What a great way to build an app fast.
There's a few plugins around like this, but this is the most comprehensive.
As for the lame insecure and security comments, ignore anyone that doesn't explain why... as usually they are junior programmers with 5 minutes of knowledge about the internet and security.
If every plugin that talks to a 3rd party service was insecure, better stop using Eventbrite.com and DigitalTickets.net ticketing plugins also. Ignore the insecure comments, they are talking about their jobs, not this plugin which runs securely.
Man in the middle attacks are only a problem if the code you are running at the time is from a 3rd party server, but some people with 2c of knowledge go barking up the wrong tree... if they know that much about security (or website speed) they wouldn't be using WordPress at all. (which is known for it's constant security holes).
Great for my WordPress
İt is open source and very helpfull for me.Great plug in
Respect for their works.
Easy to use plugin, and great support. I have requested a new feature and they have implemented in a week. Thanks for the speedy response.
Great plugin, I started using this for one of my client's web site, I generated their forms using Bootstrap option and they look great. I look forward to using this more! Thanks , keep up the good work :)
The plugin relies on a remote host, which makes it fundamentally insecure. No matter how well the code is written, all it takes is a man in the middle attack and the entire stack is compromised.
It would be better if the generated code was done on the server, and provided on the server like the boilerplate generators. Having a plugin to do it is opening up a security hole.
You guys know how a SaaS service works right? This plugin interacts with a SaaS service. That in and of itself doesn't make it malicious.
I haven't used or looked at the plugin, but the mere fact that it transmits and receives data to a 3rd party service as part of the functionality it provides does not make it malicious.
The plugin itself states that it's a SaaS solution. It interacts with a SaaS service to provide the functionality it provides.
Long story short: Don't spread hyperbole unless you know 100% that the intent is malicious.
The first (and biggest problem) with this plugin is, that it doesn't generate the code with the plugin code. The plugin is just a proxy that calls a remote server that produces some code and then downloads it into the WP installation. So the owner of the remote server has your installation in his hands. He could send you any sort of code he wants, opening backdoors, hijacking your complete installation.
The other problem is that the code of the plugin is crap. It takes any incoming POST response and just uses it without validation or sanitization. But this is just another security concern.
Long story short: Don't use this plugin. Simply don't.
You must log in to submit a review. You can also log in or register using the form near the top of this page.