Bayarcash for FluentCart Security & Risk Analysis

wordpress.org/plugins/bayarcash-for-fluentcart

Accept payments via Bayarcash payment gateway for FluentCart. Supports FPX, DuitNow QR, and other Malaysian payment methods.

0 active installs v1.0.0 PHP 7.4+ WP 5.0+ Updated Unknown
bayarcashduitnowfluentcartfpxpayment-gateway
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Bayarcash for FluentCart Safe to Use in 2026?

Generally Safe

Score 100/100

Bayarcash for FluentCart has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs
Risk Assessment

The "bayarcash-for-fluentcart" v1.0.0 plugin exhibits a strong security posture based on the provided static analysis. The absence of any identified dangerous functions, external HTTP requests, file operations, and SQL queries not using prepared statements are all positive indicators. The low number of entry points and the fact that none are unprotected further bolster its security. The output escaping rate of 85% is also commendable, though there's room for improvement.

However, a significant concern arises from the complete lack of nonce checks and capability checks. While the attack surface appears minimal in terms of entry points, these security mechanisms are fundamental for protecting against various types of attacks, including CSRF and unauthorized actions, especially if any new entry points are introduced or if existing ones are implicitly used. The vulnerability history shows no recorded issues, which is excellent, but it's crucial to remember that this indicates past performance and doesn't guarantee future invulnerability. The presence of Guzzle as a bundled library, while common, warrants monitoring for potential vulnerabilities in that specific library itself.

Overall, the plugin demonstrates good foundational security practices with respect to data handling and entry point protection. The primary area for improvement and potential risk lies in the absence of robust authorization checks (nonces and capabilities) on its functionalities, even with the current limited attack surface. Continuous monitoring of bundled libraries and vigilance in adding these missing security checks will be key to maintaining its secure status.

Key Concerns

  • Missing nonce checks
  • Missing capability checks
  • Bundled library (Guzzle) needs monitoring
  • 15% of outputs not properly escaped
Vulnerabilities
None known

Bayarcash for FluentCart Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Bayarcash for FluentCart Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
3
17 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
1

Bundled Libraries

Guzzle

Output Escaping

85% escaped20 total outputs
Attack Surface

Bayarcash for FluentCart Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 5
actionadmin_noticesbayarcash-for-fluentcart.php:24
actionfluent_cart/register_payment_methodsbayarcash-for-fluentcart.php:36
actiontemplate_redirectbayarcash-for-fluentcart.php:45
actionadmin_noticesbayarcash-for-fluentcart.php:57
filterfluent_cart/payment_methods_with_custom_checkout_buttonsincludes\BayarcashGateway.php:22
Maintenance & Trust

Bayarcash for FluentCart Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedUnknown
PHP min version7.4
Downloads165

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Bayarcash for FluentCart Developer Profile

Bayarcash

3 plugins · 60 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Bayarcash for FluentCart

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/bayarcash-for-fluentcart/assets/img/bayarcash-icon.png
Version Parameters
bayarcash-for-fluentcart/assets/img/bayarcash-icon.png?ver=

HTML / DOM Fingerprints

CSS Classes
bayarcash-iconbayarcash-logo
Data Attributes
data-payment-gateway="bayarcash"
FAQ

Frequently Asked Questions about Bayarcash for FluentCart