Simply Schedule Appointments
by NSquared · Booking & Events
Also makes 3 other plugins · 75.1K+ installs across the portfolio →
Unlimited appointments, booking calendars, and notifications. Powerful appointment booking plugin and booking system. Start scheduling for free today!
92 health vs 67 average across 979 Booking & Events plugins
Directory ranking optimization
How it's scored →How well this listing is tuned to rank in WordPress.org search, on the factors an owner controls. Not popularity, optimization.
Excellent listing optimization
Well tuned across the board
Daily downloads
Since 2022-10-05 · 1,421 days · wp.org + Plugin Pulse archive
30-day downloads
Rolling 30-day volume · peaks are release surges
105.3K
now · peak 179.7K
Directory rank vs rivals
wp.org popularity rank over time · higher is better · when a rival's line climbs above yours, they've overtaken you
Rating trend
Star average over time · dips mark rough releases
Update activity
How busy the existing users are, measured as downloads in the last 30 days for every 1,000 active sites. A spike means a new release everyone's pulling; a long, slow decline means an aging user base that updates less.
Release cadence
Actively maintainedHow often this plugin actually ships. A steady rhythm is the maintenance signal a single "last updated" date can't show.
39
releases in the last 12 months
1mo ago
latest release · v1.6.12.10
140
tagged releases on record
Recent releases
What its installed base runs
via wordpress.orgShare of active installs on each version of this plugin · 99% run the current release. Green is the current release; a big slice on older versions is a user base that has stopped updating.
Estimated active installs
The public count shows “50K+”. Our estimate pins where the real number sits.
Modeled within the band wp.org reports; tightens as we track daily.
Install history · since 2018-09-01 · 1,451 observations
Estimated value
What this plugin might earn a year, and what it might sell for. Modeled from public signals; we don't see anyone's books.
Est. annual revenue
Est. acquisition value
No paid tier is visible, so we don't put a figure on revenue or sale value: that would be guessing. The install base is a real asset to an acquirer, just not one public data lets us price. A declining trend compresses what a buyer would pay.
Details
Recent reviews
All reviews on wp.org ↗- ★★★★★ sparisi3mo ago
Great plug in for basic appointment setting. Excellent customer service if you have any questions. Responsive to enhancement requests!
Read on wp.org ↗ - ★★★★★ Luckydogie8mo ago
I was looking for a plugin to allow our customers to setup an appointment with our technician. I found this plugin and decided to give it a try after reading all the reviews. It was so simple and I was able to make my first appointment setup and running within 30 minutes – and it works without any issues. The amazing part about this plugin is their support. I have a question about the calendar syncs function and I reached out to the support – I got a response from their team within an hour, even though I haven’t upgraded to their pro version yet. I highly recommend this product to anyone who needs a simple appointment plugin for the WordPress website.
Read on wp.org ↗ - ★★★★★ lkarchner9mo ago
I had to use the Simply Schedule Appointments plugin yesterday. I didn’t expect much, as there are lots of shoddy plugins out there. I found myself pleasantly surprised to find that it was very well written and super easy to use. No bugs, no issues. I wish everyone coded plugins this thoroughly. Cheers! 🙂
Read on wp.org ↗ - ★★★★★ usman73810mo ago
Simply Schedule Appointments plugin was super easy to set up and has all the booking options I needed. The integrations work great, and the support team is always quick to help. Definitely recommend it!
Read on wp.org ↗ - ★★★★★ tdhmonte6811mo ago
My client business has already schedule more than 100 plus appointment in a short amount of time. The plugin works great.
Read on wp.org ↗ - ★★★★★ arbpen1.0y ago
One thing I love about this plugin is that it takes query strings. We have out own inhouse appointment system and I generate the required information in a query string and pass it to SSA. SSA is also easy to configure although advanced set up may require a little help. Speaking of help, when I miscoded something, SSA’s support team was on it and found my error right away with an easy fix. SSA blows Calendly away. We have also used a HIPPA compliant system and it wasn’t nearly as good as this. If you are looking for an excellent scheduling plugin, this is the one to get.
Read on wp.org ↗ - ★★★★★ emafd1.1y ago
Excellent plugin. I’ve been using it for 2 years now and it’s working very well, in sync with Google calendar. What I especially love is their wonderful and friendly client support, always here to help.
Read on wp.org ↗ - ★★★★★ rtenny1.2y ago
After I have tried several booking plugins, which are far too complicated for what I needed, I found this little gem. It’s easy to set up as I only need one type of booking with one user. It looks great on the page and is easy to use for the end user. This is the ideal plugin if you want something that works straight out of the box within five minutes.
Read on wp.org ↗
Latest updates
via wp.org changelogRecent releases and news for this plugin
- 2026-08-11 Version 1.6.12.19 Google Calendar: skip the redundant token-validation call on every availability check 1.6.12.19
- 2026-08-04 Version 1.6.12.17 Add rate limiting to protect the booking form from spam and bot bookings Fix giant emoji in appointment type titles in the admin app Vulnerability: Team Member role can disclose all users’ emails (up to 1.6.12.16) 1.6.12.17
- 2026-07-28 Version 1.6.12.15 Detect and fix SSA events wrongly counted as busy (Google Calendar drift) Fix appointment buffer times ignored on PHP 8.2+ (allowing back-to-back bookings) and customer data lost in backups; add PHP 8.4 support Harden th 1.6.12.15
- 2026-07-21 Version 1.6.12.13 Handle Google Calendar invalid_grant: stop dead-token retries and flag staff needing reconnect 1.6.12.13
- 2026-07-14 Version 1.6.12.11 Fix stored XSS via appointment meta javascript: URI Fix Basic-edition upgrade-link CSS leaking into plugin-update AJAX responses Harden booking endpoint against spam bookings. Harden appointment meta links to allow only 1.6.12.11
- 2026-06-30 Version 1.6.12.8 Fix purge appointments 500 on Basic/Plus/Pro editions (missing dependency models) Require a non-zero “First Available within” duration (default 1 hour) 1.6.12.8
Known vulnerabilities
via Wordfence Intelligence40 disclosed vulnerabilities on record for this plugin, all fixed in the current version. Sites on older versions stay exposed until they update.
- 2026-08-15 CVE-2026-13358 Authorization Bypass Through User-Controlled Key Affects <= 1.6.12.10 Patched in 1.6.12.11
- Medium · 5.3 Simply Schedule Appointments < 1.6.12.6 - Unauthenticated Insecure Direct Object Reference ↗2026-08-06 CVE-2026-16540 Authorization Bypass Through User-Controlled Key Affects < 1.6.12.6 Patched in 1.6.12.6
- 2026-07-28 CVE-2026-65508 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects <= 1.6.12.10 Patched in 1.6.12.11
- High · 7.2 Simply Schedule Appointments <= 1.6.12.10 - Unauthenticated Stored Cross-Site Scripting ↗2026-07-28 CVE-2026-65513 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 1.6.12.10 Patched in 1.6.12.11
- 2026-07-06 CVE-2026-13400 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 1.6.12.3 Patched in 1.6.12.4
- 2026-06-26 CVE-2026-57317 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 1.6.12.2 Patched in 1.6.12.4
- 2026-05-28 CVE-2026-39447 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 1.6.10.6 Patched in 1.6.11.0
- 2026-05-27 CVE-2026-7797 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects <= 1.6.11.8 Patched in 1.6.11.9
- 2026-04-27 CVE-2026-42384 Exposure of Sensitive Information to an Unauthorized Actor Affects < 1.6.11.2 Patched in 1.6.11.2
- 2026-04-08 CVE-2026-39493 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects <= 1.6.9.27 Patched in 1.6.9.29
- Medium · 6.5 Simply Schedule Appointments <= 1.6.9.27 - Authenticated (Contributor+) SQL Injection ↗2026-03-26 CVE-2026-39495 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects <= 1.6.9.27 Patched in 1.6.9.29
- High · 7.5 Appointment Booking Calendar <= 1.6.10.0 - Unauthenticated SQL Injection via 'fields' Parameter ↗2026-03-18 CVE-2026-3658 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects <= 1.6.10.0 Patched in 1.6.10.2
- 2026-03-12 CVE-2026-1704 Authorization Bypass Through User-Controlled Key Affects <= 1.6.9.29 Patched in 1.6.10.0
- 2026-03-10 CVE-2026-1708 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects <= 1.6.9.27 Patched in 1.6.9.29
- 2026-01-14 CVE-2025-12166 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects <= 1.6.9.9 Patched in 1.6.9.13
- 2025-06-13 CVE-2025-4667 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 1.6.8.30 Patched in 1.6.8.32
- 2025-03-12 CVE-2025-1119 Improper Control of Generation of Code ('Code Injection') Affects <= 1.6.8.5 Patched in 1.6.8.7
- 2025-03-06 CVE-2024-13431 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 1.6.8.3 Patched in 1.6.8.5
- Medium · 4.4 Appointment Booking Calendar <= - Authenticated (Admin+) Stored Cross-Site Scripting via Notification Settings ↗2024-10-15 CVE-2024-7877 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 1.6.7.53 Patched in 1.6.7.55
- 2024-10-15 CVE-2024-7876 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 1.6.7.53 Patched in 1.6.7.55
- 2024-08-23 CVE-2024-7129 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') Affects <= 1.6.7.42 Patched in 1.6.7.43
- 2024-05-15 CVE-2024-4288 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 1.6.7.14 Patched in 1.6.7.18
- 2024-03-26 CVE-2024-22311 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 1.6.6.20 Patched in 1.6.6.24
- 2024-03-20 CVE-2024-2342 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects <= 1.6.7.7 Patched in 1.6.7.9
- 2024-03-20 CVE-2024-2341 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects <= 1.6.7.7 Patched in 1.6.7.9
- Medium · 6.6 Simply Schedule Appointments <= 1.6.5.27 - Authenticated(Administrator+) SQL Injection ↗2023-12-21 CVE-2023-50851 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects < 1.6.6.1 Patched in 1.6.6.1
- Medium · 5.5 Simply Schedule Appointments <= 1.5.7.5 - Authenticated (Admin+) Stored Cross-Site Scripting ↗2022-08-08 CVE-2022-2374 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 1.5.7.5 Patched in 1.5.7.7
- Medium · 5.3 Simply Schedule Appointments <= 1.5.7.5 - Unauthenticated Sensitive Information Exposure ↗2022-08-08 CVE-2022-2373 Exposure of Sensitive Information to an Unauthorized Actor Affects <= 1.5.7.5 Patched in 1.5.7.7
Vulnerability records provided by Wordfence Intelligence. Copyright 2012-2026 Defiant Inc. License and terms.
CVE records: Copyright 1999-2026 The MITRE Corporation. CVE terms of use.
Behavioral tests
via WP HiveAutomated install-time checks, tested on PHP 8.1.12 · WP 7.0.1
Languages
via translate.wordpress.orgTranslated into 31 languages, 9 at 90% or more
Plus 7 more locales with partial translations.
Growth timeline
Install-tier crossings we have observed, and how long each tier took to outgrow
- 2026-08-17 60K+ → 50K+ down after 203 days in tier
- 2026-01-26 70K+ → 60K+ down after 98 days in tier
- 2025-10-20 60K+ → 70K+ up after 192 days in tier
- 2025-04-11 50K+ → 60K+ up after 123 days in tier
- 2024-12-09 40K+ → 50K+ up after 151 days in tier
- 2024-07-11 30K+ → 40K+ up after 163 days in tier
- 2024-01-30 20K+ → 30K+ up after 469 days in tier
- 2022-10-18 10K+ → 20K+ up
Competes with
The plugins that solve the same job, ranked by shared tags then reach, closest match first. The letter on the right is each plugin's health grade (A best, F worst).
-
Appointment Booking Plugin – LatePoint | Calendar & Scheduling for WordPress 100K+ installs · 4.8★ · 5 shared tags A
-
Advanced Appointment Booking & Scheduling 3K+ installs · 3.6★ · 5 shared tags B -
Bookify – Appointment Booking & Scheduling for WordPress 10+ installs · 3.6★ · 5 shared tags B -
Online Scheduling and Appointment Booking System – Bookly 60K+ installs · 4.4★ · 4 shared tags A -
Fluent Booking – The Ultimate Appointments Scheduling, Events Booking, Events Calendar Solution 20K+ installs · 4.5★ · 4 shared tags A
-
WPS Bookings for WooCommerce 3K+ installs · 4.3★ · 4 shared tags A
Embed this report card
Drop a live Pulse card for Simply Schedule Appointments into a readme, a review or a deck. It updates itself.
<iframe src="https://plugins.wpmayor.com/embed/simply-schedule-appointments" width="480" height="300" style="border:0" loading="lazy" title="Simply Schedule Appointments — Plugin Pulse"></iframe> Simply Schedule Appointments: 50K+ active installs, 5.0★ (155 reviews). Plugin Pulse (WP Mayor), as of 2026-08-25. https://plugins.wpmayor.com/plugin/simply-schedule-appointments