
ALF Disable Product for Woocommerce Security & Risk Analysis
wordpress.org/plugins/alf-disable-product-for-woocommerceSimple plugin to Disable Woocommerce Single Product (or by Category) on a span of Dates. Plugin is Translatable ready via PoEdit
Is ALF Disable Product for Woocommerce Safe to Use in 2026?
Generally Safe
Score 85/100ALF Disable Product for Woocommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'alf-disable-product-for-woocommerce' plugin version 1.0.0 exhibits a strong security posture based on the provided static analysis. The absence of detectable AJAX handlers, REST API routes, shortcodes, or cron events significantly limits the plugin's attack surface. Furthermore, the code signals indicate good practices with no dangerous functions identified and all SQL queries utilizing prepared statements. The lack of file operations and external HTTP requests further mitigates potential risks.
Despite these strengths, a critical concern arises from the very low percentage of properly escaped output (9%). This suggests a high likelihood of cross-site scripting (XSS) vulnerabilities, where user-supplied data could be injected into the output and executed by a user's browser. While taint analysis did not report any flows, this could be due to the limited scope of analysis or the nature of the plugin's functionality not involving complex data flows. The plugin's vulnerability history is clean, showing no known CVEs, which is a positive indicator. However, the identified output escaping issue remains a significant security concern.
In conclusion, the plugin demonstrates good security engineering by minimizing its attack surface and avoiding risky functions. The clean vulnerability history is commendable. However, the prevalent lack of output escaping is a major weakness that demands immediate attention to prevent potential XSS attacks. Addressing this specific issue would significantly improve the plugin's overall security.
Key Concerns
- Low output escaping percentage
ALF Disable Product for Woocommerce Security Vulnerabilities
ALF Disable Product for Woocommerce Release Timeline
ALF Disable Product for Woocommerce Code Analysis
Output Escaping
ALF Disable Product for Woocommerce Attack Surface
WordPress Hooks 21
Maintenance & Trust
ALF Disable Product for Woocommerce Maintenance & Trust
Maintenance Signals
Community Trust
ALF Disable Product for Woocommerce Alternatives
Product Import Export for WooCommerce – Import Export Product CSV Suite
product-import-export-for-woo
Easily import/export WooCommerce products (simple, grouped, external/affiliate) via CSV. Transfer product data, including images, reviews, categories, …
WP All Import – Product Import for WooCommerce
woocommerce-xml-csv-product-import
Drag & drop to import products from any CSV, XML, Excel, or Google Sheets file. Supports variations, images, attributes, brands, and more with pow …
WP All Export – Product Export Add-On for WooCommerce
product-export-for-woocommerce
Drag & drop to export products to CSV, Excel, or XML files of any format. Supports variations, images, attributes, brands, and more with powerful …
Products Per Page for WooCommerce
woocommerce-products-per-page
Products Per Page for WooCommerce is a easy-to-setup plugin that integrates a 'products per page' dropdown on your WooCommerce pages.
Export All Posts, Products, Orders, Refunds & Users
wp-ultimate-exporter
Export any WordPress website including WooCommerce data seamlessly with our powerful export plugin. Save records as CSV, XML, or Excel file for secure …
ALF Disable Product for Woocommerce Developer Profile
3 plugins · 0 total installs
How We Detect ALF Disable Product for Woocommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/alf-disable-product-for-woocommerce/admin/css/alf-disable-product-for-woocommerce-product-tab-data.css/wp-content/plugins/alf-disable-product-for-woocommerce/admin/js/alf-disable-product-for-woocommerce-product-tab-data.js/wp-content/plugins/alf-disable-product-for-woocommerce/includes/class-alf-disable-product-for-woocommerce-activator.php/wp-content/plugins/alf-disable-product-for-woocommerce/includes/class-alf-disable-product-for-woocommerce-deactivator.php/wp-content/plugins/alf-disable-product-for-woocommerce/includes/class-alf-disable-product-for-woocommerce.phpalf-disable-product-for-woocommerce/admin/css/alf-disable-product-for-woocommerce-product-tab-data.css?ver=alf-disable-product-for-woocommerce/admin/js/alf-disable-product-for-woocommerce-product-tab-data.js?ver=HTML / DOM Fingerprints
id="alf-disable-purchase"