
Whistleblowing & Contact Form – Secure, Anonymous, Drag & Drop Builder Security & Risk Analysis
wordpress.org/plugins/whistleblowing-systemCreate anonymous whistleblowing or standard contact forms with free conditional logic and secure two-way messaging. GDPR-compliant and responsive.
Is Whistleblowing & Contact Form – Secure, Anonymous, Drag & Drop Builder Safe to Use in 2026?
Generally Safe
Score 100/100Whistleblowing & Contact Form – Secure, Anonymous, Drag & Drop Builder has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "whistleblowing-system" plugin v1.5.0 demonstrates a generally strong security posture, characterized by diligent use of prepared statements for SQL queries and proper output escaping. The presence of numerous nonce and capability checks indicates a good understanding of WordPress security best practices, and the absence of known CVEs or critical taint flows is a significant positive. However, the static analysis did reveal two flows with unsanitized paths, which, while not classified as critical or high severity by the taint analysis, represent a potential area of concern. The limited attack surface, with all identified entry points possessing authentication checks, further contributes to its relatively secure design. The plugin's lack of a vulnerability history is encouraging but doesn't negate the importance of addressing the identified unsanitized path flows.
Key Concerns
- Unsanitized path flows
Whistleblowing & Contact Form – Secure, Anonymous, Drag & Drop Builder Security Vulnerabilities
Whistleblowing & Contact Form – Secure, Anonymous, Drag & Drop Builder Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
Whistleblowing & Contact Form – Secure, Anonymous, Drag & Drop Builder Attack Surface
AJAX Handlers 4
Shortcodes 2
WordPress Hooks 18
Maintenance & Trust
Whistleblowing & Contact Form – Secure, Anonymous, Drag & Drop Builder Maintenance & Trust
Maintenance Signals
Community Trust
Whistleblowing & Contact Form – Secure, Anonymous, Drag & Drop Builder Alternatives
Trusty Whistleblowing Solution
trusty-whistleblowing-solution
Trusty is an instantly available, customizable and secure web-based whistleblowing solution developed by compliance experts.
Fast Secure Contact Form Newsletter
contact-form-newsletter
Easily add your Fast Secure Contact Form submissions to Constant Contact email marketing lists.
ANON::form embedded secure form
anonform-embedded-secure-form
Embed ANON::form's End-to-End Encrypted secure and anonymized web forms into your website with an iframe and a shortcode.
FEP Contact Form
fep-contact-form
FEP Contact Form is a secure contact form to your WordPress site.This can be used with Front End PM or without.
SpeedMetriks
speedmetriks
A self-contained service to see how visitors experience your site.
Whistleblowing & Contact Form – Secure, Anonymous, Drag & Drop Builder Developer Profile
1 plugin · 100 total installs
How We Detect Whistleblowing & Contact Form – Secure, Anonymous, Drag & Drop Builder
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/whistleblowing-system/admin/assets/images/whistleblowing_logo.pngHTML / DOM Fingerprints
wbls-admin-headerwbls-admin-header-logowbls-page-titlewbls-buttonwbls-button-add-formwbls-response-messagewbls-contentwbls-forms-list+11 moredata-id[wblsform id=