
AffiliateWP – Allowed Products Security & Risk Analysis
wordpress.org/plugins/affiliatewp-allowed-productsAllows only specific products to generate commission in AffiliateWP.
Is AffiliateWP – Allowed Products Safe to Use in 2026?
Generally Safe
Score 100/100AffiliateWP – Allowed Products has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The static analysis of affiliatewp-allowed-products v1.3.0 reveals an exceptionally small attack surface, with no identified AJAX handlers, REST API routes, shortcodes, or cron events. This is a strong positive indicator for security as it limits potential entry points for attackers. Furthermore, the plugin demonstrates good practices by using prepared statements for all SQL queries and avoiding file operations or external HTTP requests. However, a significant concern is the low percentage of properly escaped output (40%), indicating a risk of Cross-Site Scripting (XSS) vulnerabilities if user-supplied data is rendered without sufficient sanitization. The absence of any reported vulnerabilities in its history is also a positive sign, suggesting a well-maintained or less targeted plugin.
Key Concerns
- Low output escaping rate
AffiliateWP – Allowed Products Security Vulnerabilities
AffiliateWP – Allowed Products Code Analysis
Output Escaping
AffiliateWP – Allowed Products Attack Surface
WordPress Hooks 9
Maintenance & Trust
AffiliateWP – Allowed Products Maintenance & Trust
Maintenance Signals
Community Trust
AffiliateWP – Allowed Products Alternatives
AffiliateWP – Affiliate Product Rates
affiliatewp-affiliate-product-rates
Allows you to set product referral rates on a per-affiliate level in AffiliateWP.
Bulk Edit Posts and Products in Spreadsheet
wp-sheet-editor-bulk-spreadsheet-editor-for-posts-and-pages
Modern Bulk Editor for Posts and Pages, create and edit hundreds of posts at once in a spreadsheet inside wp-admin. Search and quick edits.
AffiliateWP – WooCommerce Redirect Affiliates
affiliatewp-woocommerce-redirect-affiliates
Redirect affiliates to their affiliate area when they login via WooCommerce's /my-account page
Cart Lift – Abandoned Cart Recovery for WooCommerce and EDD
cart-lift
Track abandoned carts and send automated, customizable abandoned cart recovery emails. Get more leads, reduce cart abandonment, and increase revenue.
AffiliateWP – Store Credit
affiliatewp-store-credit
Pay AffiliateWP referrals as store credit.
AffiliateWP – Allowed Products Developer Profile
94 plugins · 23.5M total installs
How We Detect AffiliateWP – Allowed Products
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/affiliatewp-allowed-products/includes/lib/affwp/class-affiliatewp-requirements-check-v1-1.php/wp-content/plugins/affiliatewp-allowed-products/includes/class-affiliatewp-allowed-products.php/wp-content/plugins/affiliatewp-allowed-products/includes/lib/affwp/class-affiliatewp-activation.phpHTML / DOM Fingerprints
affiliatewp-allowed-products-requirementsdata-affiliatewp-allowed-productsaffwp_allowed_products_supported_integrationsaffwp_allowed_products_get_products