[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fbTXAuh388cLYWyxsukd0K4kxIwVo4WGOTVQ4n41ejeM":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":13,"last_updated":14,"tested_up_to":15,"requires_at_least":16,"requires_php":17,"tags":18,"homepage":24,"download_link":25,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28,"vulnerabilities":29,"developer":30,"crawl_stats":27,"alternatives":36,"analysis":125,"fingerprints":169},"billingotomatis-payment-gateway-indonesia","Billingotomatis – Tren Otomatisasi Indonesia","20210107","Ahlul Faradish","https:\u002F\u002Fprofiles.wordpress.org\u002Fahlul\u002F","\u003Cp>Billingotomatis.com merupakan penyedia layanan pengecekan mutasi ke bank-bank poluler seperti: BCA, MANDIRI, BSM, MANDIRI INTERNET BISNIS (MIB), BRI, BNI, SINARMAS, DANAMON (dan terus berkembang).\u003C\u002Fp>\n\u003Cp>Billingotomatis.com sudah dipercaya oleh banyak dipakai terutama oleh pebisnis online bertahun-tahun karena terbukti mempermudah pengecekan mutasi, dan melakukan otomatis transaksi.\u003C\u002Fp>\n\u003Cp>Sudah jutaan menit yang telah dihemat oleh billingotomatis.com 🙂\u003C\u002Fp>\n\u003Cp>Kenapa billingotomatis? Karena sistem billingotomatis membuat pengeluaran Anda jauh lebih kecil dibandingkan memakai payment gateway lainnya yang ber basis biaya pertransaksi.\u003Cbr \u002F>\nDan pembayaran langsung masuk ke rekening Anda, tanpa perantara.\u003C\u002Fp>\n\u003Cp>Tersedia payment gateway untuk woocomerce juga:\u003Cbr \u002F>\nhttps:\u002F\u002Fwordpress.org\u002Fplugins\u002Fbillingotomatis-woocommerce-payment-gateway\u002F\u003C\u002Fp>\n\u003Cp>Selain payment gateway, billingotomatis menyediakan WA gateway juga. WA Gateway bisa mengirim WA secara otomatis\u003C\u002Fp>\n","Billingotomatis merupakan layanan yang bisa membuat bisnis Anda menjadi otomatis, menghemat waktu, dan menambah prestise bisnis Anda.",20,6882,0,"2021-01-07T10:17:00.000Z","5.6.17","3.0.1","",[19,20,21,22,23],"bca","indonesia","mandiri","payment-gateway","woocomerce","https:\u002F\u002Fwww.billingotomatis.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fbillingotomatis-payment-gateway-indonesia.20210107.zip",85,null,"2026-03-15T15:16:48.613Z",[],{"slug":31,"display_name":7,"profile_url":8,"plugin_count":32,"total_installs":11,"avg_security_score":26,"avg_patch_time_days":33,"trust_score":34,"computed_at":35},"ahlul",1,30,84,"2026-04-04T11:13:38.639Z",[37,59,81,99,114],{"slug":38,"name":39,"version":40,"author":41,"author_profile":42,"description":43,"short_description":44,"active_installs":45,"downloaded":46,"rating":47,"num_ratings":48,"last_updated":49,"tested_up_to":50,"requires_at_least":51,"requires_php":17,"tags":52,"homepage":17,"download_link":56,"security_score":57,"vuln_count":32,"unpatched_count":13,"last_vuln_date":58,"fetched_at":28},"duitku-social-payment-gateway","Duitku Payment Gateway","2.11.14","rayhanduitku","https:\u002F\u002Fprofiles.wordpress.org\u002Frayhanduitku\u002F","\u003Cp>Do you want the best solution to accept Credit Cards, e-wallet, and Various Bank Transfers on your website? Our Payment Gateway for WooCommerce plugin integrates with your WooCommerce store and lets you accept those payments through our payment gateway.\u003Cbr \u002F>\nSecurely accept major credit cards, View and manage transactions from one convenient place – your Duitku dashboard.\u003C\u002Fp>\n\u003Cp>Supported Payment Channels :\u003C\u002Fp>\n\u003Col>\n\u003Cli>Credit Card Aggregator full-payment (Visa, Master, JCB)\u003C\u002Fli>\n\u003Cli>Credit Card Facilitator installment and full-payment (Visa, Master, JCB, AMEX)\u003C\u002Fli>\n\u003Cli>BCA KlikPay\u003C\u002Fli>\n\u003Cli>BCA Virtual Account\u003C\u002Fli>\n\u003Cli>Mandiri Virtual Account\u003C\u002Fli>\n\u003Cli>Permata Bank Virtual Account\u003C\u002Fli>\n\u003Cli>ATM Bersama\u003C\u002Fli>\n\u003Cli>CIMB Niaga Virtual Account\u003C\u002Fli>\n\u003Cli>BNI Virtual Account\u003C\u002Fli>\n\u003Cli>Maybank Virtual Account\u003C\u002Fli>\n\u003Cli>Retail (Alfamart,  Pegadaian and Pos Indonesia)\u003C\u002Fli>\n\u003Cli>OVO\u003C\u002Fli>\n\u003Cli>Indodana Paylater\u003C\u002Fli>\n\u003Cli>Shopee Pay\u003C\u002Fli>\n\u003Cli>Shopee Pay Apps\u003C\u002Fli>\n\u003Cli>Bank Artha Graha\u003C\u002Fli>\n\u003Cli>LinkAja Apps (Percentage Fee)\u003C\u002Fli>\n\u003Cli>LinkAja Apps (Fixed Fee)\u003C\u002Fli>\n\u003Cli>DANA\u003C\u002Fli>\n\u003Cli>LinkAja QRIS\u003C\u002Fli>\n\u003Cli>Indomaret\u003C\u002Fli>\n\u003Cli>PosPay\u003C\u002Fli>\n\u003Cli>BNC\u003C\u002Fli>\n\u003Cli>BRIVA\u003C\u002Fli>\n\u003Cli>QRIS by Nobu\u003C\u002Fli>\n\u003Cli>ATOME\u003C\u002Fli>\n\u003Cli>Gudang Voucher QRIS\u003C\u002Fli>\n\u003Cli>Jenius Pay\u003C\u002Fli>\n\u003Cli>Bank Sahabat Sampoerna\u003C\u002Fli>\n\u003Cli>Danamon Virtual Account\u003C\u002Fli>\n\u003Cli>BSI Virtual Account\u003C\u002Fli>\n\u003Cli>Nusapay QRIS\u003C\u002Fli>\n\u003Cli>Tokopedia Card Payment\u003C\u002Fli>\n\u003Cli>Tokopedia E-Wallet\u003C\u002Fli>\n\u003Cli>Tokopedia Others\u003C\u002Fli>\n\u003C\u002Fol>\n","Do you want the best solution to accept Credit Cards, e-wallet, and Various Bank Transfers on your website? Our Payment Gateway for WooCommerce plugin &hellip;",800,22673,80,2,"2026-03-03T03:24:00.000Z","6.7.5","4.7",[19,53,54,21,55],"bri","duitku","paymentgateway","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fduitku-social-payment-gateway.2.11.14.zip",100,"2024-02-26 00:00:00",{"slug":60,"name":61,"version":62,"author":63,"author_profile":64,"description":65,"short_description":66,"active_installs":67,"downloaded":68,"rating":13,"num_ratings":13,"last_updated":69,"tested_up_to":70,"requires_at_least":71,"requires_php":72,"tags":73,"homepage":77,"download_link":78,"security_score":79,"vuln_count":32,"unpatched_count":13,"last_vuln_date":80,"fetched_at":28},"ipaymu-for-woocommerce","iPaymu Payment Gateway for WooCommerce","2.0.3","iPaymu","https:\u002F\u002Fprofiles.wordpress.org\u002Fipaymu\u002F","\u003Cp>This plugin integrates iPaymu Indonesia’s payment system into WooCommerce.\u003Cbr \u002F>\nIt supports Virtual Accounts, QRIS, Retail Payments (Alfamart\u002FIndomaret), Credit Card, Direct Debit, and more.\u003C\u002Fp>\n\u003Cp>To use this plugin, you need an active iPaymu account along with your API Key and Virtual Account number.\u003C\u002Fp>\n\u003Ch3>Webhook Endpoint\u003C\u002Fh3>\n\u003Cp>The plugin exposes a webhook endpoint used for server-to-server notifications from iPaymu.\u003Cbr \u002F>\nUse the following query parameter on your site URL to deliver notifications to the plugin:\u003C\u002Fp>\n\u003Cpre>\u003Ccode>?wc-api=Ipaymu_WC_Gateway\n\u003C\u002Fcode>\u003C\u002Fpre>\n\u003Cp>Example: \u003Ccode>https:\u002F\u002Fexample.com\u002F?wc-api=Ipaymu_WC_Gateway\u003C\u002Fcode>\u003C\u002Fp>\n\u003Cp>If you’re upgrading from older plugin versions that used \u003Ccode>?wc-api=WC_Gateway_iPaymu\u003C\u002Fcode>,\u003Cbr \u002F>\nplease update any external webhook configuration to use the new endpoint so that\u003Cbr \u002F>\nnotifications continue to be delivered.\u003C\u002Fp>\n\u003Ch3>License\u003C\u002Fh3>\n\u003Cp>GPLv2 or later.\u003C\u002Fp>\n","iPaymu Payment Gateway for WooCommerce enables secure payments via Virtual Account, QRIS, Minimarket, Credit Card, and Direct Debit in Indonesia.",40,245,"2025-12-30T14:09:00.000Z","6.9.4","6.0","7.4",[74,75,20,76,22],"checkout","ecommerce","payment","https:\u002F\u002Fgithub.com\u002Fipaymu\u002Fipaymu-for-woocommerce","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fipaymu-for-woocommerce.2.0.3.zip",97,"2026-01-06 18:32:55",{"slug":82,"name":83,"version":84,"author":85,"author_profile":86,"description":87,"short_description":88,"active_installs":33,"downloaded":89,"rating":90,"num_ratings":32,"last_updated":91,"tested_up_to":70,"requires_at_least":92,"requires_php":17,"tags":93,"homepage":97,"download_link":98,"security_score":57,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28},"betterpay","Betterpay for WooCommerce","1.2.4","Shahrul","https:\u002F\u002Fprofiles.wordpress.org\u002Fshahrul1995\u002F","\u003Cp>Introducing Betterpay, a versatile payment gateway plugin designed for WooCommerce. Empower your customers to make payments seamlessly using Online Banking, Credit\u002FDebit Cards, e-Wallets, and BNPL Instalment Plans. With support for a wide array of payment methods and currencies, including flexible rates sourced from reputable financial institutions across the ASEAN region. Explore our website at https:\u002F\u002Fwww.betterpay.me\u002F for hassle-free account registration and start maximizing your online transactions today.\u003C\u002Fp>\n","Betterpay payment gateway plugin for WooCommerce.",4635,60,"2025-11-28T02:02:00.000Z","4.3",[20,94,22,95,96],"malaysia","philipines","thailand-online-banking","https:\u002F\u002Fwww.Betterpay.me","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fbetterpay.1.2.4.zip",{"slug":100,"name":101,"version":102,"author":41,"author_profile":42,"description":103,"short_description":104,"active_installs":105,"downloaded":106,"rating":13,"num_ratings":13,"last_updated":107,"tested_up_to":17,"requires_at_least":108,"requires_php":72,"tags":109,"homepage":112,"download_link":113,"security_score":57,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28},"duitku-for-givewp","Duitku for GiveWP","1.3.6","\u003Cp>Easy accept E-wallet, and Various Bank Transfers to maximize your fundrising. Our Payment Gateway for GiveWP plugin integrates with your GiveWP Donations and lets you accept those Donations through our payment gateway.\u003Cbr \u002F>\nSecurely accept Donations. View and manage donations transfer from one convenient place – \u003Ca href=\"https:\u002F\u002Fsandbox.duitku.com\u002Fmerchant\u002FProject\" rel=\"nofollow ugc\">your Duitku dashboard\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>Supported Payment Channels :\u003C\u002Fp>\n\u003Col>\n\u003Cli>Credit Card Aggregator full-payment (Visa, Master, JCB)\u003C\u002Fli>\n\u003Cli>Credit Card Facilitator installment and full-payment (Visa, Master, JCB, AMEX)\u003C\u002Fli>\n\u003Cli>BCA KlikPay\u003C\u002Fli>\n\u003Cli>BCA Virtual Account\u003C\u002Fli>\n\u003Cli>Mandiri Virtual Account\u003C\u002Fli>\n\u003Cli>Permata Bank Virtual Account\u003C\u002Fli>\n\u003Cli>ATM Bersama\u003C\u002Fli>\n\u003Cli>CIMB Niaga Virtual Account\u003C\u002Fli>\n\u003Cli>BNI Virtual Account\u003C\u002Fli>\n\u003Cli>Maybank Virtual Account\u003C\u002Fli>\n\u003Cli>Retail (Alfamart,  Pegadaian and Pos Indonesia)\u003C\u002Fli>\n\u003Cli>OVO\u003C\u002Fli>\n\u003Cli>Shopee Pay\u003C\u002Fli>\n\u003Cli>Shopee Pay Apps\u003C\u002Fli>\n\u003Cli>Bank Artha Graha\u003C\u002Fli>\n\u003Cli>LinkAja Apps (Percentage Fee)\u003C\u002Fli>\n\u003Cli>LinkAja Apps (Fixed Fee)\u003C\u002Fli>\n\u003Cli>DANA\u003C\u002Fli>\n\u003Cli>LinkAja QRIS\u003C\u002Fli>\n\u003Cli>Indomaret\u003C\u002Fli>\n\u003Cli>PosPay\u003C\u002Fli>\n\u003Cli>BNC\u003C\u002Fli>\n\u003Cli>BRIVA\u003C\u002Fli>\n\u003Cli>QRIS by Nobu\u003C\u002Fli>\n\u003Cli>Gudang Voucher QRIS\u003C\u002Fli>\n\u003Cli>Jenius Pay\u003C\u002Fli>\n\u003Cli>Danamon Virtual Account\u003C\u002Fli>\n\u003Cli>Sahabat Sampoerna Virtual Account\u003C\u002Fli>\n\u003Cli>Bank Syariah Indonesia Virtual Account\u003C\u002Fli>\n\u003Cli>Nusapay QRIS\u003C\u002Fli>\n\u003Cli>Tokopedia Card payment\u003C\u002Fli>\n\u003Cli>Tokopedia E-Wallet\u003C\u002Fli>\n\u003Cli>Tokopedia Others\u003C\u002Fli>\n\u003C\u002Fol>\n","Duitku Add-on for Give",10,5417,"2026-03-04T08:18:00.000Z","6.0.1",[19,110,54,20,111],"donation","paymentgateways","http:\u002F\u002Fdocs.duitku.com\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fduitku-for-givewp.zip",{"slug":115,"name":116,"version":117,"author":41,"author_profile":42,"description":118,"short_description":119,"active_installs":105,"downloaded":120,"rating":13,"num_ratings":13,"last_updated":121,"tested_up_to":122,"requires_at_least":108,"requires_php":17,"tags":123,"homepage":17,"download_link":124,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28},"duitku-for-vik","Duitku for VikBooking WordPress","1.0.0","\u003Cp>Do you want the best solution to accept Credit Cards, e-wallet, and Various Bank Transfers on your website? Our Payment Gateway for VikBooking plugin integrates with your VikBooking store and lets you accept those payments through our payment gateway.\u003Cbr \u002F>\nSecurely accept major credit cards, View and manage transactions from one convenient place – \u003Ca href=\"https:\u002F\u002Fsandbox.duitku.com\u002Fmerchant\u002FProject\" rel=\"nofollow ugc\">your Duitku dashboard\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>Supported Payment Channels :\u003C\u002Fp>\n\u003Col>\n\u003Cli>Credit Card Aggregator full-payment (Visa, Master, JCB)\u003C\u002Fli>\n\u003Cli>Credit Card Facilitator installment and full-payment (Visa, Master, JCB, AMEX)\u003C\u002Fli>\n\u003Cli>BCA KlikPay\u003C\u002Fli>\n\u003Cli>BCA Virtual Account\u003C\u002Fli>\n\u003Cli>Mandiri Virtual Account\u003C\u002Fli>\n\u003Cli>Permata Bank Virtual Account\u003C\u002Fli>\n\u003Cli>ATM Bersama\u003C\u002Fli>\n\u003Cli>CIMB Niaga Virtual Account\u003C\u002Fli>\n\u003Cli>BNI Virtual Account\u003C\u002Fli>\n\u003Cli>Maybank Virtual Account\u003C\u002Fli>\n\u003Cli>Retail (Alfamart,  Pegadaian and Pos Indonesia)\u003C\u002Fli>\n\u003Cli>OVO\u003C\u002Fli>\n\u003Cli>Shopee Pay\u003C\u002Fli>\n\u003Cli>Shopee Pay Apps\u003C\u002Fli>\n\u003Cli>Bank Artha Graha\u003C\u002Fli>\n\u003Cli>Bank Sahabat Sampoerna\u003C\u002Fli>\n\u003Cli>LinkAja Apps (Percentage Fee)\u003C\u002Fli>\n\u003Cli>LinkAja Apps (Fixed Fee)\u003C\u002Fli>\n\u003Cli>DANA\u003C\u002Fli>\n\u003Cli>LinkAja QRIS\u003C\u002Fli>\n\u003Cli>Indomaret\u003C\u002Fli>\n\u003Cli>PosPay\u003C\u002Fli>\n\u003Cli>BNC\u003C\u002Fli>\n\u003Cli>BRIVA\u003C\u002Fli>\n\u003Cli>QRIS by Nobu\u003C\u002Fli>\n\u003C\u002Fol>\n","Duitku Add-on for VikBooking. Ready to get online booking payment for your rent business?",1516,"2022-08-30T04:39:00.000Z","6.0.11",[19,110,54,20,111],"https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fduitku-for-vik.zip",{"attackSurface":126,"codeSignals":146,"taintFlows":156,"riskAssessment":157,"analyzedAt":168},{"hooks":127,"ajaxHandlers":142,"restRoutes":143,"shortcodes":144,"cronEvents":145,"entryPointCount":13,"unprotectedCount":13},[128,134,138],{"type":129,"name":130,"callback":131,"file":132,"line":133},"action","plugins_loaded","bilo_update_upgrade","functions.php",55,{"type":129,"name":135,"callback":136,"file":132,"line":137},"admin_menu","bilo_admin_menu",64,{"type":129,"name":139,"callback":140,"file":132,"line":141},"admin_enqueue_scripts","bilo_enqueue_script",175,[],[],[],[],{"dangerousFunctions":147,"sqlUsage":148,"outputEscaping":150,"fileOperations":13,"externalRequests":13,"nonceChecks":13,"capabilityChecks":13,"bundledLibraries":155},[],{"prepared":13,"raw":13,"locations":149},[],{"escaped":32,"rawEcho":32,"locations":151},[152],{"file":132,"line":153,"context":154},146,"raw output",[],[],{"summary":158,"deductions":159},"Based on the static analysis and vulnerability history, the 'billingotomatis-payment-gateway-indonesia' plugin version 20210107 exhibits a generally strong security posture in several key areas. The absence of any entry points like AJAX handlers, REST API routes, shortcodes, or cron events significantly reduces the potential attack surface. Furthermore, the code demonstrates good practices with 100% of SQL queries using prepared statements and no file operations or external HTTP requests, mitigating common vulnerabilities like SQL injection and remote code execution. The lack of known CVEs also suggests a history of responsible development concerning known exploits.\n\nHowever, there are areas that warrant attention. The output escaping is only 50% proper, indicating a potential for cross-site scripting (XSS) vulnerabilities if user-supplied data is rendered without adequate sanitization. The complete absence of nonce checks and capability checks across all components is a significant concern, especially if any functionality were to be introduced that could be exploited by unauthenticated or unauthorized users. While the current attack surface is zero, this lack of foundational security checks could become a problem if the plugin evolves.\n\nIn conclusion, while the plugin currently appears to have a very limited attack surface and no known critical vulnerabilities, the incomplete output escaping and the complete lack of nonces and capability checks represent potential weaknesses. These are foundational security controls that, if not addressed, could expose the plugin and its users to risks, particularly XSS. Developers should prioritize addressing the output escaping and implementing robust authentication and authorization checks if new features are added.",[160,163,166],{"reason":161,"points":162},"Incomplete output escaping",6,{"reason":164,"points":165},"No nonce checks",5,{"reason":167,"points":165},"No capability checks","2026-03-16T22:53:14.725Z",{"wat":170,"direct":178},{"assetPaths":171,"generatorPatterns":173,"scriptPaths":174,"versionParams":175},[172],"\u002Fwp-content\u002Fplugins\u002Fbillingotomatis-payment-gateway-indonesia\u002Fassets\u002Fimg\u002Ficon.png",[],[],[176,177],"billingotomatis-payment-gateway-indonesia\u002Fstyle.css?ver=","billingotomatis-payment-gateway-indonesia\u002Fbillingotomatis.php?ver=",{"cssClasses":179,"htmlComments":185,"htmlAttributes":186,"restEndpoints":188,"jsGlobals":189,"shortcodeOutput":191},[180,181,182,183,184],"bilo_addons_wrap","bilo_module_list","product","desc","button-success",[],[187],"page=billingotomatis",[],[190],"billingotomatis_plugin_list",[]]