Abandoned Checkout Recovery & Order Notifications for WooCommerce Security & Risk Analysis

wordpress.org/plugins/abandoned-checkout-recovery-order-notifications-for-woocommerce

Send WhatsApp notifications for recovering abandoned carts, double confirming CoD orders and for other order & shipment updates! Also, send out yo …

800 active installs v2.0.0 PHP 7.4+ WP 6.0.1+ Updated Jul 22, 2025
abandoned-cartwhatsappwhatsapp-apiwhatsapp-businesswhatsapp-chat
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Abandoned Checkout Recovery & Order Notifications for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

Abandoned Checkout Recovery & Order Notifications for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 9mo ago
Risk Assessment

This plugin exhibits a generally good security posture, with strong adherence to best practices in output escaping and a lack of critical vulnerabilities in its historical data. The static analysis reveals a relatively small attack surface with a high percentage of properly escaped outputs and the use of prepared statements for most SQL queries. The absence of dangerous functions and any recorded vulnerabilities further contribute to its positive security profile.

However, there are a few areas that warrant attention. The presence of an unprotected REST API route represents a potential entry point that could be exploited if not properly secured by the application layer. While taint analysis did not reveal critical issues, the limited number of flows analyzed and the presence of file operations and external HTTP requests suggest a need for continued vigilance in sanitizing inputs that could influence these operations. The plugin's strengths lie in its robust output escaping and clean vulnerability history, but the unprotected REST API route is a notable weakness that could be a target for unauthorized access or manipulation.

Key Concerns

  • REST API route without permission callbacks
Vulnerabilities
None known

Abandoned Checkout Recovery & Order Notifications for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Abandoned Checkout Recovery & Order Notifications for WooCommerce Release Timeline

v2.0.0Current
v1.0.3
v1.0.2
v1.0.1
v1.0.0
Code Analysis
Analyzed Mar 16, 2026

Abandoned Checkout Recovery & Order Notifications for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
4
5 prepared
Unescaped Output
6
111 escaped
Nonce Checks
3
Capability Checks
2
File Operations
3
External Requests
5
Bundled Libraries
1

Bundled Libraries

Select2

SQL Query Safety

56% prepared9 total queries

Output Escaping

95% escaped117 total outputs
Data Flows · Security
All sanitized

Data Flow Analysis

2 flows
<class-intrkt-cod> (includes\class-intrkt-cod.php:0)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
1 unprotected

Abandoned Checkout Recovery & Order Notifications for WooCommerce Attack Surface

Entry Points5
Unprotected1

AJAX Handlers 4

authwp_ajax_intrkt_cod_actionincludes\class-intrkt-cod.php:40
noprivwp_ajax_intrkt_cod_actionincludes\class-intrkt-cod.php:41
authwp_ajax_intrkt_save_settingincludes\class-intrktsetting.php:34
authwp_ajax_intrkt_disconnect_oauthincludes\class-intrktsetting.php:35

REST API Routes 1

GET/wp-json/intrkt/v1oauthincludes\class-intrkt-api.php:44
WordPress Hooks 20
actionrest_api_initincludes\class-intrkt-api.php:37
actionwoocommerce_order_status_changedincludes\class-intrkt-api.php:38
actionintrkt_refresh_apiincludes\class-intrkt-api.php:39
actionintrkt_refresh_call_retryincludes\class-intrkt-api.php:40
actionwoocommerce_thankyou_codincludes\class-intrkt-cod.php:37
actionwoocommerce_order_details_after_order_tableincludes\class-intrkt-cod.php:38
actionwp_enqueue_scriptsincludes\class-intrkt-cod.php:39
filtermanage_edit-shop_order_columnsincludes\class-intrkt-cod.php:42
filtermanage_woocommerce_page_wc-orders_columnsincludes\class-intrkt-cod.php:43
actionmanage_shop_order_posts_custom_columnincludes\class-intrkt-cod.php:44
actionmanage_woocommerce_page_wc-orders_custom_columnincludes\class-intrkt-cod.php:45
actionplugins_loadedincludes\class-intrkt-loader.php:66
actionadmin_initincludes\class-intrkt-loader.php:69
actionbefore_woocommerce_initincludes\class-intrkt-loader.php:71
actionadmin_noticesincludes\class-intrkt-loader.php:116
actionadmin_noticesincludes\class-intrkt-loader.php:120
actionadmin_noticesincludes\class-intrkt-loader.php:125
actionadmin_menuincludes\class-intrktsetting.php:33
actionadmin_enqueue_scriptsincludes\class-intrktsetting.php:37
actionadmin_enqueue_scriptsincludes\class-intrktsetting.php:39

Scheduled Events 2

intrkt_refresh_api
intrkt_refresh_call_retry
Maintenance & Trust

Abandoned Checkout Recovery & Order Notifications for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedJul 22, 2025
PHP min version7.4
Downloads12K

Community Trust

Rating78/100
Number of ratings7
Active installs800
Developer Profile

Abandoned Checkout Recovery & Order Notifications for WooCommerce Developer Profile

saandhyg

1 plugin · 800 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Abandoned Checkout Recovery & Order Notifications for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/abandoned-checkout-recovery-order-notifications-for-woocommerce/public/js/intrkt-cod.js/wp-content/plugins/abandoned-checkout-recovery-order-notifications-for-woocommerce/public/css/intrkt-cod.css
Script Paths
wp-content/plugins/abandoned-checkout-recovery-order-notifications-for-woocommerce/public/js/intrkt-cod.js
Version Parameters
abandoned-checkout-recovery-order-notifications-for-woocommerce/public/js/intrkt-cod.js?ver=abandoned-checkout-recovery-order-notifications-for-woocommerce/public/css/intrkt-cod.css?ver=

HTML / DOM Fingerprints

CSS Classes
intrkt-cod-confirm-wrapintrkt_confirm-actionintrkt_cod_action
Data Attributes
intrkt_is_confirmedintrkt_confirm_statusintrkt_cod_actionintrkt_action_cancelintrkt_action_confirmintrkt_confirmation_status+1 more
JS Globals
intrktCodVars
FAQ

Frequently Asked Questions about Abandoned Checkout Recovery & Order Notifications for WooCommerce