
Zetpy Mobile Login Security & Risk Analysis
wordpress.org/plugins/zetpy-mobile-loginMobile login with OTP/TAC verification using ISMS API. Supports country code selector and passwordless authentication.
Is Zetpy Mobile Login Safe to Use in 2026?
Generally Safe
Score 100/100Zetpy Mobile Login has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "zetpy-mobile-login" v1.10.2 plugin exhibits a mixed security posture. On the positive side, the static analysis reveals a strong adherence to good coding practices in several areas. The absence of dangerous functions, file operations, and a very low percentage of SQL queries not using prepared statements are excellent indicators. Furthermore, the vast majority of output is properly escaped, and there's a commendable lack of bundled libraries, which often pose an outdated risk. The vulnerability history is also clean, with no recorded CVEs, suggesting a generally secure development process or a lack of past exploitation. However, a significant concern arises from the plugin's attack surface. A substantial number of AJAX handlers (12 out of 13) lack authentication checks. This creates a wide entry point for potential unauthorized actions, as these handlers could be triggered by unauthenticated users. While taint analysis found no explicit issues, the sheer number of unprotected AJAX endpoints represents a significant risk that could be exploited if specific logic flaws exist within them.
Key Concerns
- Many AJAX handlers without auth checks
- Low number of capability checks
- Low number of nonce checks
Zetpy Mobile Login Security Vulnerabilities
Zetpy Mobile Login Release Timeline
Zetpy Mobile Login Code Analysis
SQL Query Safety
Output Escaping
Zetpy Mobile Login Attack Surface
AJAX Handlers 13
Shortcodes 2
WordPress Hooks 20
Maintenance & Trust
Zetpy Mobile Login Maintenance & Trust
Maintenance Signals
Community Trust
Zetpy Mobile Login Alternatives
Invisible reCaptcha for WordPress
invisible-recaptcha
Invisible reCaptcha for WordPress plugin helps you to protect your sites against bad spam bots using the new Invisible reCaptcha by Google.
Paystack WooCommerce Payment Gateway
woo-paystack
Paystack for WooCommerce allows your WooCommerce store to accept secure payments from multiple local and global payment channels.
AFI – The Easiest Integration Plugin
advanced-form-integration
Connect any WordPress form or event to 200+ apps — no code. Send leads, orders, and signups to your CRM, email, or sheets in minutes.
WSMS (formerly WP SMS) – SMS & MMS Notifications with OTP and 2FA for WooCommerce
wp-sms
Send SMS/MMS notifications, OTP & 2FA messages, and WooCommerce updates with support for multiple gateways and plugin integrations.
Product Attachment for WooCommerce
woo-product-attachment
Plugin lets you easily upload any file type (images, documents, videos, etc.) to customer orders.
Zetpy Mobile Login Developer Profile
2 plugins · 0 total installs
How We Detect Zetpy Mobile Login
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/zetpy-mobile-login/assets/css/style.css/wp-content/plugins/zetpy-mobile-login/assets/js/script.js/wp-content/plugins/zetpy-mobile-login/assets/js/script.jszetpy-mobile-login/assets/css/style.css?ver=zetpy-mobile-login/assets/js/script.js?ver=HTML / DOM Fingerprints
zetpy-mobile-login-formdata-ajaxurldata-noncedata-mobileLoginEndpointdata-emailLoginEndpointdata-profileCompleteEndpointzetpyML[zetpy_mobile_login]