
Additional Charges on WC Checkout Security & Risk Analysis
wordpress.org/plugins/additional-charges-on-wc-checkoutAdditional Charges on WC Checkout allow administrators to add custom fees to a customer's order total conditionally and easily.
Is Additional Charges on WC Checkout Safe to Use in 2026?
Generally Safe
Score 92/100Additional Charges on WC Checkout has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "additional-charges-on-wc-checkout" v2.0.0 demonstrates a strong security posture based on the provided static analysis. The absence of any identified dangerous functions, raw SQL queries, unescaped output, file operations, external HTTP requests, or critical taint flows is highly commendable. Furthermore, the plugin utilizes prepared statements for all its SQL queries and properly escapes all its output, indicating good secure coding practices.
While the static analysis reveals an exceptionally clean codebase with no immediate exploitable vulnerabilities, the lack of any recorded vulnerability history, including past CVEs, might indicate either a consistently secure development or a lack of thorough past security audits. The presence of only one capability check and zero nonce checks on its zero AJAX handlers and zero REST API routes suggests that the plugin either doesn't require extensive user interaction that would necessitate these security measures, or that these protections might be missing if the attack surface is larger than indicated. Overall, the plugin appears very secure in its current version, with its primary potential weakness being the limited insight into its historical security landscape and the complete absence of nonce checks which are a standard security practice for AJAX handlers.
In conclusion, "additional-charges-on-wc-checkout" v2.0.0 is currently a very secure plugin, with no apparent exploitable flaws detected in static analysis or vulnerability history. The strict adherence to prepared statements and output escaping are significant strengths. However, the complete absence of nonce checks, even with a zero-entry point AJAX/REST API surface, warrants a minor note of caution, as it's a standard security layer that is missing. The clean history is positive, but does not guarantee future security.
Key Concerns
- No nonce checks detected
Additional Charges on WC Checkout Security Vulnerabilities
Additional Charges on WC Checkout Code Analysis
Output Escaping
Additional Charges on WC Checkout Attack Surface
WordPress Hooks 5
Maintenance & Trust
Additional Charges on WC Checkout Maintenance & Trust
Maintenance Signals
Community Trust
Additional Charges on WC Checkout Alternatives
TT Extra Fee Option for WooCommerce
woocommerce-extra-fee-option
A WooCommerce plugin that add an extra fee to customer order based on conditions.
PiWeb Conditional cart fee / Extra charge rule for WooCommerce
conditional-extra-fees-for-woocommerce
Add conditional cart fee / Payment processing fee / Extra cost / Extra fees plugin for WooCommerce / Additional fees / Service charge at checkout for …
Minimum order for WooCommerce
pedido-minimo-for-woocommerce
Set a minimum order amount in your WooCommerce store to be able to check out. Simple, lightweight, and effective.
Product Filter for WooCommerce by WBW
woo-product-filter
Filter products by categories, attributes, prices, and more. Elementor Compatibility. Shoppers easily find products with WooCommerce Product Filter
Klarna for WooCommerce
klarna-payments-for-woocommerce
Grow your business for increased sales and enhanced shopping experiences at no extra costs.
Additional Charges on WC Checkout Developer Profile
1 plugin · 0 total installs
How We Detect Additional Charges on WC Checkout
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.