
BlueCheck – Age Verification Security & Risk Analysis
wordpress.org/plugins/bluecheck-age-verificationVerify customer age at checkout. Cut fraud with photo ID verification. Check purchaser age info.
Is BlueCheck – Age Verification Safe to Use in 2026?
Generally Safe
Score 92/100BlueCheck – Age Verification has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "bluecheck-age-verification" v1.0 plugin exhibits a strong security posture based on the static analysis provided. There are no identified attack vectors through AJAX, REST API, shortcodes, or cron events. The code also avoids dangerous functions, uses prepared statements for all SQL queries, properly escapes all output, and performs no file operations. The absence of taint analysis findings further indicates a lack of common vulnerabilities related to data sanitization and processing.
However, there are a few areas that warrant attention. The plugin makes an external HTTP request, which could be a potential vector for compromise if not handled securely, though its specific purpose and implementation are not detailed in the provided data. More significantly, the plugin lacks any nonce checks or capability checks. This absence on entry points, even though there are zero identified in this version, is a critical weakness. Should any new entry points be introduced in future versions without these checks, the plugin would be highly susceptible to various attacks.
Given the complete absence of any recorded vulnerabilities in its history, the plugin's developers appear to be diligent in maintaining security. The current version is clean. However, the lack of built-in authentication and authorization mechanisms for potential future entry points is a concerning architectural oversight. The overall risk is low due to the current lack of exposed entry points and a clean vulnerability history, but the potential for future issues is present.
Key Concerns
- No nonce checks implemented
- No capability checks implemented
- External HTTP requests made
BlueCheck – Age Verification Security Vulnerabilities
BlueCheck – Age Verification Code Analysis
Output Escaping
BlueCheck – Age Verification Attack Surface
WordPress Hooks 7
Maintenance & Trust
BlueCheck – Age Verification Maintenance & Trust
Maintenance Signals
Community Trust
BlueCheck – Age Verification Alternatives
Age Verification for your checkout page. Verify your customer's identity
agecheckernet
AgeChecker.Net seamlessly and securely verifies the age of your customers directly on your website during the checkout process.
Konfirmi Plugin
konfirmi
KONFIRMI allows you to easily and automatically verify your customer's age, ID, address, and other information.
Free AgeGate for your homepage
agegate-by-agechecker-net
An age gate is a due diligence tool that, when paired with our complete age verification solution, improves your site’s regulatory compliance.
Identity Verification for WooCommerce
identity-verification-for-woocommerce
Eliminate fraud & verify customer age with real ID checks
Age Verification & Identity Verification by Token of Trust
token-of-trust
Verify age at checkout, protect pages from underage visitors, or set up advanced identity verification checks. Setup wizard gets you going in minutes.
BlueCheck – Age Verification Developer Profile
1 plugin · 0 total installs
How We Detect BlueCheck – Age Verification
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/bluecheck-age-verification/assets/js/checkout.jshttps://verify.bluecheck.me/platforms/woocommerce/assets/js/checkout.jsHTML / DOM Fingerprints
id="productIDs"id="BluecheckProductTags"<span id="productIDs" style="display:none"><span id="BluecheckProductTags" style="display:none">