Alpha Insights – Profit Intelligence & Analytics for WooCommerce Security & Risk Analysis

wordpress.org/plugins/alpha-insights-sales-report-builder-analytics-for-woocommerce

WooCommerce reporting plugin for profit & loss, cost of goods (COGS), ad spend, ROI and custom sales reports.

0 active installs v1.4.0 PHP 7.4+ WP 5.0+ Updated Mar 14, 2026
woocommerce-analyticswoocommerce-cost-of-goodswoocommerce-profitwoocommerce-reportingwoocommerce-sales-reports
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Alpha Insights – Profit Intelligence & Analytics for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

Alpha Insights – Profit Intelligence & Analytics for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 19d ago
Risk Assessment

This plugin demonstrates a generally good security posture with a strong emphasis on prepared statements for SQL queries and proper output escaping, indicating awareness of common web vulnerabilities. The absence of known CVEs and consistently secure coding practices in these areas are positive indicators. However, a significant concern arises from the considerable attack surface presented by 43 AJAX handlers, with a concerning 20 of them lacking any authentication checks. Furthermore, the taint analysis revealed 16 flows with unsanitized paths, including 5 of high severity, suggesting potential for attackers to manipulate application logic or data through user-supplied input that isn't adequately validated or sanitized. While the plugin has no historical vulnerabilities, the current findings in the taint analysis and the large number of unprotected AJAX endpoints present tangible risks that require immediate attention.

Key Concerns

  • Unprotected AJAX handlers
  • High severity taint flows
  • Unsanitized paths in taint flows
Vulnerabilities
None known

Alpha Insights – Profit Intelligence & Analytics for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Alpha Insights – Profit Intelligence & Analytics for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
8
210 prepared
Unescaped Output
9
1043 escaped
Nonce Checks
28
Capability Checks
11
File Operations
18
External Requests
1
Bundled Libraries
0

SQL Query Safety

96% prepared218 total queries

Output Escaping

99% escaped1052 total outputs
Data Flows
16 unsanitized

Data Flow Analysis

23 flows16 with unsanitized paths
output_report (includes\classes\WPDAI_Report_Builder.php:67)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
20 unprotected

Alpha Insights – Profit Intelligence & Analytics for WooCommerce Attack Surface

Entry Points45
Unprotected20

AJAX Handlers 43

authwp_ajax_wpd_get_all_third_level_menusincludes\classes\WPDAI_Admin_Menu.php:56
authwp_ajax_wpd_get_cogs_productsincludes\classes\WPDAI_Cost_Of_Goods_Manager.php:20
authwp_ajax_wpd_update_product_costincludes\classes\WPDAI_Cost_Of_Goods_Manager.php:21
authwp_ajax_wpd_export_cogs_csvincludes\classes\WPDAI_Cost_Of_Goods_Manager.php:22
authwp_ajax_wpd_import_product_costincludes\classes\WPDAI_Cost_Of_Goods_Manager.php:23
authwp_ajax_wpd_get_migration_countincludes\classes\WPDAI_Cost_Of_Goods_Manager.php:24
authwp_ajax_wpd_migrate_cogs_dataincludes\classes\WPDAI_Cost_Of_Goods_Manager.php:25
authwp_ajax_wpd_get_available_meta_keysincludes\classes\WPDAI_Cost_Of_Goods_Manager.php:26
authwp_ajax_wpd_get_data_management_countsincludes\classes\WPDAI_Data_Manager.php:2004
authwp_ajax_wpd_delete_entityincludes\classes\WPDAI_Data_Manager.php:2005
authwp_ajax_wpd_delete_tableincludes\classes\WPDAI_Data_Manager.php:2006
authwp_ajax_wpd_truncate_tableincludes\classes\WPDAI_Data_Manager.php:2007
authwp_ajax_wpd_truncate_all_tablesincludes\classes\WPDAI_Data_Manager.php:2008
authwp_ajax_wpd_delete_meta_keyincludes\classes\WPDAI_Data_Manager.php:2009
authwp_ajax_wpd_delete_single_itemincludes\classes\WPDAI_Data_Manager.php:2010
authwp_ajax_wpd_delete_scheduled_taskincludes\classes\WPDAI_Data_Manager.php:2011
authwp_ajax_wpd_delete_post_type_metaincludes\classes\WPDAI_Data_Manager.php:2012
authwp_ajax_wpd_run_migrationincludes\classes\WPDAI_Migration.php:71
authwp_ajax_wpd_get_live_dashboard_dataincludes\classes\WPDAI_Report_Builder.php:274
authwp_ajax_wpd_get_available_reportsincludes\classes\WPDAI_Report_Builder.php:275
authwp_ajax_wpd_create_reportincludes\classes\WPDAI_Report_Builder.php:276
authwp_ajax_wpd_update_reportincludes\classes\WPDAI_Report_Builder.php:277
authwp_ajax_wpd_delete_reportincludes\classes\WPDAI_Report_Builder.php:278
authwp_ajax_wpd_get_default_reportsincludes\classes\WPDAI_Report_Builder.php:279
authwp_ajax_wpd_import_default_reportincludes\classes\WPDAI_Report_Builder.php:280
authwp_ajax_wpd_reset_default_reportincludes\classes\WPDAI_Report_Builder.php:281
authwp_ajax_wpd_save_report_configincludes\classes\WPDAI_Report_Builder.php:282
authwp_ajax_wpd_import_all_default_reportsincludes\classes\WPDAI_Report_Builder.php:283
authwp_ajax_wpd_import_json_reportincludes\classes\WPDAI_Report_Builder.php:284
authwp_ajax_wpd_get_uncached_order_countincludes\classes\WPDAI_Report_Builder.php:285
authwp_ajax_wpd_build_order_cache_batchincludes\classes\WPDAI_Report_Builder.php:286
authwp_ajax_wpd_mark_cache_completeincludes\classes\WPDAI_Report_Builder.php:287
authwp_ajax_wpd_webhook_export_manualincludes\integrations\providers\wpdavies\webhooks\WPDAI_Webhook_Provider.php:114
authwp_ajax_wpd_reset_order_metaincludes\wpd-ajax.php:68
authwp_ajax_wpd_delete_order_line_item_cogsincludes\wpd-ajax.php:104
authwp_ajax_wpd_delete_all_cacheincludes\wpd-ajax.php:142
authwp_ajax_wpd_export_inventory_to_csvincludes\wpd-ajax.php:176
authwp_ajax_wpd_export_react_report_to_pdfincludes\wpd-ajax.php:195
authwp_ajax_wpd_send_emailincludes\wpd-ajax.php:241
authwp_ajax_wpd-update_db_manuallyincludes\wpd-ajax.php:284
authwp_ajax_wpd_delete_logincludes\wpd-ajax.php:324
authwp_ajax_wpd_load_documentationincludes\wpd-ajax.php:379
authwp_ajax_wpd_save_getting_started_settingsincludes\wpd-ajax.php:527

REST API Routes 2

POST/wp-json/alpha-insights/v1/dashboard-dataincludes\classes\WPDAI_Reporting_API.php:21
GET/wp-json/alpha-insights/v1/realtime-dataincludes\classes\WPDAI_Reporting_API.php:39
WordPress Hooks 80
actionadmin_initincludes\admin\wpd-settings.php:23
actionadmin_noticesincludes\admin\wpd-settings.php:198
actioninitincludes\classes\WPDAI_Action_Scheduler.php:29
actionwpd_schedule_emailsincludes\classes\WPDAI_Action_Scheduler.php:32
actionwpd_schedule_log_cleanupincludes\classes\WPDAI_Action_Scheduler.php:33
actionwpd_schedule_analytics_db_cleanupincludes\classes\WPDAI_Action_Scheduler.php:34
actionwpd_schedule_database_upgradeincludes\classes\WPDAI_Action_Scheduler.php:35
actionwpd_schedule_product_analytics_collectorincludes\classes\WPDAI_Action_Scheduler.php:36
actionwpd_schedule_customer_analytics_collectorincludes\classes\WPDAI_Action_Scheduler.php:37
actionwpd_schedule_order_calculation_cache_collectorincludes\classes\WPDAI_Action_Scheduler.php:38
actionwpd_schedule_analytics_table_object_id_checkincludes\classes\WPDAI_Action_Scheduler.php:39
actionadmin_menuincludes\classes\WPDAI_Admin_Menu.php:47
actionadmin_noticesincludes\classes\WPDAI_Admin_Menu.php:50
actionadmin_enqueue_scriptsincludes\classes\WPDAI_Admin_Menu.php:53
actionwoocommerce_order_after_calculate_totalsincludes\classes\WPDAI_Core.php:34
actionwoocommerce_new_orderincludes\classes\WPDAI_Core.php:35
actionwoocommerce_update_orderincludes\classes\WPDAI_Core.php:36
filtermanage_edit-shop_order_columnsincludes\classes\WPDAI_Core.php:39
filtermanage_woocommerce_page_wc-orders_columnsincludes\classes\WPDAI_Core.php:40
actionmanage_shop_order_posts_custom_columnincludes\classes\WPDAI_Core.php:41
actionwoocommerce_shop_order_list_table_custom_columnincludes\classes\WPDAI_Core.php:42
actionadd_meta_boxesincludes\classes\WPDAI_Core.php:45
actionwoocommerce_admin_order_item_headersincludes\classes\WPDAI_Core.php:48
actionwoocommerce_admin_order_item_valuesincludes\classes\WPDAI_Core.php:49
actionwoocommerce_admin_order_totals_after_totalincludes\classes\WPDAI_Core.php:50
filterwoocommerce_hidden_order_itemmetaincludes\classes\WPDAI_Core.php:51
actionwoocommerce_after_order_itemmetaincludes\classes\WPDAI_Core.php:52
filterwoocommerce_product_data_tabsincludes\classes\WPDAI_Core.php:60
actionwoocommerce_product_data_panelsincludes\classes\WPDAI_Core.php:61
actionsave_post_productincludes\classes\WPDAI_Core.php:64
filtermanage_edit-product_columnsincludes\classes\WPDAI_Core.php:67
actionmanage_product_posts_custom_columnincludes\classes\WPDAI_Core.php:68
filtermanage_users_columnsincludes\classes\WPDAI_Core.php:76
filtermanage_users_custom_columnincludes\classes\WPDAI_Core.php:78
actionuser_registerincludes\classes\WPDAI_Core.php:81
actionwp_loginincludes\classes\WPDAI_Core.php:82
actionedit_user_profileincludes\classes\WPDAI_Core.php:85
actionshow_user_profileincludes\classes\WPDAI_Core.php:86
filterwpd_alpha_insights_register_data_sourcesincludes\classes\WPDAI_Custom_Data_Source_Base.php:49
filterwpd_alpha_insights_menu_itemsincludes\classes\WPDAI_Free_Loader.php:61
actionadmin_footerincludes\classes\WPDAI_Free_Loader.php:62
actionwpd_ai_migration_runnerincludes\classes\WPDAI_Migration.php:65
actionwpd_ai_migration_build_engaged_sessionsincludes\classes\WPDAI_Migration.php:68
actionrest_api_initincludes\classes\WPDAI_Reporting_API.php:20
actioncurrent_screenincludes\classes\WPDAI_Reviews.php:58
actionadmin_enqueue_scriptsincludes\classes\WPDAI_Reviews.php:59
actionadmin_footerincludes\classes\WPDAI_Reviews.php:60
actionwp_enqueue_scriptsincludes\classes\WPDAI_Woocommerce_Event_Tracking.php:59
actiontemplate_redirectincludes\classes\WPDAI_Woocommerce_Event_Tracking.php:72
actionwoocommerce_add_to_cartincludes\classes\WPDAI_Woocommerce_Event_Tracking.php:75
actionwoocommerce_thankyouincludes\classes\WPDAI_Woocommerce_Event_Tracking.php:78
actionwoocommerce_order_status_changedincludes\classes\WPDAI_Woocommerce_Event_Tracking.php:79
actionwoocommerce_order_status_changedincludes\classes\WPDAI_Woocommerce_Event_Tracking.php:80
actionwp_loginincludes\classes\WPDAI_Woocommerce_Event_Tracking.php:83
actionwoocommerce_customer_loginincludes\classes\WPDAI_Woocommerce_Event_Tracking.php:84
actionwp_logoutincludes\classes\WPDAI_Woocommerce_Event_Tracking.php:85
actionwoocommerce_created_customerincludes\classes\WPDAI_Woocommerce_Event_Tracking.php:88
actionwoocommerce_before_shop_loop_itemincludes\classes\WPDAI_Woocommerce_Event_Tracking.php:91
filterwoocommerce_post_classincludes\classes\WPDAI_Woocommerce_Event_Tracking.php:94
actionrest_api_initincludes\classes\WPDAI_Woocommerce_Event_Tracking.php:97
actionwp_mail_failedincludes\emails\wpd-email-functions.php:223
actionwpd_schedule_recurring_eventsincludes\integrations\providers\wpdavies\webhooks\WPDAI_Webhook_Provider.php:164
actioninitincludes\integrations\WPDAI_Integrations_Manager.php:75
actioninitincludes\integrations\WPDAI_Integrations_Manager.php:76
actionwpd_ai_register_integration_metadataincludes\integrations\WPDAI_Integrations_Manager.php:77
actionwpd_ai_register_integrationsincludes\integrations\WPDAI_Integrations_Manager.php:78
filterwpd_ai_save_settingsincludes\integrations\WPDAI_Integration_Base.php:91
filterwpd_ai_custom_product_cost_optionsincludes\integrations\WPDAI_PPOM_Integration.php:122
filterwpd_ai_custom_product_cost_default_valueincludes\integrations\WPDAI_PPOM_Integration.php:123
actionadmin_footerincludes\wpd-functions.php:20
actionadmin_footerincludes\wpd-functions.php:60
actionadmin_noticesincludes\wpd-functions.php:202
actionwpd_before_contentincludes\wpd-functions.php:205
actionadmin_enqueue_scriptsincludes\wpd-scripts-styles.php:20
actionwp_enqueue_scriptsincludes\wpd-scripts-styles.php:254
actionbefore_woocommerce_initwpd-alpha-insights.php:99
actionupgrader_process_completewpd-alpha-insights.php:105
actionplugins_loadedwpd-alpha-insights.php:114
actionadmin_noticeswpd-alpha-insights.php:119
actionadmin_initwpd-alpha-insights.php:122
Maintenance & Trust

Alpha Insights – Profit Intelligence & Analytics for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 14, 2026
PHP min version7.4
Downloads255

Community Trust

Rating100/100
Number of ratings1
Active installs0
Developer Profile

Alpha Insights – Profit Intelligence & Analytics for WooCommerce Developer Profile

WP Davies

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Alpha Insights – Profit Intelligence & Analytics for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/alpha-insights-sales-report-builder-analytics-for-woocommerce/assets/css/alpha-insights-admin.css/wp-content/plugins/alpha-insights-sales-report-builder-analytics-for-woocommerce/assets/css/alpha-insights-frontend.css/wp-content/plugins/alpha-insights-sales-report-builder-analytics-for-woocommerce/assets/js/alpha-insights-admin.js/wp-content/plugins/alpha-insights-sales-report-builder-analytics-for-woocommerce/assets/js/alpha-insights-frontend.js/wp-content/plugins/alpha-insights-sales-report-builder-analytics-for-woocommerce/assets/js/alpha-insights-report-builder.js
Script Paths
/wp-content/plugins/alpha-insights-sales-report-builder-analytics-for-woocommerce/assets/js/alpha-insights-admin.js/wp-content/plugins/alpha-insights-sales-report-builder-analytics-for-woocommerce/assets/js/alpha-insights-frontend.js/wp-content/plugins/alpha-insights-sales-report-builder-analytics-for-woocommerce/assets/js/alpha-insights-report-builder.js
Version Parameters
alpha-insights-sales-report-builder-analytics-for-woocommerce/assets/css/alpha-insights-admin.css?ver=alpha-insights-sales-report-builder-analytics-for-woocommerce/assets/css/alpha-insights-frontend.css?ver=alpha-insights-sales-report-builder-analytics-for-woocommerce/assets/js/alpha-insights-admin.js?ver=alpha-insights-sales-report-builder-analytics-for-woocommerce/assets/js/alpha-insights-frontend.js?ver=alpha-insights-sales-report-builder-analytics-for-woocommerce/assets/js/alpha-insights-report-builder.js?ver=

HTML / DOM Fingerprints

CSS Classes
wpd-alpha-insights-admin-noticewpd-alpha-insights-admin-wrapperwpd-alpha-insights-report-builder-wrapwpd-alpha-insights-report-builder-form-element
HTML Comments
<!-- Alpha Insights Pro conflict detected. Deactivating free version. -->
Data Attributes
data-wpd-alpha-insights-noncedata-wpd-alpha-insights-ajax-url
JS Globals
WPD_AI_AdminWPD_AI_FrontendWPD_AI_ReportBuilder
FAQ

Frequently Asked Questions about Alpha Insights – Profit Intelligence & Analytics for WooCommerce