugins/the-feedback-company/js/feedbackcompany-sdk.js/wp-content/plugins/the-feedback-company/js/feedbackcompany-sdk.min.js/wp-content/plugins/the-feedback-company/js/feedbackcompany-widget-bar.js/wp-content/plugins/the-feedback-company/js/feedbackcompany-widget-main.js/wp-content/plugins/the-feedback-company/js/feedbackcompany-widget-sticky.js/wp-content/plugins/the-feedback-company/js/feedbackcompany-widget-product-extended.js+2 more/wp-content/plugins/the-feedback-company/css/style.css?ver=/wp-content/plugins/the-feedback-company/css/components.css?ver=/wp-content/plugins/the-feedback-company/js/feedbackcompany-sdk.js?ver=/wp-content/plugins/the-feedback-company/js/feedbackcompany-sdk.min.js?ver=/wp-content/plugins/the-feedback-company/js/feedbackcompany-widget-bar.js?ver=/wp-content/plugins/the-feedback-company/js/feedbackcompany-widget-main.js?ver=/wp-content/plugins/the-feedback-company/js/feedbackcompany-widget-sticky.js?ver=/wp-content/plugins/the-feedback-company/js/feedbackcompany-widget-product-extended.js?ver=/wp-content/plugins/the-feedback-company/js/feedbackcompany-widget-product-reviews.js?ver=/wp-content/plugins/the-feedback-company/js/feedbackcompany-widget-product-summary.js?ver=HTML / DOM Fingerprints
feedbackcompany-widget-bar-containerfeedbackcompany-widget-main-containerfeedbackcompany-widget-sticky-containerfeedbackcompany-widget-product-extended-containerfeedbackcompany-widget-product-reviews-containerfeedbackcompany-widget-product-summary-containerdata-feedbackcompany-widget-uuiddata-feedbackcompany-widget-idfeedbackcompanyfeedbackcompanySDK[feedbackcompany_badge][feedbackcompany_bar][feedback_company_merchant_reviews_widget][feedbackcompany_summary]