
WCC GF – Lawmatics Security & Risk Analysis
wordpress.org/plugins/wcc-gf-to-lawmaticsSend Gravity Form Plugin Submissions to Lawmatics.
Is WCC GF – Lawmatics Safe to Use in 2026?
Generally Safe
Score 92/100WCC GF – Lawmatics has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The wcc-gf-to-lawmatics plugin version 1.1.0 exhibits a generally strong security posture with a focus on secure coding practices. The static analysis reveals no critical or high severity issues in taint flows, and SQL queries are exclusively executed using prepared statements. A high percentage of output is properly escaped, and there is a significant number of nonce checks, indicating an effort to protect against common WordPress vulnerabilities. The plugin's attack surface is also well-protected, with all identified entry points appearing to have authentication checks. Furthermore, the absence of any known CVEs, past or present, suggests a history of secure development and maintenance.
Despite these strengths, there are a few areas that warrant attention. The presence of four flows with unsanitized paths in the taint analysis, even if not rated as critical or high, indicates potential for unexpected behavior or manipulation if certain inputs are not thoroughly validated. Additionally, the plugin performs external HTTP requests, which, if not handled with extreme care, could expose the site to risks from compromised external services. While the plugin has no recorded vulnerability history, this can also mean limited exposure or testing in diverse environments. Overall, the plugin demonstrates good foundational security, but the taint flow findings and external requests suggest the need for continued vigilance and thorough testing of specific input handling scenarios.
Key Concerns
- Flows with unsanitized paths (4)
- External HTTP requests (5)
WCC GF – Lawmatics Security Vulnerabilities
WCC GF – Lawmatics Release Timeline
WCC GF – Lawmatics Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
WCC GF – Lawmatics Attack Surface
AJAX Handlers 6
WordPress Hooks 7
Maintenance & Trust
WCC GF – Lawmatics Maintenance & Trust
Maintenance Signals
Community Trust
WCC GF – Lawmatics Developer Profile
13 plugins · 10 total installs
How We Detect WCC GF – Lawmatics
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wcc-gf-to-lawmatics/assets/css/wcc-gf-lawmatics-admin.css/wp-content/plugins/wcc-gf-to-lawmatics/assets/css/wcc-gf-lawmatics-frontend.css/wp-content/plugins/wcc-gf-to-lawmatics/assets/js/wcc-gf-lawmatics-admin.js/wp-content/plugins/wcc-gf-to-lawmatics/assets/js/wcc-gf-lawmatics-frontend.js/wp-content/plugins/wcc-gf-to-lawmatics/assets/js/wcc-gf-lawmatics-admin.js/wp-content/plugins/wcc-gf-to-lawmatics/assets/js/wcc-gf-lawmatics-frontend.jswcc-gf-to-lawmatics/assets/css/wcc-gf-lawmatics-admin.css?ver=wcc-gf-to-lawmatics/assets/css/wcc-gf-lawmatics-frontend.css?ver=wcc-gf-to-lawmatics/assets/js/wcc-gf-lawmatics-admin.js?ver=wcc-gf-to-lawmatics/assets/js/wcc-gf-lawmatics-frontend.js?ver=HTML / DOM Fingerprints
wcc-gf-lawmatics-settings<!-- wcc_gf_lawmatics_shortcode --><!-- Start wcc_gf_lawmatics_shortcode --><!-- End wcc_gf_lawmatics_shortcode --><!-- Plugin Name: WCC GF to Lawmatics -->+2 moredata-wcc-gf-lawmatics-noncewcc_gf_lawmatics_ajax_objectwcc_gf_lawmatics_vars[wcc_gf_lawmatics_shortcode]