
Zupportly – WordPress Helpdesk & Customer Support Ticket System Security & Risk Analysis
wordpress.org/plugins/zupportlyComplete WordPress Helpdesk & Customer Support Ticket System
Is Zupportly – WordPress Helpdesk & Customer Support Ticket System Safe to Use in 2026?
Generally Safe
Score 100/100Zupportly – WordPress Helpdesk & Customer Support Ticket System has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "zupportly" v1.2 plugin demonstrates several positive security practices, including the complete absence of dangerous functions, file operations, and external HTTP requests. The reliance on prepared statements for all SQL queries and a high percentage of properly escaped output (95%) are also significant strengths. The plugin also shows a good use of nonce and capability checks, indicating an awareness of common WordPress security mechanisms. However, the analysis reveals a notable concern: 5 out of 15 AJAX handlers lack authentication checks. This creates a significant attack surface where unauthenticated users could potentially interact with sensitive functionalities. While the taint analysis did not reveal critical or high-severity unsanitized paths, the presence of 3 flows with unsanitized paths warrants attention, as these could become vulnerabilities if specific conditions are met. The plugin's history of zero known CVEs is a positive indicator, suggesting a generally secure development track record. In conclusion, "zupportly" v1.2 has a strong foundation with good coding practices for SQL and output handling. The primary weakness lies in the unprotected AJAX endpoints, which represent the most immediate security risk. The unsanitized path flows, while not critical in this analysis, highlight a potential area for future improvement.
Key Concerns
- Unprotected AJAX handlers
- Flows with unsanitized paths
Zupportly – WordPress Helpdesk & Customer Support Ticket System Security Vulnerabilities
Zupportly – WordPress Helpdesk & Customer Support Ticket System Code Analysis
Output Escaping
Data Flow Analysis
Zupportly – WordPress Helpdesk & Customer Support Ticket System Attack Surface
AJAX Handlers 15
Shortcodes 2
WordPress Hooks 27
Maintenance & Trust
Zupportly – WordPress Helpdesk & Customer Support Ticket System Maintenance & Trust
Maintenance Signals
Community Trust
Zupportly – WordPress Helpdesk & Customer Support Ticket System Alternatives
SupportCandy – Helpdesk & Customer Support Ticket System
supportcandy
Enhance your WordPress site with our helpdesk and support ticket system. Manage customer support, tickets, and email tickets efficiently.
Hive Support | AI-Powered Help Desk, Live Chat and Chatbot
hive-support
The All-In-One Help Desk, Live Chat & AI Chat Bot Plugin for WordPress.
HelpDesk Contact Form
helpdesk-contact-form
Use the WordPress contact form plugin by the HelpDesk ticket system to connect with visitors. Organize and manage messages — all without coding!
Paldesk – Live Chat & Helpdesk
paldesk-live-chat-helpdesk
Powerful live chat & helpdesk plugin made for your WordPress website. Convert leads to sales & help customers in real time - it's free!
Fluent Support – Helpdesk & Customer Support Ticket System
fluent-support
Feature Rich and Super Fast Support and Customer Ticketing System for WordPress.
Zupportly – WordPress Helpdesk & Customer Support Ticket System Developer Profile
9 plugins · 550 total installs
How We Detect Zupportly – WordPress Helpdesk & Customer Support Ticket System
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/zupportly/assets/css/et-admin-style.css/wp-content/plugins/zupportly/assets/js/et-admin.js/wp-content/plugins/zupportly/assets/js/et-admin.jszupportly/assets/css/et-admin-style.css?ver=zupportly/assets/js/et-admin.js?ver=HTML / DOM Fingerprints
zupportly-menu-badgeawaiting-mod<!-- Unique Tracking --><!-- Email alerts --><!-- Agent reply sends email notification to customer (was in v1.1, preserved) --><!-- New in v1.2:+7 moreenctype="multipart/form-data"zupportly_admin_ajax