Anti Fake Orders & IP Blocker Security & Risk Analysis

wordpress.org/plugins/anti-fake-orders-ip-blocker

Protect your WooCommerce store from fake orders by blocking suspicious IPs, emails, and detecting bot checkout activity.

400 active installs v1.0.1 PHP 7.2+ WP 5.0+ Updated Feb 11, 2026
fake-orderfraud-preventionip-blockersecuritywoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Anti Fake Orders & IP Blocker Safe to Use in 2026?

Generally Safe

Score 100/100

Anti Fake Orders & IP Blocker has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The "anti-fake-orders-ip-blocker" v1.0.1 plugin demonstrates a generally strong security posture based on the provided static analysis and vulnerability history. The absence of known CVEs and unpatched vulnerabilities is a significant positive indicator. The code shows good practices regarding SQL queries, with a very high percentage utilizing prepared statements, and a respectable rate of output escaping. The plugin also incorporates nonce and capability checks, which are crucial for securing WordPress functionalities. The limited attack surface, with no exposed AJAX handlers, REST API routes, or shortcodes without authentication or permission checks, further strengthens its security. While the presence of two cron events is noted, their security is not explicitly detailed in the provided data, but the overall absence of unprotected entry points is reassuring. There are no critical or high severity taint flows identified, which is excellent. The plugin's focus on security appears to be a priority.

Key Concerns

  • Minor concern regarding 2 cron events
  • 19% of output not properly escaped
Vulnerabilities
None known

Anti Fake Orders & IP Blocker Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Anti Fake Orders & IP Blocker Code Analysis

Dangerous Functions
0
Raw SQL Queries
3
72 prepared
Unescaped Output
73
303 escaped
Nonce Checks
20
Capability Checks
5
File Operations
4
External Requests
0
Bundled Libraries
0

SQL Query Safety

96% prepared75 total queries

Output Escaping

81% escaped376 total outputs
Data Flows
All sanitized

Data Flow Analysis

5 flows
afop_logs_page (admin\logs-page.php:24)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Anti Fake Orders & IP Blocker Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 14
actionadmin_menuadmin\class-menu.php:15
actionplugins_loadedanti-fake-orders-ip-blocker.php:87
actionadmin_enqueue_scriptsanti-fake-orders-ip-blocker.php:88
actionwp_enqueue_scriptsanti-fake-orders-ip-blocker.php:89
actionbefore_woocommerce_initanti-fake-orders-ip-blocker.php:90
actionadmin_noticesanti-fake-orders-ip-blocker.php:104
actionadmin_initanti-fake-orders-ip-blocker.php:105
actionwoocommerce_before_checkout_formincludes\class-checkout-validator.php:307
actionwoocommerce_blocks_enqueue_checkout_block_scripts_beforeincludes\class-checkout-validator.php:308
actionwoocommerce_checkout_processincludes\class-checkout-validator.php:310
actionwoocommerce_store_api_checkout_update_order_from_requestincludes\class-checkout-validator.php:311
actionafop_clean_logs_eventincludes\logger.php:122
actionadmin_initincludes\settings\class-register.php:24
actionafop_auto_unblock_eventincludes\user-blocker.php:178

Scheduled Events 2

afop_clean_logs_event
afop_auto_unblock_event
Maintenance & Trust

Anti Fake Orders & IP Blocker Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedFeb 11, 2026
PHP min version7.2
Downloads1K

Community Trust

Rating60/100
Number of ratings2
Active installs400
Developer Profile

Anti Fake Orders & IP Blocker Developer Profile

Shohanur Rahman Shohan

1 plugin · 400 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Anti Fake Orders & IP Blocker

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/anti-fake-orders-ip-blocker/assets/style.css/wp-content/plugins/anti-fake-orders-ip-blocker/assets/admin.js/wp-content/plugins/anti-fake-orders-ip-blocker/assets/afop-countdown.js/wp-content/plugins/anti-fake-orders-ip-blocker/assets/admin-render.js/wp-content/plugins/anti-fake-orders-ip-blocker/assets/admin-dashboard.js/wp-content/plugins/anti-fake-orders-ip-blocker/assets/vendor/chartjs/chart.umd.min.js
Script Paths
/wp-content/plugins/anti-fake-orders-ip-blocker/assets/admin.js/wp-content/plugins/anti-fake-orders-ip-blocker/assets/afop-countdown.js/wp-content/plugins/anti-fake-orders-ip-blocker/assets/admin-render.js/wp-content/plugins/anti-fake-orders-ip-blocker/assets/admin-dashboard.js/wp-content/plugins/anti-fake-orders-ip-blocker/assets/vendor/chartjs/chart.umd.min.js
Version Parameters
anti-fake-orders-ip-blocker/assets/style.css?ver=anti-fake-orders-ip-blocker/assets/admin.js?ver=anti-fake-orders-ip-blocker/assets/afop-countdown.js?ver=anti-fake-orders-ip-blocker/assets/admin-render.js?ver=anti-fake-orders-ip-blocker/assets/admin-dashboard.js?ver=anti-fake-orders-ip-blocker/assets/vendor/chartjs/chart.umd.min.js?ver=

HTML / DOM Fingerprints

JS Globals
afopAdmin
FAQ

Frequently Asked Questions about Anti Fake Orders & IP Blocker