
TK Google Fonts GDPR Compliant Security & Risk Analysis
wordpress.org/plugins/tk-google-fontsTK Google Fonts gives you a simple and easy way to add custom google fonts to any WordPress site without complex codes. Full GDPR Compliance.
Is TK Google Fonts GDPR Compliant Safe to Use in 2026?
Generally Safe
Score 91/100TK Google Fonts GDPR Compliant has a strong security track record. Known vulnerabilities have been patched promptly.
The "tk-google-fonts" plugin version 2.2.14 exhibits a generally good security posture based on the static analysis. It demonstrates strong adherence to secure coding practices with 100% of SQL queries using prepared statements and 100% of outputs being properly escaped. The attack surface is relatively small, with all identified entry points (AJAX handlers) including nonce and capability checks, which is a positive sign of developer diligence in preventing unauthorized actions.
However, the plugin's vulnerability history reveals past issues, specifically one high and one medium severity vulnerability, with the last one occurring in October 2023. The common vulnerability type of "Missing Authorization" in past CVEs is a concern, even though the current static analysis indicates that all identified entry points have authorization checks. This suggests a historical pattern of authorization weaknesses that warrants caution. Despite the current code analysis showing no immediate critical risks, the past trend of missing authorization vulnerabilities and the presence of an unpatched CVE (although currently at 0, implying a recent fix) indicates potential for recurring issues if development practices aren't consistently robust.
In conclusion, while the current version of "tk-google-fonts" appears to be well-secured against common web vulnerabilities like SQL injection and XSS, the historical data points to a past where authorization was a significant weakness. Users should remain vigilant and ensure the plugin is always updated to the latest version to benefit from any security patches addressing past vulnerabilities. The plugin's strengths lie in its robust input sanitization and output escaping, but its historical vulnerability pattern is a notable weakness.
Key Concerns
- History of 1 High, 1 Medium CVE
- Bundled Freemius v1.0
TK Google Fonts GDPR Compliant Security Vulnerabilities
CVEs by Year
Severity Breakdown
2 total CVEs
TK Google Fonts GDPR Compliant <= 2.2.11 - Missing Authorization to Font Addition
TK Google Fonts GDPR Compliant <= 2.2.7 - Authorization Bypass
TK Google Fonts GDPR Compliant Code Analysis
Bundled Libraries
Output Escaping
Data Flow Analysis
TK Google Fonts GDPR Compliant Attack Surface
AJAX Handlers 4
WordPress Hooks 17
Maintenance & Trust
TK Google Fonts GDPR Compliant Maintenance & Trust
Maintenance Signals
Community Trust
TK Google Fonts GDPR Compliant Alternatives
Easy Google Fonts
easy-google-fonts
Adds google fonts to any theme without coding and integrates with the WordPress Customizer automatically for a realtime live preview.
Google Web Fonts Customizer (GWFC)
google-web-fonts-customizer-gwfc
This plugin integrates WordPress Customizer with Google Web Fonts, to add and use google fonts to any themes, no coding needed.
Ultimate Fonts
ultimate-fonts
Adds Google Fonts to your WordPress website without coding. Customize any element with support for live preview in the Customizer.
Ultimate Google Fonts
ultimate-google-fonts
With this Google fonts plugin you have more than awesame 90 open source fonts at your disposal! Choose and customize Google fonts directly from your W …
Custom Fonts – Host Your Fonts Locally
custom-fonts
Custom Fonts is a powerful WordPress plugin that allows you to upload your own custom fonts or choose from a vast collection of Google Fonts, all host …
TK Google Fonts GDPR Compliant Developer Profile
12 plugins · 5K total installs
How We Detect TK Google Fonts GDPR Compliant
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/tk-google-fonts/assets/css/tk-google-fonts.css/wp-content/plugins/tk-google-fonts/assets/js/tk-google-fonts.jsTK Google Fontstk-google-fonts/assets/js/tk-google-fonts.jstk-google-fonts/assets/css/tk-google-fonts.css?ver=tk-google-fonts/assets/js/tk-google-fonts.js?ver=HTML / DOM Fingerprints
tk-google-fonts-wrapperTK Google FontsThis is the ThemeKraft Google Fonts WordPress PluginManage your Google Fonts and use them in the WordPress Customizer,via CSS or via theme options if intehrated into your theme.+23 moretk_google_fonts_options[customizer_disabled]TK_Google_Fonts