
Automated PostNord label and pickup – HPOS Supported Security & Risk Analysis
wordpress.org/plugins/automated-postnord-shippingAutomated PostNord Shipping plugin for WooCommerce. Generate shipping labels, track orders, and manage pickups automatically.
Is Automated PostNord label and pickup – HPOS Supported Safe to Use in 2026?
Generally Safe
Score 100/100Automated PostNord label and pickup – HPOS Supported has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "automated-postnord-shipping" plugin v1.2.4 demonstrates a generally good security posture with no known critical vulnerabilities or reported CVEs. The absence of detected dangerous functions, the use of prepared statements for all SQL queries, and the lack of reported historical vulnerabilities suggest a development team that prioritizes secure coding practices. However, several areas raise concerns. The static analysis reveals a concerning 61% of output escaping, meaning a significant portion of outputs are not properly sanitized, potentially leading to cross-site scripting (XSS) vulnerabilities. Furthermore, the taint analysis indicates three flows with unsanitized paths, all of which are currently flagged as not critical or high severity, but this still represents a potential risk that warrants investigation and remediation.
Despite the lack of directly exploitable vulnerabilities in the provided data, the identified issues with output escaping and unsanitized paths, coupled with zero nonce and capability checks, point to a potential for privilege escalation or information disclosure if an attacker can manipulate inputs. The presence of file operations and external HTTP requests, while not inherently insecure, increase the attack surface and could be vectors for more complex attacks if not handled with extreme care. The plugin's reliance on external services (implied by HTTP requests) also introduces supply chain risks. Overall, while the plugin is not demonstrably vulnerable in the provided snapshot, there are clear areas for improvement to enhance its security robustness.
Key Concerns
- Significant percentage of unescaped output
- Unsanitized paths found in taint analysis
- No nonce checks on entry points
- No capability checks on entry points
Automated PostNord label and pickup – HPOS Supported Security Vulnerabilities
Automated PostNord label and pickup – HPOS Supported Code Analysis
Output Escaping
Data Flow Analysis
Automated PostNord label and pickup – HPOS Supported Attack Surface
WordPress Hooks 29
Maintenance & Trust
Automated PostNord label and pickup – HPOS Supported Maintenance & Trust
Maintenance Signals
Community Trust
Automated PostNord label and pickup – HPOS Supported Alternatives
Automated Aramex Express live/manual shipping rates, labels and pickup
automated-aramex-livemanual-shipping-rates-labels
(Fully automated) Real-time rates, shipping label, pickup, invoice, multi vendor,etc. supports all countries.
Automated DPD Shipping – HPOS supported
automated-dpd-express-livemanual-shipping-rates-labels-and-pickup
(Fully automated) shipping label, pickup, invoice, multi vendor,etc. supports all countries.
Easyship WooCommerce Shipping Rates
easyship-woocommerce-shipping-rates
Easyship for WooCommerce saves you time and money with live courier rates, seamless checkout, automated taxes & duties, and shipping label creation.
eShipper Commerce
eshipper-commerce
Integrate your eCommerce platforms, automate shipping, and save on all carriers with eShipper.
Shipi – Multi-Carrier Shipping Plugin for WooCommerce
shipi
🚀 Ship smarter and faster! Shipi helps you connect global shipping carriers with WooCommerce for real-time rates, shipping label generation, and track …
Automated PostNord label and pickup – HPOS Supported Developer Profile
10 plugins · 610 total installs
How We Detect Automated PostNord label and pickup – HPOS Supported
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/automated-postnord-shipping/assets/css/style.css/wp-content/plugins/automated-postnord-shipping/assets/js/admin.js/wp-content/plugins/automated-postnord-shipping/assets/js/frontend.js/wp-content/plugins/automated-postnord-shipping/assets/js/admin.js/wp-content/plugins/automated-postnord-shipping/assets/js/frontend.jsautomated-postnord-shipping/assets/css/style.css?ver=automated-postnord-shipping/assets/js/admin.js?ver=automated-postnord-shipping/assets/js/frontend.js?ver=HTML / DOM Fingerprints
hitshipo_pn_product_options_optionshits_pn_hs_codehits_pn_country_of_originhits_pn_product_descriptionhit_pn_shipping_meta_box<!-- Shipi - Postnord Product Fields --><!-- Product Data Start -->hits_pn_hs_codehits_pn_country_of_originhits_pn_product_descriptionhitshipo_pn_main_settingshitshipo_pn_countryhit_pn_shipping_meta_boxhitshipo_pn_admin_ajax_objecthits_pn_data