
Zakah Calculator Security & Risk Analysis
wordpress.org/plugins/zakah-calculatorIt is a simple and easy way to know how to fulfill the obligation of Zakah.
Is Zakah Calculator Safe to Use in 2026?
Generally Safe
Score 92/100Zakah Calculator has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "zakah-calculator" v1.6 plugin exhibits a strong security posture based on the provided static analysis and vulnerability history. The absence of any identified AJAX handlers, REST API routes, shortcodes, or cron events significantly limits the attack surface, and importantly, all potential entry points appear to be protected. The code signals also indicate good practices, with no dangerous functions used, all SQL queries employing prepared statements, and no file operations or external HTTP requests detected. This suggests a well-written and secure codebase with a focus on preventing common attack vectors.
However, a notable concern arises from the output escaping. With only 40% of outputs being properly escaped, there is a significant risk of Cross-Site Scripting (XSS) vulnerabilities. This means user-supplied or dynamic data displayed on the front-end or back-end might not be sufficiently sanitized, allowing attackers to inject malicious scripts. The lack of nonce checks and capability checks, while not necessarily a direct vulnerability in this specific instance due to the limited attack surface, does represent a potential weakness if new functionalities are added without implementing these security measures. The plugin's clean vulnerability history is a positive sign, indicating a lack of past security issues, but the output escaping flaw remains a critical area for immediate attention.
Key Concerns
- Insufficient output escaping (40% proper)
- No nonce checks implemented
- No capability checks implemented
Zakah Calculator Security Vulnerabilities
Zakah Calculator Code Analysis
Output Escaping
Zakah Calculator Attack Surface
WordPress Hooks 1
Maintenance & Trust
Zakah Calculator Maintenance & Trust
Maintenance Signals
Community Trust
Zakah Calculator Alternatives
Hijri Calendar
hijri-calendar
Easily display current Hijri/Islamic date (according to hijri calendar), anywhere in your wordpress blog!
Muslim Prayer Times
muslim-prayer-times
Add accurate prayer times and iqama schedules to your WordPress site using blocks or shortcodes.
Zakaat Calculator
zakaat-calculator
A beautiful Interactive Plugin which can be used to add Zakaat Calculator in your websites sidebar.
Five Prayer
fiveprayer
Five Prayer displays accurate Muslim prayer times and timetables directly inside WordPress.
Ya’Muslim Prayer Time WordPress Widget
yamuslim-prayer-time-wordpress-widget
Allows a user to add a widget to show the daily prayer times according to user location on their site.
Zakah Calculator Developer Profile
13 plugins · 520 total installs
How We Detect Zakah Calculator
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/zakah-calculator/css/style.css/wp-content/plugins/zakah-calculator/js/zakah.js/wp-content/plugins/zakah-calculator/js/zakah.jszakah-calculator/css/style.css?ver=zakah-calculator/js/zakah.js?ver=HTML / DOM Fingerprints
zakah_inputyour_amount_textyour_zakah_textname="calculate_zakah"id="calculate_zakah"id="amount"onfocus="zakah_blankfield(amount)"onBlur="zakah_check_empty(amount)"name="total_amount"+8 morezakah_printzakah_blankfieldzakah_check_emptyzakah_lostfocusreset_zakah_print