[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fMb2jtyGN0D39BwSrw42KdSPV48NgaVWO8zq2gqJ2bqw":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":13,"last_updated":14,"tested_up_to":15,"requires_at_least":16,"requires_php":17,"tags":18,"homepage":24,"download_link":25,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28,"vulnerabilities":29,"developer":30,"crawl_stats":27,"alternatives":35,"analysis":127,"fingerprints":789},"bayarcash-for-fluent-forms","Bayarcash for Fluent Forms","2.0.4","Bayarcash","https:\u002F\u002Fprofiles.wordpress.org\u002Fbayarcash\u002F","\u003Cp>Bayarcash for Fluent Forms allows you to accept payments through Malaysia’s popular payment methods. This plugin integrates Bayarcash payment gateway with Fluent Forms Pro, enabling you to collect payments easily and securely.\u003C\u002Fp>\n\u003Ch4>Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Easy integration with Fluent Forms Pro\u003C\u002Fli>\n\u003Cli>Accept payments via FPX (Malaysian online banking)\u003C\u002Fli>\n\u003Cli>Support for DuitNow Online Banking\u003C\u002Fli>\n\u003Cli>Simple setup process\u003C\u002Fli>\n\u003Cli>Secure payment processing\u003C\u002Fli>\n\u003Cli>Direct integration with Bayarcash API v2\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Requirements\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>WordPress 5.0 or higher\u003C\u002Fli>\n\u003Cli>PHP 7.4 or higher\u003C\u002Fli>\n\u003Cli>Fluent Forms Pro installed and activated\u003C\u002Fli>\n\u003Cli>Bayarcash merchant account\u003C\u002Fli>\n\u003Cli>Valid Bayarcash API credentials\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Supported Payment Methods\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>FPX Online Banking\u003C\u002Fli>\n\u003Cli>DuitNow Online Banking\u003C\u002Fli>\n\u003Cli>DuitNow QR\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Support\u003C\u002Fh3>\n\u003Cp>For support, please visit \u003Ca href=\"https:\u002F\u002Fbayarcash.com\" rel=\"nofollow ugc\">https:\u002F\u002Fbayarcash.com\u003C\u002Fa> or email support@bayarcash.com\u003C\u002Fp>\n\u003Cp>For API documentation and technical reference, visit \u003Ca href=\"https:\u002F\u002Fapi.webimpian.support\u002Fbayarcash\" rel=\"nofollow ugc\">https:\u002F\u002Fapi.webimpian.support\u002Fbayarcash\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch3>Privacy Policy\u003C\u002Fh3>\n\u003Cp>This plugin integrates with Bayarcash payment gateway and processes payment information. All payment processing is handled securely by Bayarcash. No sensitive payment data is stored on your WordPress site.\u003C\u002Fp>\n\u003Cp>For more information about how Bayarcash handles payment data, please visit their privacy policy at \u003Ca href=\"https:\u002F\u002Fbayarcash.com\u002Fprivacy-policy\u002F\" rel=\"nofollow ugc\">https:\u002F\u002Fbayarcash.com\u002Fprivacy-policy\u002F\u003C\u002Fa>.\u003C\u002Fp>\n","Integrate Bayarcash payment gateway with Fluent Forms to accept payments in Malaysia via FPX, DuitNow, and other local payment methods.",60,1186,0,"2025-11-05T21:45:00.000Z","6.8.5","5.0","7.4",[19,20,21,22,23],"bayarcash","fluent-forms","fpx","malaysia-payment","payment-gateway","https:\u002F\u002Fbayarcash.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fbayarcash-for-fluent-forms.2.0.4.zip",100,null,"2026-03-15T15:16:48.613Z",[],{"slug":19,"display_name":7,"profile_url":8,"plugin_count":31,"total_installs":11,"avg_security_score":26,"avg_patch_time_days":32,"trust_score":33,"computed_at":34},3,30,94,"2026-04-04T16:14:51.875Z",[36,50,71,91,110],{"slug":37,"name":38,"version":39,"author":7,"author_profile":8,"description":40,"short_description":41,"active_installs":13,"downloaded":42,"rating":13,"num_ratings":13,"last_updated":43,"tested_up_to":15,"requires_at_least":16,"requires_php":17,"tags":44,"homepage":47,"download_link":48,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":49},"bayarcash-for-fluentcart","Bayarcash for FluentCart","1.0.0","\u003Cp>Bayarcash for FluentCart is a powerful payment gateway integration that enables Malaysian businesses to accept online payments through FluentCart. This plugin seamlessly connects your FluentCart store with Bayarcash, providing access to multiple popular payment channels in Malaysia.\u003C\u002Fp>\n\u003Ch4>Key Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>Multiple Payment Channels\u003C\u002Fstrong> – Support for FPX (Online Banking), DuitNow QR, Credit Card, and more\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Secure Transactions\u003C\u002Fstrong> – All transactions are verified with checksum validation\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Real-time Callbacks\u003C\u002Fstrong> – Instant order status updates via webhooks\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Test Mode\u003C\u002Fstrong> – Built-in sandbox mode for testing before going live\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Customizable Checkout\u003C\u002Fstrong> – Customize button colors, text, and themes\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Order Metadata\u003C\u002Fstrong> – Stores all transaction details for complete audit trail\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Status Management\u003C\u002Fstrong> – Automatic order status updates based on payment status\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Supported Payment Channels\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>FPX (Online Banking)\u003C\u002Fli>\n\u003Cli>FPX Direct Debit\u003C\u002Fli>\n\u003Cli>FPX Line of Credit\u003C\u002Fli>\n\u003Cli>DuitNow Online Banking\u002FWallets\u003C\u002Fli>\n\u003Cli>DuitNow QR\u003C\u002Fli>\n\u003Cli>Boost PayFlex\u003C\u002Fli>\n\u003Cli>QRIS (Online Banking & E-Wallet)\u003C\u002Fli>\n\u003Cli>NETS\u003C\u002Fli>\n\u003Cli>Credit Card\u003C\u002Fli>\n\u003Cli>Alipay\u003C\u002Fli>\n\u003Cli>WeChat Pay\u003C\u002Fli>\n\u003Cli>PromptPay\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>API & SDK Information\u003C\u002Fh4>\n\u003Cp>This plugin integrates with external services to process payments:\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Bayarcash Payment API v3\u003C\u002Fstrong>\u003Cbr \u002F>\n* Service: Bayarcash Payment Gateway (https:\u002F\u002Fbayarcash.com)\u003Cbr \u002F>\n* API Documentation: https:\u002F\u002Fdocs.bayarcash.com\u003Cbr \u002F>\n* Purpose: Process payment transactions and handle payment callbacks\u003Cbr \u002F>\n* Service Terms: https:\u002F\u002Fbayarcash.com\u002Fterms\u003Cbr \u002F>\n* Privacy Policy: https:\u002F\u002Fbayarcash.com\u002Fprivacy\u003C\u002Fp>\n\u003Cp>\u003Cstrong>SDK Used:\u003C\u002Fstrong>\u003Cbr \u002F>\n* Bayarcash PHP SDK v2.0.5\u003Cbr \u002F>\n* Repository: https:\u002F\u002Fgithub.com\u002Fwebimpian\u002Fbayarcash-php-sdk\u003Cbr \u002F>\n* License: MIT License\u003C\u002Fp>\n\u003Ch4>Data Collection & Privacy\u003C\u002Fh4>\n\u003Cp>\u003Cstrong>What data is sent to Bayarcash:\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>When a customer makes a payment, the following information is transmitted to Bayarcash’s secure servers:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Order ID and amount\u003C\u002Fli>\n\u003Cli>Customer name and email address\u003C\u002Fli>\n\u003Cli>Customer phone number\u003C\u002Fli>\n\u003Cli>Selected payment channel\u003C\u002Fli>\n\u003Cli>Return URL and callback URL\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Cstrong>Data Processing:\u003C\u002Fstrong>\u003Cbr \u002F>\n* All payment data is transmitted securely via HTTPS\u003Cbr \u002F>\n* Payment information is processed by Bayarcash in accordance with their privacy policy\u003Cbr \u002F>\n* Transaction IDs and payment status are returned and stored in your WordPress database\u003Cbr \u002F>\n* No credit card details are stored on your server – all sensitive payment data is handled by Bayarcash\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Callbacks & Webhooks:\u003C\u002Fstrong>\u003Cbr \u002F>\n* Bayarcash sends payment status updates to your site via secure callbacks\u003Cbr \u002F>\n* All callbacks are verified using cryptographic checksums to prevent tampering\u003Cbr \u002F>\n* Your site stores transaction metadata (transaction IDs, status, payment channel) for order management\u003C\u002Fp>\n\u003Cp>By using this plugin, you acknowledge that customer payment data will be transmitted to Bayarcash for processing. Please ensure your privacy policy reflects this third-party data processing.\u003C\u002Fp>\n\u003Ch4>Requirements\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>FluentCart plugin (active)\u003C\u002Fli>\n\u003Cli>Bayarcash merchant account\u003C\u002Fli>\n\u003Cli>PHP 7.4 or higher\u003C\u002Fli>\n\u003Cli>WordPress 5.0 or higher\u003C\u002Fli>\n\u003C\u002Ful>\n","Accept payments via Bayarcash payment gateway for FluentCart. Supports FPX, DuitNow QR, and other Malaysian payment methods.",165,"",[19,45,46,21,23],"duitnow","fluentcart","https:\u002F\u002Fplugin.bayarcash.com\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fbayarcash-for-fluentcart.1.0.0.zip","2026-03-15T10:48:56.248Z",{"slug":51,"name":52,"version":53,"author":54,"author_profile":55,"description":56,"short_description":57,"active_installs":58,"downloaded":59,"rating":60,"num_ratings":61,"last_updated":62,"tested_up_to":63,"requires_at_least":64,"requires_php":65,"tags":66,"homepage":69,"download_link":70,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28},"toyyibpay-for-woocommerce","toyyibPay for WooCommerce","2.0.0","toyyibPay","https:\u002F\u002Fprofiles.wordpress.org\u002Ftoyyibpay\u002F","\u003Cp>toyyibPay for WooCommerce is a robust payment gateway integration that allows Malaysian merchants to seamlessly accept payments on their WooCommerce store. Powered by \u003Ca href=\"https:\u002F\u002Ftoyyibpay.com\" rel=\"nofollow ugc\">toyyibPay\u003C\u002Fa>, one of Malaysia’s leading payment service providers, this plugin offers a straightforward setup with no hidden fees.\u003C\u002Fp>\n\u003Cblockquote>\n\u003Cp>Our pricing is always per transaction. No startup fees, no monthly fees, and no gateway fees. No hidden fees, period.\u003C\u002Fp>\n\u003C\u002Fblockquote>\n\u003Cp>\u003Cstrong>Currently available to businesses registered and operating in Malaysia.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Ch4>Supported Payment Modes\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>FPX Online Banking\u003C\u002Fstrong> — Direct bank transfer via Financial Process Exchange (FPX), supporting all major Malaysian banks\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Credit \u002F Debit Card\u003C\u002Fstrong> — Visa and Mastercard payments for local and international customers\u003C\u002Fli>\n\u003Cli>\u003Cstrong>DuitNow QR\u003C\u002Fstrong> \u003Cem>(New in 2.0.0)\u003C\u002Fem> — Instant QR-based payments via the DuitNow network\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Split Payment\u003C\u002Fstrong> — Automatically split payment proceeds between multiple toyyibPay accounts\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Multiple payment modes: FPX, Credit\u002FDebit Card, DuitNow QR, and Split Payment\u003C\u002Fli>\n\u003Cli>HPOS (High-Performance Order Storage) compatible\u003C\u002Fli>\n\u003Cli>WooCommerce Blocks checkout support\u003C\u002Fli>\n\u003Cli>Seamless integration with the WooCommerce payments settings\u003C\u002Fli>\n\u003Cli>Configurable admin fee handling for DuitNow QR\u003C\u002Fli>\n\u003Cli>Sandbox\u002Fdevelopment mode for testing before going live\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Please go to the \u003Ca href=\"https:\u002F\u002Ftoyyibpay.com\u002Faccess\u002Fregistration\" rel=\"nofollow ugc\">signup page\u003C\u002Fa> to create a toyyibPay account and start receiving payments.\u003C\u002Fp>\n\u003Cp>Contact us on our \u003Ca href=\"https:\u002F\u002Fwww.facebook.com\u002Ftoyyibpay\" rel=\"nofollow ugc\">Facebook Page\u003C\u002Fa> if you have any questions or comments about this plugin.\u003C\u002Fp>\n","The official toyyibPay payment gateway plugin for WooCommerce — enabling Malaysian merchants to accept secure online payments with ease.",7000,101553,86,6,"2026-03-04T21:57:00.000Z","6.9.4","6.0","7.0",[45,21,67,23,68],"malaysia","woocommerce","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Ftoyyibpay-for-woocommerce\u002F#installation","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Ftoyyibpay-for-woocommerce.2.0.0.zip",{"slug":72,"name":73,"version":74,"author":75,"author_profile":76,"description":77,"short_description":78,"active_installs":79,"downloaded":80,"rating":11,"num_ratings":81,"last_updated":82,"tested_up_to":43,"requires_at_least":83,"requires_php":65,"tags":84,"homepage":88,"download_link":89,"security_score":90,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28},"payex-payment-gateway-for-woocommerce","Payex Payment Gateway for Woocommerce","1.2.10","payexplt","https:\u002F\u002Fprofiles.wordpress.org\u002Fpayexplt\u002F","\u003Cp>With Payex, you can now accept payments from Malaysia & oversea customers via FPX, Cards (Visa\u002FMC\u002FUnionPay), EWallets, Instalments and Subscriptions (thru Cards & Bank Account). Integrated to major courier companies like GDex, J&T Express, Lalamove, MrSpeedy, and more!\u003C\u002Fp>\n\u003Cp>Installation\u003Cbr \u002F>\n1. Download the .zip file from your WordPress account.\u003Cbr \u002F>\n2. Go to: WordPress Admin > Plugins > Add New and Upload Plugin with the file you downloaded with Choose File.\u003Cbr \u002F>\n3. Install Now and Activate the extension.\u003C\u002Fp>\n\u003Cp>Setup and Configuration\u003C\u002Fp>\n\u003Cp>To set up with Payex:\u003C\u002Fp>\n\u003Col>\n\u003Cli>Apply for a seller account at https:\u002F\u002Fpayex.io\u002F and your account will be processed within 1 business day.\u003C\u002Fli>\n\u003Cli>Once your account is set up successfully, login to portal.payex.io and click on Setting on the left panel. Locate Secret.\u003C\u002Fli>\n\u003Cli>Once done, go to: WooCommerce > Settings > Payments > Enable Payex gateway\u003C\u002Fli>\n\u003Cli>Click on “Manage” once you have enabled Payex, enter your username with Payex (your registered email) and Secret.\u003C\u002Fli>\n\u003Cli>Save changes.\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Cp>License – The MIT License (MIT)\u003C\u002Fp>\n\u003Cp>Permission is hereby granted, free of charge, to any person obtaining a copy of this software and associated documentation files (the “Software”), to deal in the Software without restriction, including without limitation the rights to use, copy, modify, merge, publish, distribute, sublicense, and\u002For sell copies of the Software, and to permit persons to whom the Software is furnished to do so, subject to the following conditions:\u003Cbr \u002F>\nThe above copyright notice and this permission notice shall be included in all copies or substantial portions of the Software.\u003Cbr \u002F>\nTHE SOFTWARE IS PROVIDED “AS IS”, WITHOUT WARRANTY OF ANY KIND, EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE SOFTWARE.\u003C\u002Fp>\n","With Payex, you can now accept payments from Malaysia & oversea customers via FPX, Cards (Visa\u002FMC\u002FUnionPay), EWallets, Instalments and Subscriptio &hellip;",300,7743,2,"2025-02-10T07:19:00.000Z","4.7",[21,85,86,87,23],"online-banking","payex","payment","https:\u002F\u002Fpayex.io","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fpayex-payment-gateway-for-woocommerce.zip",92,{"slug":92,"name":93,"version":94,"author":95,"author_profile":96,"description":97,"short_description":98,"active_installs":99,"downloaded":100,"rating":13,"num_ratings":13,"last_updated":101,"tested_up_to":102,"requires_at_least":103,"requires_php":104,"tags":105,"homepage":107,"download_link":108,"security_score":109,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28},"securepay","SecurePay For WooCommerce","1.0.18","SecurePay","https:\u002F\u002Fprofiles.wordpress.org\u002Fsecurepay\u002F","\u003Cp>Now you can integrate major Malaysian payment channel in your WooCommerce shop.\u003C\u002Fp>\n\u003Cblockquote>\n\u003Cp>Use our premium short URL: bayar.my, jual.my, beli.my, niaga.my, invois.my, outlet.my, restoran.my and more. E.g: https:\u002F\u002Fbayar.my\u002Fkedai-ali or https:\u002F\u002Fkedai-ali.bayar.my or you can use your own domain name.\u003C\u002Fp>\n\u003C\u002Fblockquote>\n\u003Cp>SecurePay payment platform plugin for WooCommerce.\u003C\u002Fp>\n\u003Cblockquote>\n\u003Cp>Our pricing is on per transaction. No startup fees &  monthly fees.\u003C\u002Fp>\n\u003C\u002Fblockquote>\n\u003Cp>SecurePay is secure.\u003C\u002Fp>\n\u003Cblockquote>\n\u003Cp>We are certified with ISO\u002FIEC 15408 (pending)\u003C\u002Fp>\n\u003C\u002Fblockquote>\n\u003Cp>Install this plugin to enable online payment using online banking (for Malaysian banks only).\u003C\u002Fp>\n\u003Cp>Please visit \u003Ca href=\"https:\u002F\u002Fwww.securepay.my\" rel=\"nofollow ugc\">signup page\u003C\u002Fa> or email registry@securepay.my to create a SecurePay account and start receiving payments.\u003C\u002Fp>\n\u003Cp>Contact us through email hello@securepay.my if you have any questions or comments about this plugin.\u003C\u002Fp>\n\u003Cp>Other Integrations:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fsecurepay-for-gravityforms\u002F\" rel=\"ugc\">SecurePay For GravityForms\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fsecurepay-for-wpjobster\u002F\" rel=\"ugc\">SecurePay For WPJobster\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fsecurepay-for-wpforms\u002F\" rel=\"ugc\">SecurePay For WPForms\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fsecurepay-for-restrictcontentpro\" rel=\"ugc\">SecurePay For Restrict Content Pro\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fsecurepay-for-paidmembershipspro\" rel=\"ugc\">SecurePay For Paid Memberships Pro\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n","SecurePay payment platform plugin for WooCommerce.",200,7087,"2023-09-06T05:19:00.000Z","6.3.8","5.4","5.6.20",[21,67,85,23,106],"payment-platform","https:\u002F\u002Fwww.securepay.my\u002F?utm_source=wp-plugins-securepay&utm_campaign=plugin-uri&utm_medium=wp-dash","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsecurepay.1.0.18.zip",85,{"slug":111,"name":112,"version":113,"author":114,"author_profile":115,"description":116,"short_description":117,"active_installs":118,"downloaded":119,"rating":13,"num_ratings":13,"last_updated":120,"tested_up_to":63,"requires_at_least":121,"requires_php":17,"tags":122,"homepage":125,"download_link":126,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28},"chip-for-gravity-forms","CHIP for Gravity Forms","1.2.0","Chip In Sdn Bhd","https:\u002F\u002Fprofiles.wordpress.org\u002Fchipasia\u002F","\u003Cp>\u003Cstrong>CHIP for Gravity Forms\u003C\u002Fstrong> is the official payment add-on that connects your Gravity Forms to CHIP’s Digital Finance Platform. Accept payments seamlessly with Malaysia’s leading payment methods—FPX, cards, DuitNow QR, e-wallets, and more—directly from your forms.\u003C\u002Fp>\n\u003Ch4>Why Choose CHIP for Gravity Forms?\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>Native Gravity Forms integration\u003C\u002Fstrong> – Add CHIP as a payment feed to any form; no custom code required\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Global and form-specific settings\u003C\u002Fstrong> – Set Brand ID and Secret Key globally, or override per form\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Multiple payment methods\u003C\u002Fstrong> – Accept FPX, Credit\u002FDebit Cards, DuitNow QR, e-wallets, and more via CHIP’s hosted checkout\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Flexible client data\u003C\u002Fstrong> – Map form fields to CHIP client metadata (e.g. legal_name, street_address, country) for compliance\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Due timing control\u003C\u002Fstrong> – Optional due strict and due timing (minutes) for payment links\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Refund from entries\u003C\u002Fstrong> – Process full refunds from Gravity Forms \u003Cspan aria-hidden=\"true\" class=\"wp-exclude-emoji\">→\u003C\u002Fspan> Entries when refund is enabled in settings\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Webhook support\u003C\u002Fstrong> – Reliable payment status updates via CHIP webhooks\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Supported Payment Methods\u003C\u002Fh4>\n\u003Cp>Payment methods are determined by your CHIP brand configuration. Typically available:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>FPX\u003C\u002Fstrong> – Malaysian online banking\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Credit\u002FDebit Cards\u003C\u002Fstrong> – Visa, Mastercard, and others\u003C\u002Fli>\n\u003Cli>\u003Cstrong>DuitNow QR\u003C\u002Fstrong> – Malaysia’s national QR payment\u003C\u002Fli>\n\u003Cli>\u003Cstrong>E-Wallets\u003C\u002Fstrong> – GrabPay, Touch ‘n Go, Boost, and more (via your CHIP setup)\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>About CHIP\u003C\u002Fh4>\n\u003Cp>CHIP is a comprehensive Digital Finance Platform designed to support Micro, Small and Medium Enterprises (MSMEs). We provide payment collection, expense management, risk mitigation, and treasury solutions. With CHIP, you get a financial partner committed to simplifying and digitizing your operations.\u003C\u002Fp>\n\u003Ch4>Documentation\u003C\u002Fh4>\n\u003Cp>Integrate your Gravity Forms with CHIP as documented in our \u003Ca href=\"https:\u002F\u002Fdocs.chip-in.asia\" rel=\"nofollow ugc\">API Documentation\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch3>Links\u003C\u002Fh3>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwww.chip-in.asia\" rel=\"nofollow ugc\">CHIP Website\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwww.chip-in.asia\u002Fterms-of-service\" rel=\"nofollow ugc\">Terms of Service\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwww.chip-in.asia\u002Fprivacy-policy\" rel=\"nofollow ugc\">Privacy Policy\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fdocs.chip-in.asia\u002F\" rel=\"nofollow ugc\">API Documentation\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwww.facebook.com\u002Fgroups\u002F3210496372558088\" rel=\"nofollow ugc\">CHIP Merchants & DEV Community\u003C\u002Fa>\u003C\u002Fp>\n","CHIP - Digital Finance Platform. Securely accept one-time payments with CHIP for Gravity Forms.",20,2087,"2026-02-20T15:59:00.000Z","6.3",[123,21,124,87,23],"chip","gravity-forms","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fchip-for-gravity-forms\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fchip-for-gravity-forms.1.2.0.zip",{"attackSurface":128,"codeSignals":350,"taintFlows":737,"riskAssessment":780,"analyzedAt":788},{"hooks":129,"ajaxHandlers":317,"restRoutes":346,"shortcodes":347,"cronEvents":348,"entryPointCount":349,"unprotectedCount":81},[130,136,138,141,144,146,152,155,158,163,168,173,177,180,184,189,192,197,201,204,209,213,216,220,223,226,230,233,235,239,242,247,249,252,256,260,264,268,272,274,277,280,282,286,290,294,296,298,303,308,311,314],{"type":131,"name":132,"callback":133,"file":134,"line":135},"action","admin_notices","closure","bayarcash-for-fluent-forms.php",26,{"type":131,"name":132,"callback":133,"file":134,"line":137},39,{"type":131,"name":139,"callback":133,"file":134,"line":140},"wp_enqueue_scripts",104,{"type":131,"name":142,"callback":133,"priority":13,"file":134,"line":143},"init",152,{"type":131,"name":132,"callback":133,"file":134,"line":145},156,{"type":147,"name":148,"callback":149,"file":150,"line":151},"filter","fluentform\u002Fpayment_field_types","registerAsPaymentField","includes\\add-gateway-fee.php",19,{"type":147,"name":153,"callback":154,"file":150,"line":118},"fluent_editor_init_payment_field_types","addFieldIcon",{"type":131,"name":156,"callback":133,"file":150,"line":157},"fluentform\u002Floaded",90,{"type":147,"name":159,"callback":160,"file":161,"line":162},"fluentform\u002Favailable_payment_methods","push","includes\\class-register.php",18,{"type":131,"name":139,"callback":164,"priority":165,"file":166,"line":167},"collect_output_css_and_typography",10,"includes\\codestar-framework\\classes\\abstract.class.php",21,{"type":131,"name":169,"callback":170,"file":171,"line":172},"admin_menu","add_admin_menu","includes\\codestar-framework\\classes\\admin-options.class.php",107,{"type":131,"name":174,"callback":175,"file":171,"line":176},"admin_bar_menu","add_admin_bar_menu",108,{"type":131,"name":178,"callback":170,"file":171,"line":179},"network_admin_menu",112,{"type":147,"name":181,"callback":182,"file":171,"line":183},"admin_footer_text","add_admin_footer_text",432,{"type":131,"name":185,"callback":186,"file":187,"line":188},"add_meta_boxes_comment","add_comment_meta_box","includes\\codestar-framework\\classes\\comment-options.class.php",38,{"type":131,"name":190,"callback":191,"file":187,"line":137},"edit_comment","save_comment_meta_box",{"type":131,"name":193,"callback":194,"file":195,"line":196},"customize_register","add_customize_options","includes\\codestar-framework\\classes\\customize-options.class.php",44,{"type":131,"name":198,"callback":199,"file":195,"line":200},"customize_save_after","add_customize_save_after",45,{"type":131,"name":139,"callback":202,"file":195,"line":203},"get_options",49,{"type":131,"name":205,"callback":206,"file":207,"line":208},"add_meta_boxes","add_meta_box","includes\\codestar-framework\\classes\\metabox-options.class.php",50,{"type":131,"name":210,"callback":211,"file":207,"line":212},"save_post","save_meta_box",51,{"type":131,"name":214,"callback":211,"file":207,"line":215},"edit_attachment",52,{"type":131,"name":217,"callback":217,"priority":165,"file":218,"line":219},"wp_nav_menu_item_custom_fields","includes\\codestar-framework\\classes\\nav-menu-options.class.php",32,{"type":131,"name":221,"callback":221,"priority":165,"file":218,"line":222},"wp_update_nav_menu_item",33,{"type":147,"name":224,"callback":224,"priority":165,"file":218,"line":225},"wp_edit_nav_menu_walker",35,{"type":131,"name":227,"callback":228,"file":229,"line":219},"admin_init","add_profile_options","includes\\codestar-framework\\classes\\profile-options.class.php",{"type":131,"name":231,"callback":232,"file":229,"line":196},"show_user_profile","render_profile_form_fields",{"type":131,"name":234,"callback":232,"file":229,"line":200},"edit_user_profile",{"type":131,"name":236,"callback":237,"file":229,"line":238},"personal_options_update","save_profile",47,{"type":131,"name":240,"callback":237,"file":229,"line":241},"edit_user_profile_update",48,{"type":131,"name":243,"callback":244,"file":245,"line":246},"after_setup_theme","setup","includes\\codestar-framework\\classes\\setup.class.php",73,{"type":131,"name":142,"callback":244,"file":245,"line":248},74,{"type":131,"name":250,"callback":244,"file":245,"line":251},"switch_theme",75,{"type":131,"name":253,"callback":254,"file":245,"line":255},"admin_enqueue_scripts","add_admin_enqueue_scripts",76,{"type":131,"name":139,"callback":257,"priority":258,"file":245,"line":259},"add_typography_enqueue_styles",80,77,{"type":131,"name":261,"callback":262,"priority":258,"file":245,"line":263},"wp_head","add_custom_css",78,{"type":147,"name":265,"callback":266,"file":245,"line":267},"admin_body_class","add_admin_body_class",79,{"type":131,"name":269,"callback":270,"file":271,"line":238},"admin_footer","add_footer_modal_shortcode","includes\\codestar-framework\\classes\\shortcode-options.class.php",{"type":131,"name":273,"callback":270,"file":271,"line":241},"customize_controls_print_footer_scripts",{"type":131,"name":275,"callback":254,"file":271,"line":276},"elementor\u002Feditor\u002Fbefore_enqueue_scripts",59,{"type":131,"name":278,"callback":279,"file":271,"line":11},"elementor\u002Feditor\u002Ffooter","add_footer_modal_icon",{"type":131,"name":278,"callback":270,"file":271,"line":281},61,{"type":131,"name":283,"callback":284,"file":271,"line":285},"enqueue_block_editor_assets","add_guteberg_blocks",258,{"type":131,"name":287,"callback":288,"file":271,"line":289},"media_buttons","add_media_buttons",262,{"type":131,"name":227,"callback":291,"file":292,"line":293},"add_taxonomy_options","includes\\codestar-framework\\classes\\taxonomy-options.class.php",41,{"type":131,"name":269,"callback":279,"file":295,"line":293},"includes\\codestar-framework\\fields\\icon\\icon.php",{"type":131,"name":273,"callback":279,"file":295,"line":297},42,{"type":131,"name":299,"callback":300,"file":301,"line":302},"admin_print_footer_scripts","add_wp_link_dialog","includes\\codestar-framework\\fields\\link\\link.php",65,{"type":131,"name":304,"callback":305,"file":306,"line":307},"print_default_editor_scripts","setup_wp_editor_media_buttons","includes\\codestar-framework\\fields\\wp_editor\\wp_editor.php",62,{"type":131,"name":169,"callback":309,"priority":13,"file":310,"line":151},"add_about_menu","includes\\codestar-framework\\views\\welcome.php",{"type":147,"name":312,"callback":313,"priority":165,"file":310,"line":118},"plugin_action_links","add_plugin_action_links",{"type":147,"name":315,"callback":316,"priority":165,"file":310,"line":167},"plugin_row_meta","add_plugin_row_meta",[318,323,325,330,334,338,342],{"action":319,"nopriv":320,"callback":133,"hasNonce":320,"hasCapCheck":320,"file":321,"line":322},"save_bayarcash_settings",false,"includes\\admin\\global-settings.php",99,{"action":324,"nopriv":320,"callback":133,"hasNonce":320,"hasCapCheck":320,"file":321,"line":176},"verify_bayarcash_token",{"action":326,"nopriv":320,"callback":327,"hasNonce":328,"hasCapCheck":320,"file":329,"line":208},"csf-get-icons","csf_get_icons",true,"includes\\codestar-framework\\functions\\actions.php",{"action":331,"nopriv":320,"callback":332,"hasNonce":328,"hasCapCheck":320,"file":329,"line":333},"csf-export","csf_export",87,{"action":335,"nopriv":320,"callback":336,"hasNonce":328,"hasCapCheck":320,"file":329,"line":337},"csf-import","csf_import_ajax",123,{"action":339,"nopriv":320,"callback":340,"hasNonce":328,"hasCapCheck":320,"file":329,"line":341},"csf-reset","csf_reset_ajax",150,{"action":343,"nopriv":320,"callback":344,"hasNonce":328,"hasCapCheck":328,"file":329,"line":345},"csf-chosen","csf_chosen_ajax",189,[],[],[],7,{"dangerousFunctions":351,"sqlUsage":352,"outputEscaping":354,"fileOperations":13,"externalRequests":81,"nonceChecks":732,"capabilityChecks":81,"bundledLibraries":733},[],{"prepared":81,"raw":13,"locations":353},[],{"escaped":355,"rawEcho":356,"locations":357},554,232,[358,361,362,365,367,369,371,373,375,377,379,381,383,385,387,389,391,393,395,397,399,401,403,405,407,409,411,413,415,417,419,421,422,424,426,429,430,432,434,435,438,439,441,442,444,447,449,450,451,454,455,456,457,459,460,462,464,466,467,469,471,472,474,475,476,478,480,482,484,485,486,487,489,490,491,492,494,496,497,499,500,502,504,506,507,509,510,511,512,514,515,516,517,519,521,523,525,527,528,529,530,531,533,534,536,537,538,539,540,541,542,543,545,547,548,550,552,553,554,556,558,559,560,562,564,565,566,568,569,570,572,573,574,575,577,579,581,582,583,584,585,586,587,589,591,593,594,596,598,599,600,602,603,606,608,610,611,612,614,616,617,618,620,622,623,624,625,627,628,629,631,632,633,635,636,637,638,640,641,643,645,646,648,650,652,654,656,658,659,661,663,665,667,669,671,673,675,677,679,681,683,685,687,688,689,690,692,693,694,695,696,697,698,699,701,703,705,706,707,709,710,711,713,715,716,718,720,722,724,726,728,730],{"file":150,"line":359,"context":360},81,"raw output",{"file":150,"line":109,"context":360},{"file":363,"line":364,"context":360},"includes\\class-purchase.php",632,{"file":171,"line":366,"context":360},499,{"file":171,"line":368,"context":360},507,{"file":171,"line":370,"context":360},516,{"file":171,"line":372,"context":360},545,{"file":171,"line":374,"context":360},555,{"file":171,"line":376,"context":360},565,{"file":171,"line":378,"context":360},616,{"file":171,"line":380,"context":360},639,{"file":187,"line":382,"context":360},136,{"file":187,"line":384,"context":360},184,{"file":187,"line":386,"context":360},201,{"file":187,"line":388,"context":360},202,{"file":207,"line":390,"context":360},209,{"file":207,"line":392,"context":360},261,{"file":207,"line":394,"context":360},278,{"file":207,"line":396,"context":360},279,{"file":245,"line":398,"context":360},696,{"file":245,"line":400,"context":360},756,{"file":245,"line":402,"context":360},762,{"file":245,"line":404,"context":360},778,{"file":245,"line":406,"context":360},782,{"file":271,"line":408,"context":360},101,{"file":271,"line":410,"context":360},124,{"file":271,"line":412,"context":360},138,{"file":271,"line":414,"context":360},154,{"file":271,"line":416,"context":360},240,{"file":271,"line":418,"context":360},247,{"file":420,"line":167,"context":360},"includes\\codestar-framework\\fields\\accordion\\accordion.php",{"file":420,"line":276,"context":360},{"file":423,"line":307,"context":360},"includes\\codestar-framework\\fields\\background\\background.php",{"file":423,"line":425,"context":360},287,{"file":427,"line":428,"context":360},"includes\\codestar-framework\\fields\\backup\\backup.php",23,{"file":427,"line":135,"context":360},{"file":427,"line":431,"context":360},29,{"file":427,"line":433,"context":360},31,{"file":427,"line":222,"context":360},{"file":436,"line":437,"context":360},"includes\\codestar-framework\\fields\\border\\border.php",66,{"file":436,"line":255,"context":360},{"file":436,"line":440,"context":360},98,{"file":436,"line":337,"context":360},{"file":436,"line":443,"context":360},128,{"file":445,"line":446,"context":360},"includes\\codestar-framework\\fields\\button_set\\button_set.php",27,{"file":445,"line":448,"context":360},46,{"file":445,"line":238,"context":360},{"file":445,"line":307,"context":360},{"file":452,"line":453,"context":360},"includes\\codestar-framework\\fields\\checkbox\\checkbox.php",28,{"file":452,"line":188,"context":360},{"file":452,"line":212,"context":360},{"file":452,"line":302,"context":360},{"file":452,"line":458,"context":360},89,{"file":452,"line":157,"context":360},{"file":452,"line":461,"context":360},96,{"file":463,"line":222,"context":360},"includes\\codestar-framework\\fields\\code_editor\\code_editor.php",{"file":463,"line":465,"context":360},34,{"file":463,"line":225,"context":360},{"file":468,"line":167,"context":360},"includes\\codestar-framework\\fields\\color\\color.php",{"file":468,"line":470,"context":360},22,{"file":468,"line":428,"context":360},{"file":473,"line":167,"context":360},"includes\\codestar-framework\\fields\\color_group\\color_group.php",{"file":473,"line":32,"context":360},{"file":473,"line":433,"context":360},{"file":473,"line":477,"context":360},37,{"file":479,"line":167,"context":360},"includes\\codestar-framework\\fields\\content\\content.php",{"file":481,"line":135,"context":360},"includes\\codestar-framework\\fields\\date\\date.php",{"file":481,"line":483,"context":360},40,{"file":481,"line":293,"context":360},{"file":481,"line":200,"context":360},{"file":481,"line":212,"context":360},{"file":488,"line":433,"context":360},"includes\\codestar-framework\\fields\\datetime\\datetime.php",{"file":488,"line":200,"context":360},{"file":488,"line":448,"context":360},{"file":488,"line":208,"context":360},{"file":488,"line":493,"context":360},56,{"file":495,"line":293,"context":360},"includes\\codestar-framework\\fields\\dimensions\\dimensions.php",{"file":495,"line":203,"context":360},{"file":495,"line":498,"context":360},58,{"file":495,"line":255,"context":360},{"file":501,"line":151,"context":360},"includes\\codestar-framework\\fields\\fieldset\\fieldset.php",{"file":501,"line":503,"context":360},36,{"file":505,"line":446,"context":360},"includes\\codestar-framework\\fields\\gallery\\gallery.php",{"file":505,"line":297,"context":360},{"file":505,"line":508,"context":360},43,{"file":505,"line":196,"context":360},{"file":505,"line":200,"context":360},{"file":505,"line":238,"context":360},{"file":513,"line":293,"context":360},"includes\\codestar-framework\\fields\\group\\group.php",{"file":513,"line":200,"context":360},{"file":513,"line":215,"context":360},{"file":513,"line":172,"context":360},{"file":513,"line":518,"context":360},141,{"file":513,"line":520,"context":360},142,{"file":513,"line":522,"context":360},143,{"file":513,"line":524,"context":360},145,{"file":295,"line":526,"context":360},24,{"file":295,"line":433,"context":360},{"file":295,"line":219,"context":360},{"file":295,"line":222,"context":360},{"file":295,"line":503,"context":360},{"file":532,"line":431,"context":360},"includes\\codestar-framework\\fields\\image_select\\image_select.php",{"file":532,"line":238,"context":360},{"file":532,"line":535,"context":360},57,{"file":301,"line":477,"context":360},{"file":301,"line":293,"context":360},{"file":301,"line":508,"context":360},{"file":301,"line":238,"context":360},{"file":301,"line":241,"context":360},{"file":301,"line":203,"context":360},{"file":301,"line":212,"context":360},{"file":544,"line":200,"context":360},"includes\\codestar-framework\\fields\\link_color\\link_color.php",{"file":544,"line":546,"context":360},55,{"file":544,"line":307,"context":360},{"file":549,"line":203,"context":360},"includes\\codestar-framework\\fields\\map\\map.php",{"file":549,"line":551,"context":360},53,{"file":549,"line":276,"context":360},{"file":549,"line":259,"context":360},{"file":555,"line":281,"context":360},"includes\\codestar-framework\\fields\\media\\media.php",{"file":555,"line":557,"context":360},70,{"file":555,"line":263,"context":360},{"file":555,"line":267,"context":360},{"file":555,"line":561,"context":360},91,{"file":563,"line":135,"context":360},"includes\\codestar-framework\\fields\\number\\number.php",{"file":563,"line":453,"context":360},{"file":563,"line":433,"context":360},{"file":567,"line":167,"context":360},"includes\\codestar-framework\\fields\\palette\\palette.php",{"file":567,"line":196,"context":360},{"file":567,"line":551,"context":360},{"file":571,"line":135,"context":360},"includes\\codestar-framework\\fields\\radio\\radio.php",{"file":571,"line":225,"context":360},{"file":571,"line":241,"context":360},{"file":571,"line":307,"context":360},{"file":571,"line":576,"context":360},82,{"file":571,"line":578,"context":360},88,{"file":580,"line":446,"context":360},"includes\\codestar-framework\\fields\\repeater\\repeater.php",{"file":580,"line":433,"context":360},{"file":580,"line":241,"context":360},{"file":580,"line":255,"context":360},{"file":580,"line":458,"context":360},{"file":580,"line":157,"context":360},{"file":580,"line":561,"context":360},{"file":580,"line":588,"context":360},93,{"file":590,"line":433,"context":360},"includes\\codestar-framework\\fields\\select\\select.php",{"file":590,"line":592,"context":360},67,{"file":590,"line":267,"context":360},{"file":590,"line":595,"context":360},119,{"file":597,"line":453,"context":360},"includes\\codestar-framework\\fields\\slider\\slider.php",{"file":597,"line":222,"context":360},{"file":597,"line":188,"context":360},{"file":601,"line":151,"context":360},"includes\\codestar-framework\\fields\\sortable\\sortable.php",{"file":601,"line":248,"context":360},{"file":604,"line":605,"context":360},"includes\\codestar-framework\\fields\\sorter\\sorter.php",25,{"file":604,"line":607,"context":360},63,{"file":609,"line":551,"context":360},"includes\\codestar-framework\\fields\\spacing\\spacing.php",{"file":609,"line":607,"context":360},{"file":609,"line":109,"context":360},{"file":609,"line":613,"context":360},106,{"file":615,"line":135,"context":360},"includes\\codestar-framework\\fields\\spinner\\spinner.php",{"file":615,"line":453,"context":360},{"file":615,"line":32,"context":360},{"file":619,"line":167,"context":360},"includes\\codestar-framework\\fields\\submessage\\submessage.php",{"file":621,"line":526,"context":360},"includes\\codestar-framework\\fields\\switcher\\switcher.php",{"file":621,"line":135,"context":360},{"file":621,"line":32,"context":360},{"file":621,"line":225,"context":360},{"file":626,"line":167,"context":360},"includes\\codestar-framework\\fields\\tabbed\\tabbed.php",{"file":626,"line":431,"context":360},{"file":626,"line":276,"context":360},{"file":630,"line":167,"context":360},"includes\\codestar-framework\\fields\\text\\text.php",{"file":630,"line":428,"context":360},{"file":630,"line":605,"context":360},{"file":634,"line":151,"context":360},"includes\\codestar-framework\\fields\\textarea\\textarea.php",{"file":634,"line":118,"context":360},{"file":634,"line":167,"context":360},{"file":634,"line":470,"context":360},{"file":639,"line":428,"context":360},"includes\\codestar-framework\\fields\\typography\\typography.php",{"file":639,"line":461,"context":360},{"file":639,"line":642,"context":360},97,{"file":639,"line":644,"context":360},105,{"file":639,"line":613,"context":360},{"file":639,"line":647,"context":360},130,{"file":639,"line":649,"context":360},146,{"file":639,"line":651,"context":360},158,{"file":639,"line":653,"context":360},160,{"file":639,"line":655,"context":360},168,{"file":639,"line":657,"context":360},169,{"file":639,"line":384,"context":360},{"file":639,"line":660,"context":360},185,{"file":639,"line":662,"context":360},197,{"file":639,"line":664,"context":360},198,{"file":639,"line":666,"context":360},211,{"file":639,"line":668,"context":360},212,{"file":639,"line":670,"context":360},233,{"file":639,"line":672,"context":360},245,{"file":639,"line":674,"context":360},257,{"file":639,"line":676,"context":360},269,{"file":639,"line":678,"context":360},284,{"file":639,"line":680,"context":360},286,{"file":639,"line":682,"context":360},295,{"file":639,"line":684,"context":360},316,{"file":686,"line":453,"context":360},"includes\\codestar-framework\\fields\\upload\\upload.php",{"file":686,"line":196,"context":360},{"file":686,"line":215,"context":360},{"file":686,"line":551,"context":360},{"file":686,"line":691,"context":360},54,{"file":686,"line":535,"context":360},{"file":306,"line":297,"context":360},{"file":306,"line":448,"context":360},{"file":306,"line":208,"context":360},{"file":306,"line":576,"context":360},{"file":329,"line":293,"context":360},{"file":329,"line":576,"context":360},{"file":700,"line":60,"context":360},"includes\\codestar-framework\\functions\\customize.php",{"file":700,"line":702,"context":360},133,{"file":704,"line":691,"context":360},"includes\\codestar-framework\\samples\\widget-options.php",{"file":704,"line":307,"context":360},{"file":704,"line":607,"context":360},{"file":704,"line":708,"context":360},64,{"file":704,"line":302,"context":360},{"file":704,"line":437,"context":360},{"file":704,"line":712,"context":360},69,{"file":704,"line":714,"context":360},161,{"file":704,"line":657,"context":360},{"file":704,"line":717,"context":360},170,{"file":704,"line":719,"context":360},171,{"file":704,"line":721,"context":360},172,{"file":704,"line":723,"context":360},173,{"file":704,"line":725,"context":360},174,{"file":704,"line":727,"context":360},175,{"file":704,"line":729,"context":360},176,{"file":704,"line":731,"context":360},179,14,[734],{"name":735,"version":27,"knownCves":736},"Guzzle",[],[738,754,767],{"entryPoint":739,"graph":740,"unsanitizedCount":13,"severity":753},"csf_export (includes\\codestar-framework\\functions\\actions.php:62)",{"nodes":741,"edges":751},[742,746],{"id":743,"type":744,"label":745,"file":329,"line":302},"n0","source","$_GET",{"id":747,"type":748,"label":749,"file":329,"line":576,"wp_function":750},"n1","sink","echo() [XSS]","echo",[752],{"from":743,"to":747,"sanitized":328},"low",{"entryPoint":755,"graph":756,"unsanitizedCount":13,"severity":753},"csf_import_ajax (includes\\codestar-framework\\functions\\actions.php:99)",{"nodes":757,"edges":765},[758,761],{"id":743,"type":744,"label":759,"file":329,"line":760},"$_POST (x2)",102,{"id":747,"type":748,"label":762,"file":329,"line":763,"wp_function":764},"update_option() [Settings Manipulation]",118,"update_option",[766],{"from":743,"to":747,"sanitized":328},{"entryPoint":768,"graph":769,"unsanitizedCount":13,"severity":753},"\u003Cactions> (includes\\codestar-framework\\functions\\actions.php:0)",{"nodes":770,"edges":777},[771,772,773,775],{"id":743,"type":744,"label":745,"file":329,"line":302},{"id":747,"type":748,"label":749,"file":329,"line":576,"wp_function":750},{"id":774,"type":744,"label":759,"file":329,"line":760},"n2",{"id":776,"type":748,"label":762,"file":329,"line":763,"wp_function":764},"n3",[778,779],{"from":743,"to":747,"sanitized":328},{"from":774,"to":776,"sanitized":328},{"summary":781,"deductions":782},"The \"bayarcash-for-fluent-forms\" plugin version 2.0.4 exhibits a mixed security posture. On the positive side, the plugin demonstrates good practices by utilizing prepared statements for all SQL queries, having no recorded vulnerabilities (CVEs), and performing a significant number of output escaps. The absence of dangerous functions and file operations is also commendable. However, there are notable concerns regarding its attack surface. The plugin exposes 7 AJAX handlers, with 2 of them lacking proper authentication checks. This is a significant risk as it could allow unauthenticated users to trigger potentially sensitive actions. While taint analysis revealed no critical or high severity unsanitized paths, the unprotected AJAX endpoints create an avenue for exploitation that could be amplified if sensitive data is processed or modified through them. The presence of 14 nonce checks and 2 capability checks is positive, but they are not applied to all entry points, particularly the 2 AJAX handlers. The plugin's history of zero known vulnerabilities is a strong indicator of generally sound development, but the current findings of unprotected AJAX handlers suggest that continued vigilance is necessary.",[783,785],{"reason":784,"points":165},"AJAX handlers without auth checks",{"reason":786,"points":787},"Moderate output escaping coverage (70%)",4,"2026-03-16T21:50:31.142Z",{"wat":790,"direct":799},{"assetPaths":791,"generatorPatterns":794,"scriptPaths":795,"versionParams":797},[792,793],"\u002Fwp-content\u002Fplugins\u002Fbayarcash-for-fluent-forms\u002Fincludes\u002Fjs\u002Fbayarcash-fluent-forms.js","\u002Fwp-content\u002Fplugins\u002Fbayarcash-for-fluent-forms\u002Fincludes\u002Fcodestar-framework\u002Fclasses\u002Fsetup.class.php",[],[796],"includes\u002Fjs\u002Fbayarcash-fluent-forms.js",[798],"bayarcash-fluent-forms.js?ver=",{"cssClasses":800,"htmlComments":801,"htmlAttributes":802,"restEndpoints":803,"jsGlobals":804,"shortcodeOutput":806},[],[],[],[],[805],"bayarcashFF",[]]