
AS Product Shipping Security & Risk Analysis
wordpress.org/plugins/as-product-shippingA WooCommerce shipping plugin with flat rate and weight-based shipping options for individual products.
Is AS Product Shipping Safe to Use in 2026?
Generally Safe
Score 100/100AS Product Shipping has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "as-product-shipping" v1.0.1 plugin exhibits a generally strong security posture based on the provided static analysis. The complete absence of identified CVEs and a history of no recorded vulnerabilities are highly positive indicators. The code also demonstrates good security practices, with 100% of SQL queries using prepared statements, a high percentage of properly escaped output (90%), and the presence of both nonce and capability checks. There are no identified dangerous functions, file operations, or external HTTP requests, further minimizing the attack surface.
However, the static analysis reveals a complete lack of any identified entry points (AJAX handlers, REST API routes, shortcodes, cron events). While this significantly reduces the immediate attack surface, it also makes it impossible to assess the security of any potential interactions if they were to be introduced or if the analysis was incomplete. The absence of taint analysis results (0 flows analyzed) is also a notable gap, as it prevents a deeper understanding of how data might propagate and be mishandled within the plugin's logic. While the plugin's current state appears secure due to its limited functionality and good coding practices, the lack of thoroughly analyzed entry points and taint flows means there's an unknown potential for future vulnerabilities if the plugin's functionality expands or if the analysis itself has limitations.
In conclusion, "as-product-shipping" v1.0.1 scores well on its current implementation and history. The developer appears to be following good security practices for the code that was analyzed. The primary area for concern is the lack of identifiable entry points and the absence of taint analysis, which means the overall security, especially for any unanalyzed code paths or future additions, cannot be fully guaranteed. Despite this, the lack of any past or present critical issues points to a developer who is likely security-conscious.
Key Concerns
- No identified entry points for analysis
- No taint analysis performed
- Output escaping not 100%
AS Product Shipping Security Vulnerabilities
AS Product Shipping Code Analysis
Output Escaping
AS Product Shipping Attack Surface
WordPress Hooks 15
Maintenance & Trust
AS Product Shipping Maintenance & Trust
Maintenance Signals
Community Trust
AS Product Shipping Alternatives
AfterShip Shipping: Free Shipping Labels for WooCommerce, Discounted Shipping Rates
postmen-woo-shipping
WooCommerce Shipping - Print shipping labels faster, compare costs and delivery time across 60 carrier services to optimize your shipping routes.
Mojito Shipping
mojito-shipping
Weight-based rates for WooCommerce. Simple method shipping support. Correos de Costa Rica web service support for tracking codes. Multisite support.
Lexiata Weight Based Shipping
lexiata-weight-based-shipping
Flexible WooCommerce shipping plugin that calculates costs by weight, with free-shipping and COD control options.
Shipping Manager – Table Rate, Weight Based & Woocommerce advanced shipping
shipping-manager
Powerful WooCommerce shipping plugin with table rate, weight-based rates, shipping class support, and advanced shipping rules.
Weight Based Shipping Table Rate for WooCommerce – Flexible Shipping
flexible-shipping
Weight based shipping methods for WooCommerce. Flexible shipping with table rate rules by cart weight and order value. Accurate rates at checkout.
AS Product Shipping Developer Profile
2 plugins · 0 total installs
How We Detect AS Product Shipping
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/as-product-shipping/assets/css/admin.css/wp-content/plugins/as-product-shipping/assets/js/admin.js/wp-content/plugins/as-product-shipping/assets/js/admin.jsas-product-shipping/assets/css/admin.css?ver=as-product-shipping/assets/js/admin.js?ver=HTML / DOM Fingerprints
asprsh-shipping-optionsasprsh-shipping-descriptionasprsh-shipping-fieldasprsh_custom_shipping_enabledasprsh_shipping_type_fieldasprsh_shipping_typeasprsh_custom_shipping_rate_fieldasprsh_custom_shipping_rate+3 more<!-- AS Product Shipping Admin --><!-- Admin functionality for the AS Product Shipping plugin. --><!-- Add admin menu --><!-- Add separate metabox for shipping settings -->+13 moreid="asprsh_custom_shipping_enabled"name="asprsh_custom_shipping_enabled"id="asprsh_shipping_type"name="asprsh_shipping_type"id="asprsh_custom_shipping_rate"name="asprsh_custom_shipping_rate"+2 moreASPRSH_VERSION