
AtomX Services Security & Risk Analysis
wordpress.org/plugins/atomx-servicesGeneration of purchase codes/tokens for AtomX extension (or based on AtomX) for products and subscriptions.
Is AtomX Services Safe to Use in 2026?
Generally Safe
Score 100/100AtomX Services has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "atomx-services" v2.0.5 plugin demonstrates a strong security posture with several good practices evident in the static analysis. Notably, there are no SQL queries that are not using prepared statements, and an overwhelming majority of output is properly escaped, significantly reducing the risk of cross-site scripting (XSS) vulnerabilities. The plugin also implements nonce and capability checks on its AJAX handlers, which is crucial for preventing unauthorized actions. The absence of any known vulnerabilities or CVEs in its history further contributes to a positive security outlook. This indicates a development team that is mindful of common web security pitfalls.
Despite the positive findings, a few areas warrant attention. The presence of a single flow with an unsanitized path in the taint analysis, although not classified as critical or high, represents a potential risk. This flow could be a vector for directory traversal or other file-related attacks if not properly handled. Additionally, the plugin makes two external HTTP requests, which, while not inherently insecure, can introduce risks if the target endpoints are compromised or if the data sent is sensitive and not properly handled. The use of the Select2 library, if outdated or not from a trusted source, could also pose a risk, although this is not explicitly detailed in the provided data.
Overall, "atomx-services" v2.0.5 appears to be a relatively secure plugin, adhering to many security best practices. The limited number of identified code signals and the complete lack of historical vulnerabilities are encouraging. However, the single unsanitized path flow identified through taint analysis is the primary concern, and the external HTTP requests should be monitored for any potential security implications. Continued vigilance in code review and prompt patching of any future vulnerabilities will be important.
Key Concerns
- Flow with unsanitized path found
- Plugin makes external HTTP requests
AtomX Services Security Vulnerabilities
AtomX Services Code Analysis
Bundled Libraries
Output Escaping
Data Flow Analysis
AtomX Services Attack Surface
AJAX Handlers 5
WordPress Hooks 18
Maintenance & Trust
AtomX Services Maintenance & Trust
Maintenance Signals
Community Trust
AtomX Services Alternatives
Subscriptions for WooCommerce
subscriptions-for-woocommerce
With WooCommerce Subscription, turn your physical or online store into a WooCommerce product subscription store and avail recurring revenue.
Pledged Plugins Secure Gateway for Authorize.net and WooCommerce
woo-authorize-net-gateway-aim
Authorize.net payment gateway integration for WooCommerce to accept credit cards directly on WordPress e-commerce websites.
Store Exporter – Export WooCommerce Products, Orders, Subscriptions, Customers
woocommerce-exporter
Export WooCommerce products, orders, customers, categories, tags, subscriptions & more into formatted files like CSV, XML, Excel 2007, XLS, XLSX.
Pay with Vipps and MobilePay for WooCommerce
woo-vipps
Official Vipps MobilePay payment plugin for WooCommerce.
Quickpay for WooCommerce
woocommerce-quickpay
Integrates your Quickpay payment gateway into your WooCommerce installation.
AtomX Services Developer Profile
1 plugin · 0 total installs
How We Detect AtomX Services
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/atomx-services/assets/admin.js/wp-content/plugins/atomx-services/assets/admin.css/wp-content/plugins/atomx-services/assets/select2.min.js/wp-content/plugins/atomx-services/assets/select2.min.css/wp-content/plugins/atomx-services/assets/admin.js/wp-content/plugins/atomx-services/assets/select2.min.jsatomx-services/assets/admin.js?ver=atomx-services/assets/admin.css?ver=atomx-services/assets/select2.min.js?ver=atomx-services/assets/select2.min.css?ver=HTML / DOM Fingerprints
tablinksactivedata-select2-idatomx_ajax_vars