All Signs Options Free Security & Risk Analysis

wordpress.org/plugins/all-signs-options-free

Allow WooCommerce stores to sell customizable signs with dynamic product options and a simple, user-friendly configuration interface.

0 active installs v1.2 PHP 7.0+ WP 5.0+ Updated Jan 17, 2026
product-configuratorproduct-customizersign-buildersign-productwoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is All Signs Options Free Safe to Use in 2026?

Generally Safe

Score 100/100

All Signs Options Free has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The 'all-signs-options-free' v1.2 plugin demonstrates a generally strong security posture based on the provided static analysis. The plugin appears to follow good security practices by not utilizing dangerous functions, employing prepared statements for all SQL queries, and properly escaping a high percentage of its output. Furthermore, it incorporates nonce and capability checks for its identified entry points. The absence of any recorded vulnerabilities in its history further suggests a well-maintained and secure codebase.

While the static analysis shows no critical or high-severity issues like unsanitized taint flows or raw SQL queries, there are minor areas for potential improvement. The presence of file operations and external HTTP requests, while not inherently insecure, warrants careful review to ensure these operations are handled with utmost security. Similarly, the relatively low number of nonce and capability checks (3 each) compared to the total entry points (5) could be a point of concern if the nature of the AJAX handlers or shortcode execution allows for privileged actions without sufficient authorization.

Overall, the plugin is assessed as having a low risk profile. Its diligent use of prepared statements and output escaping, coupled with a clean vulnerability history, are significant strengths. The identified areas for minor scrutiny do not present immediate high-risk vulnerabilities but represent opportunities for hardening the plugin's security further by ensuring all external interactions and entry points are robustly protected.

Key Concerns

  • Low number of nonce/capability checks vs entry points
  • Potential risk from file operations
  • Potential risk from external HTTP requests
Vulnerabilities
None known

All Signs Options Free Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

All Signs Options Free Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
13
272 escaped
Nonce Checks
3
Capability Checks
3
File Operations
9
External Requests
2
Bundled Libraries
0

Output Escaping

95% escaped285 total outputs
Attack Surface

All Signs Options Free Attack Surface

Entry Points5
Unprotected0

AJAX Handlers 4

authwp_ajax_asowp_generate_order_zip_fileincludes\asowp-design.php:24
noprivwp_ajax_asowp_generate_order_zip_fileincludes\asowp-design.php:25
authwp_ajax_asowp_add_custom_design_to_cartincludes\Functions.php:237
noprivwp_ajax_asowp_add_custom_design_to_cartincludes\Functions.php:238

Shortcodes 1

[asowp-configurator] includes\Frontend.php:14
WordPress Hooks 42
actionadmin_initall-signs-options-free.php:92
filterplugin_action_linksall-signs-options-free.php:93
actionplugins_loadedall-signs-options-free.php:94
actionadmin_noticesall-signs-options-free.php:95
actionadmin_noticesall-signs-options-free.php:96
actionadmin_noticesall-signs-options-free.php:98
actioninitall-signs-options-free.php:391
actioninitall-signs-options-free.php:398
actionadmin_menuincludes\Admin.php:12
filterupload_mimesincludes\Admin.php:13
filterwp_check_filetype_and_extincludes\Admin.php:14
actionadmin_enqueue_scriptsincludes\Admin.php:55
actionrest_api_initincludes\Api.php:36
actionwoocommerce_before_calculate_totalsincludes\asowp-design.php:16
filterwoocommerce_cart_item_thumbnailincludes\asowp-design.php:17
actionwoocommerce_after_cart_item_nameincludes\asowp-design.php:18
filterwoocommerce_get_item_dataincludes\asowp-design.php:19
actionwoocommerce_after_order_itemmetaincludes\asowp-design.php:22
actionwoocommerce_checkout_create_order_line_itemincludes\asowp-design.php:23
filterwoocommerce_email_attachmentsincludes\asowp-design.php:29
actionwoocommerce_order_item_meta_endincludes\asowp-design.php:30
actioninitincludes\asowp-post-type.php:7
actioninitincludes\asowp-post-type.php:8
actioninitincludes\asowp-post-type.php:9
filterthe_contentincludes\asowp-post-type.php:11
filterinitincludes\asowp-post-type.php:12
filterquery_varsincludes\asowp-post-type.php:13
actiontemplate_redirectincludes\asowp-post-type.php:14
actionwoocommerce_product_options_general_product_dataincludes\asowp-product-config.php:50
actionwoocommerce_product_after_variable_attributesincludes\asowp-product-config.php:51
actionwoocommerce_save_product_variationincludes\asowp-product-config.php:52
actionsave_post_productincludes\asowp-product-config.php:53
filtermanage_edit-product_columnsincludes\asowp-product-config.php:54
actionmanage_product_posts_custom_columnincludes\asowp-product-config.php:55
actionwoocommerce_after_add_to_cart_buttonincludes\asowp-product-config.php:56
actionwoocommerce_after_add_to_cart_buttonincludes\asowp-product-config.php:57
filterwoocommerce_loop_add_to_cart_linkincludes\asowp-product-config.php:58
actionwoocommerce_single_product_summaryincludes\asowp-product-config.php:59
actionwoocommerce_cart_item_removedincludes\asowp-product-config.php:60
actionwp_footerincludes\asowp-product-config.php:571
actionadmin_enqueue_scriptsincludes\Assets.php:14
actionwp_enqueue_scriptsincludes\Assets.php:16
Maintenance & Trust

All Signs Options Free Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedJan 17, 2026
PHP min version7.0
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

All Signs Options Free Developer Profile

vertim

3 plugins · 100 total installs

89
trust score
Avg Security Score
84/100
Avg Patch Time
5 days
View full developer profile
Detection Fingerprints

How We Detect All Signs Options Free

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/all-signs-options-free/assets/css/admin-style.css/wp-content/plugins/all-signs-options-free/assets/css/asowp-style.css/wp-content/plugins/all-signs-options-free/assets/css/customizer.css/wp-content/plugins/all-signs-options-free/assets/js/admin-script.js/wp-content/plugins/all-signs-options-free/assets/js/customizer.js/wp-content/plugins/all-signs-options-free/assets/js/customizer-vendors.js
Version Parameters
all-signs-options-free/assets/css/admin-style.css?ver=all-signs-options-free/assets/css/asowp-style.css?ver=all-signs-options-free/assets/css/customizer.css?ver=all-signs-options-free/assets/js/admin-script.js?ver=all-signs-options-free/assets/js/customizer.js?ver=all-signs-options-free/assets/js/customizer-vendors.js?ver=

HTML / DOM Fingerprints

CSS Classes
asowp-admin-noticeasowp-woocommerce-inactive-noticeasowp-config-page-noticeasowp-permalink-noticeasowp-product-design-buttonasowp-product-template-buttonasowp-template-add-to-cart-buttonasowp-template-design-button
HTML Comments
Copyright (c) 2023 Vertim Coders. All rights reserved.Released under the GPL licenseThis program is free software; you can redistribute and/or modify it under the terms of the GNU General Public License as published by the Free Software Foundation; either version 2 of the License, or (at your option) any later version.This program is distributed in the hope that it will be useful, but WITHOUT ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU General Public License for more details.+13 more
Data Attributes
data-asowp-configurator-pagedata-asowp-template-pagedata-asowp-product-design-button-textdata-asowp-product-template-button-textdata-asowp-template-add-to-cart-button-textdata-asowp-template-design-button-text+3 more
JS Globals
ASOWP_VERSIONASOWP_IDASOWP_FILEASOWP_PATHASOWP_INCLUDESASOWP_URL+11 more
FAQ

Frequently Asked Questions about All Signs Options Free