Business to Customer REST APIs For WooCommerce Security & Risk Analysis

wordpress.org/plugins/business-to-customer-rest-apis-for-woocommerce

Provides REST APIs for WooCommerce customers to purchase products via mobile or headless apps.

0 active installs v3.1 PHP 8.0+ WP 6.0.2+ Updated Dec 13, 2025
business-to-customercustomer-apimobile-commerce-apiwoocommerce-frontend-apiwoocommerce-rest-api
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Business to Customer REST APIs For WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

Business to Customer REST APIs For WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3mo ago
Risk Assessment

The business-to-customer-rest-apis-for-woocommerce plugin v3.1 exhibits a generally strong security posture based on the provided static analysis. The complete absence of unprotected AJAX handlers, REST API routes, and shortcodes, along with the presence of nonce checks for all AJAX endpoints, indicates a good understanding of WordPress security best practices. The use of prepared statements for all SQL queries and the high percentage of properly escaped output further reinforce this positive assessment, minimizing the risk of common web vulnerabilities like SQL injection and cross-site scripting. The plugin also has a clean vulnerability history with zero recorded CVEs, suggesting a history of secure development and maintenance.

Key Concerns

  • No capability checks on entry points
  • Bundled library (Stripe PHP) might be outdated
Vulnerabilities
None known

Business to Customer REST APIs For WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Business to Customer REST APIs For WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
12 prepared
Unescaped Output
9
50 escaped
Nonce Checks
3
Capability Checks
0
File Operations
3
External Requests
0
Bundled Libraries
1

Bundled Libraries

Stripe PHP

SQL Query Safety

100% prepared12 total queries

Output Escaping

85% escaped59 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
saveGeneralSettings (src\LetscmsAdminSettings.php:32)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Business to Customer REST APIs For WooCommerce Attack Surface

Entry Points3
Unprotected0

AJAX Handlers 3

authwp_ajax_save_lwra_general_settingssrc\LetscmsAdminSettings.php:21
authwp_ajax_save_shop_page_slider_settingssrc\LetscmsAdminSettings.php:22
authwp_ajax_remove_shop_page_slider_slidesrc\LetscmsAdminSettings.php:23
WordPress Hooks 6
filterwp_mail_content_typesrc\Controllers\LetscmsUser.php:323
actionadmin_noticessrc\LetscmsApi.php:40
actionrest_api_initsrc\LetscmsApi.php:59
filterrest_dispatch_requestsrc\LetscmsApi.php:60
actionadmin_menusrc\LetscmsApi.php:62
actionadmin_enqueue_scriptssrc\LetscmsApi.php:63
Maintenance & Trust

Business to Customer REST APIs For WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 13, 2025
PHP min version8.0
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Business to Customer REST APIs For WooCommerce Developer Profile

LETSCMS MLM Software

5 plugins · 80 total installs

75
trust score
Avg Security Score
94/100
Avg Patch Time
241 days
View full developer profile
Detection Fingerprints

How We Detect Business to Customer REST APIs For WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/business-to-customer-rest-apis-for-woocommerce/assets/css/lets-boot.min.css

HTML / DOM Fingerprints

REST Endpoints
/letscms/v1/user/login
FAQ

Frequently Asked Questions about Business to Customer REST APIs For WooCommerce