
AdRoll for WooCommerce Stores Security & Risk Analysis
wordpress.org/plugins/adroll-for-woocommerce-stores-devConnect your WooCommerce store to AdRoll and run display, social media, and email campaigns — all on one platform.
Is AdRoll for WooCommerce Stores Safe to Use in 2026?
Generally Safe
Score 92/100AdRoll for WooCommerce Stores has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "adroll-for-woocommerce-stores-dev" plugin v2.3.1 exhibits a mixed security posture. On the positive side, it demonstrates good practices regarding SQL queries, utilizing prepared statements exclusively, and there is no known vulnerability history, which is a strong indicator of ongoing security diligence. The absence of dangerous functions and file operations also contributes to a generally stable foundation. However, significant concerns arise from the static analysis. The plugin has a single REST API route that lacks permission callbacks, creating an unprotected entry point. Furthermore, a concerning 75% of output escaping is not properly handled, presenting a risk of cross-site scripting (XSS) vulnerabilities, especially when combined with unsanitized path taint flows. While no critical or high severity taint issues were identified, the presence of unsanitized paths is a red flag that warrants attention. The complete absence of nonce and capability checks on this unprotected entry point amplifies the risk associated with the unescaped outputs.
Key Concerns
- Unprotected REST API route
- Significant unescaped output
- Unsanitized path taint flows
- Missing capability checks
- Missing nonce checks
AdRoll for WooCommerce Stores Security Vulnerabilities
AdRoll for WooCommerce Stores Release Timeline
AdRoll for WooCommerce Stores Code Analysis
Output Escaping
Data Flow Analysis
AdRoll for WooCommerce Stores Attack Surface
REST API Routes 1
WordPress Hooks 14
Maintenance & Trust
AdRoll for WooCommerce Stores Maintenance & Trust
Maintenance Signals
Community Trust
AdRoll for WooCommerce Stores Alternatives
Rontar Blog Retargeting
rontar-blog-retargeting
Convert your one-time visitors into subscribers. Rontar blog feed and retargeting pixel easy integration.
Rontar Dynamic Retargeting for WooCommerce
rontar-dynamic-retargeting-for-woocommerce
Turn visitors into customers. Rontar product feed and retargeting pixel easy integration.
CallTrackingMetrics
call-tracking-metrics
CallTrackingMetrics integrates with your WordPress site to provide powerful call tracking and attribution.
Dynamic Remarketing for Google Ads and WooCommerce
woocommerce-google-dynamic-retargeting-tag
This plugin integrates the Google Ads Dynamic Remarketing Tracking pixel with customized ecommerce variables in a WooCommerce shop.
LexonAds: Free Ad Network – Boost Traffic & Get More Visitors
martins-free-and-easy-ad-network-get-more-visitors
The 100% free alternative to Google Ads and Facebook Ads. Join our global ad exchange network to get more website visitors and boost your visibility a …
AdRoll for WooCommerce Stores Developer Profile
1 plugin · 600 total installs
How We Detect AdRoll for WooCommerce Stores
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/adroll-for-woocommerce-stores-dev/pixel.js/wp-content/plugins/adroll-for-woocommerce-stores-dev/admin.js/wp-content/plugins/adroll-for-woocommerce-stores-dev/notice.js/wp-content/plugins/adroll-for-woocommerce-stores-dev/style.css/wp-content/plugins/adroll-for-woocommerce-stores-dev/admin.csshttps://app.adroll.com/js/adroll_conversion_pixel_init.min.jsadroll-for-woocommerce-stores-dev/style.css?ver=adroll-for-woocommerce-stores-dev/admin.js?ver=adroll-for-woocommerce-stores-dev/pixel.js?ver=adroll-for-woocommerce-stores-dev/notice.js?ver=adroll-for-woocommerce-stores-dev/admin.css?ver=HTML / DOM Fingerprints
adroll-notice-dismissadroll-settings-admin-page<!-- Begin AdRoll Pixel --><!-- End AdRoll Pixel --><!-- AdRoll Admin Notice --><!-- AdRoll Settings -->+2 moredata-adroll-account-iddata-adroll-pixel-idadroll_pixel_dataadroll_conversion_pixeladroll_conversion_pixel_init/wp-json/adroll/v1/configure