Zanto Country Detector Security & Risk Analysis

wordpress.org/plugins/zanto-country-detector

Zanto Addon for detecting the user country and show his country flag in the language switcher. Redirect user to his country page

10 active installs v0.1 PHP + WP 3.1+ Updated Sep 15, 2014
country-detectorgeomaxmindtranslationzanto
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Zanto Country Detector Safe to Use in 2026?

Generally Safe

Score 85/100

Zanto Country Detector has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 11yr ago
Risk Assessment

The zanto-country-detector plugin v0.1 exhibits a seemingly secure static analysis profile, with no identified dangerous functions, external HTTP requests, file operations, or SQL queries that are not using prepared statements. The absence of any recorded vulnerabilities, including CVEs, suggests a historically stable plugin. However, a critical concern arises from the extremely low percentage of properly escaped outputs (7%). This indicates a significant risk of Cross-Site Scripting (XSS) vulnerabilities, as user-supplied data, if not properly handled, could be injected and executed in the browser. The lack of nonce and capability checks, coupled with zero identified attack surface points, might suggest that the plugin's functionality is very limited or is intended to be called in a way that relies on other mechanisms for security. This lack of explicit checks on its limited entry points is a weakness, as it relies on an implicit security model rather than explicit verification.

Key Concerns

  • Low output escaping percentage
  • No nonce checks
  • No capability checks
Vulnerabilities
None known

Zanto Country Detector Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Zanto Country Detector Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
25
2 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

7% escaped27 total outputs
Attack Surface

Zanto Country Detector Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 12
actionwp_print_scriptsinc\country-redirect.php:9
actioninitinc\country-redirect.php:61
actioninitzanto-country-detector.php:54
actionplugins_loadedzanto-country-detector.php:61
filterplugin_row_metazanto-country-detector.php:62
actionwp_enqueue_scriptszanto-country-detector.php:65
actionwp_footerzanto-country-detector.php:87
actionzcdp_lang_switcherzanto-country-detector.php:90
actionwidgets_initzanto-country-detector.php:315
actionzwt_menu_main_endzcd-plugin-settings.class.php:11
actionzwt_stgs_post_savezcd-plugin-settings.class.php:12
actionadmin_initzcd-plugin-settings.class.php:14
Maintenance & Trust

Zanto Country Detector Maintenance & Trust

Maintenance Signals

WordPress version tested3.9.40
Last updatedSep 15, 2014
PHP min version
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Zanto Country Detector Developer Profile

Ayebare Mucunguzi Brooks

8 plugins · 340 total installs

85
trust score
Avg Security Score
87/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Zanto Country Detector

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/zanto-country-detector/inc/geoip.inc/wp-content/plugins/zanto-country-detector/inc/country-redirect.php
Version Parameters
zanto-country-detector/style.css?ver=zanto-country-detector/js/script.js?ver=

HTML / DOM Fingerprints

CSS Classes
lang_switcherdropdown-toggledropdown-menuzwt_ls_listcountr_flaglang_sel_sellang_seldrop-arrow
HTML Comments
Get some constants ready for paths when your plugin growsThe plugin base class - the root of all WP goods!Assign everything as a call from within the constructortesting+2 more
Data Attributes
hreflangdata-lang-code
JS Globals
geo_datazwt_get_languageszwt_disp_languageicl_language_switcher
Shortcode Output
[zanto-country-detector]
FAQ

Frequently Asked Questions about Zanto Country Detector