Build Private Store For Woocommerce Security & Risk Analysis

wordpress.org/plugins/build-private-store-for-woocommerce

Build Private Store For Woocommerce using to in woocommerce to particular user role or category, tag, product to purchase that.

200 active installs v1.2 PHP + WP + Updated Feb 6, 2026
login-to-price-showprivate-store-for-woocommercewocommercewoocommerce-private-store
99
A · Safe
CVEs total2
Unpatched0
Last CVEJan 24, 2025
Download
Safety Verdict

Is Build Private Store For Woocommerce Safe to Use in 2026?

Generally Safe

Score 99/100

Build Private Store For Woocommerce has a strong security track record. Known vulnerabilities have been patched promptly.

2 known CVEsLast CVE: Jan 24, 2025Updated 1mo ago
Risk Assessment

The 'build-private-store-for-woocommerce' plugin version 1.2 exhibits a generally strong security posture in its static analysis. The absence of dangerous functions, file operations, and external HTTP requests is commendable. Furthermore, the plugin's SQL queries are exclusively prepared, and a high percentage of output is properly escaped, minimizing common web application risks. The presence of nonce and capability checks on its AJAX handlers indicates an effort to secure these entry points. However, the plugin's vulnerability history is a significant concern. Having two known medium severity vulnerabilities, specifically Missing Authorization and Cross-Site Request Forgery (CSRF), even though currently patched, suggests recurring security weaknesses. The fact that these issues have appeared in the past indicates a potential for oversight in secure coding practices, and while no vulnerabilities are currently unpatched, the pattern warrants attention and continued vigilance. Overall, while the current codebase shows good practices, the historical pattern of past vulnerabilities necessitates a cautious approach.

Key Concerns

  • Two medium severity historical vulnerabilities (Missing Auth, CSRF)
Vulnerabilities
2

Build Private Store For Woocommerce Security Vulnerabilities

CVEs by Year

2 CVEs in 2025
2025
Patched Has unpatched

Severity Breakdown

Medium
2

2 total CVEs

CVE-2025-24633medium · 5.3Missing Authorization

Build Private Store For Woocommerce <= 1.0 - Missing Authorization

Jan 24, 2025 Patched in 1.1 (5d)
CVE-2025-22731medium · 4.3Cross-Site Request Forgery (CSRF)

Build Private Store For Woocommerce <= 1.0 - Cross-Site Request Forgery

Jan 14, 2025 Patched in 1.1 (8d)
Code Analysis
Analyzed Mar 16, 2026

Build Private Store For Woocommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
4
106 escaped
Nonce Checks
9
Capability Checks
2
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

96% escaped110 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
bpsfw_save_option (main\backend\bpsfw-backend-action.php:5)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Build Private Store For Woocommerce Attack Surface

Entry Points8
Unprotected0

AJAX Handlers 8

noprivwp_ajax_wg_product_ajaxmain\backend\bpsfw-backend-action.php:97
authwp_ajax_wg_product_ajaxmain\backend\bpsfw-backend-action.php:98
noprivwp_ajax_wg_cats_ajaxmain\backend\bpsfw-backend-action.php:99
authwp_ajax_wg_cats_ajaxmain\backend\bpsfw-backend-action.php:100
noprivwp_ajax_wg_tags_ajaxmain\backend\bpsfw-backend-action.php:101
authwp_ajax_wg_tags_ajaxmain\backend\bpsfw-backend-action.php:102
noprivwp_ajax_wg_pages_ajaxmain\backend\bpsfw-backend-action.php:103
authwp_ajax_wg_pages_ajaxmain\backend\bpsfw-backend-action.php:104
WordPress Hooks 38
filterplugin_row_metabuild-private-store-for-woocommerce.php:47
actioninitmain\backend\bpsfw-backend-action.php:4
actionadmin_menumain\backend\bpsfw-backend.php:5
actioninitmain\backend\bpsfw-common.php:4
actioninitmain\backend\bpsfw-user-table-column.php:4
actionshow_user_profilemain\backend\bpsfw-user-table-column.php:8
actionedit_user_profilemain\backend\bpsfw-user-table-column.php:9
actionuser_new_formmain\backend\bpsfw-user-table-column.php:10
actionedit_user_profile_updatemain\backend\bpsfw-user-table-column.php:11
actionpersonal_options_updatemain\backend\bpsfw-user-table-column.php:12
actionuser_registermain\backend\bpsfw-user-table-column.php:13
actionuser_registermain\backend\bpsfw-user-table-column.php:15
actioninitmain\backend\bpsfw-userlist-action.php:4
actionadmin_menumain\backend\bpsfw-userlist.php:4
filtermanage_users_columnsmain\backend\bpsfw-userlist.php:11
actionmanage_users_custom_columnmain\backend\bpsfw-userlist.php:28
actioninitmain\bpsfw-common.php:4
filtergettextmain\frontend\bpsfw-frontend-comman.php:4
actionwoocommerce_before_customer_login_formmain\frontend\bpsfw-frontend-comman.php:20
actionwoocommerce_created_customermain\frontend\bpsfw-frontend-comman.php:28
actionwoocommerce_login_redirectmain\frontend\bpsfw-frontend-comman.php:57
actionlostpassword_postmain\frontend\bpsfw-frontend-comman.php:71
filterwoocommerce_add_to_cart_validationmain\frontend\bpsfw-frontend-validation.php:5
actioninitmain\frontend\bpsfw-frontend-validation.php:49
filterauthenticatemain\frontend\bpsfw-frontend-validation.php:53
actionwoocommerce_registration_redirectmain\frontend\bpsfw-frontend-validation.php:54
filterwoocommerce_is_purchasablemain\frontend\bpsfw-frontend-validation.php:93
filterwoocommerce_get_price_htmlmain\frontend\bpsfw-frontend.php:279
filterwoocommerce_loop_add_to_cart_linkmain\frontend\bpsfw-frontend.php:280
actionwpmain\frontend\bpsfw-frontend.php:282
actionwoocommerce_product_querymain\frontend\bpsfw-frontend.php:283
filterwoocommerce_related_productsmain\frontend\bpsfw-frontend.php:286
filterwoocommerce_product_get_upsell_idsmain\frontend\bpsfw-frontend.php:291
filterwoocommerce_product_get_cross_sell_idsmain\frontend\bpsfw-frontend.php:296
actionadmin_initmain\resource\bpsfw-installation-require.php:5
actionadmin_noticesmain\resource\bpsfw-installation-require.php:13
actionadmin_enqueue_scriptsmain\resource\bpsfw-load-js-css.php:4
actionwp_enqueue_scriptsmain\resource\bpsfw-load-js-css.php:5
Maintenance & Trust

Build Private Store For Woocommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedFeb 6, 2026
PHP min version
Downloads5K

Community Trust

Rating100/100
Number of ratings7
Active installs200
Developer Profile

Build Private Store For Woocommerce Developer Profile

silverplugins217

21 plugins · 12K total installs

93
trust score
Avg Security Score
99/100
Avg Patch Time
10 days
View full developer profile
Detection Fingerprints

How We Detect Build Private Store For Woocommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/build-private-store-for-woocommerce/assets/css/bpsfw-backend.css/wp-content/plugins/build-private-store-for-woocommerce/assets/js/bpsfw-backend-js.js/wp-content/plugins/build-private-store-for-woocommerce/assets/js/wp-color-picker-alpha.js
Script Paths
/wp-content/plugins/build-private-store-for-woocommerce/assets/js/bpsfw-backend-js.js/wp-content/plugins/build-private-store-for-woocommerce/assets/js/wp-color-picker-alpha.js
Version Parameters
build-private-store-for-woocommerce/assets/css/bpsfw-backend.css?ver=build-private-store-for-woocommerce/assets/js/bpsfw-backend-js.js?ver=build-private-store-for-woocommerce/assets/js/wp-color-picker-alpha.js?ver=

HTML / DOM Fingerprints

JS Globals
bpsfw_ajax_postajax
FAQ

Frequently Asked Questions about Build Private Store For Woocommerce