
Checkout Custom Fields Builder for WooCommerce Security & Risk Analysis
wordpress.org/plugins/checkout-custom-fields-builder-for-woocommerceCustomize the WooCommerce checkout: add, remove, or edit fields to create a simple, personalized experience for your store. -----
Is Checkout Custom Fields Builder for WooCommerce Safe to Use in 2026?
Generally Safe
Score 100/100Checkout Custom Fields Builder for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "checkout-custom-fields-builder-for-woocommerce" v1.1.4 exhibits a generally strong security posture based on the provided static analysis. The absence of critical or high-severity taint flows, along with the proper use of prepared statements for all SQL queries and a high percentage of output escaping, are significant strengths. The plugin also demonstrates good practice by including nonce checks for its AJAX handlers and has no recorded historical vulnerabilities, suggesting a mature and well-maintained codebase.
However, there are a couple of areas that warrant attention. The presence of an external HTTP request, while not explicitly flagged as dangerous, introduces a potential dependency on external services and could be a vector for supply chain attacks or denial-of-service if the external service is compromised or unavailable. Additionally, while there are no explicit capability checks noted on the entry points (AJAX handlers), the fact that there are no unprotected entry points is a positive sign. Nonetheless, explicitly implementing capability checks would further harden these handlers against unauthorized access.
Overall, this plugin appears to be secure, with its current version addressing common vulnerabilities effectively. The limited attack surface and good coding practices are commendable. The main considerations are the external HTTP request and the potential for enhanced authorization checks on existing protected entry points.
Key Concerns
- External HTTP requests present
- Missing capability checks on entry points
Checkout Custom Fields Builder for WooCommerce Security Vulnerabilities
Checkout Custom Fields Builder for WooCommerce Code Analysis
Output Escaping
Data Flow Analysis
Checkout Custom Fields Builder for WooCommerce Attack Surface
AJAX Handlers 3
WordPress Hooks 56
Maintenance & Trust
Checkout Custom Fields Builder for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
Checkout Custom Fields Builder for WooCommerce Alternatives
Checkout Field Editor for WooCommerce – Checkout Page Manager
woo-checkout-regsiter-field-editor
Checkout Field Editor for WooCommerce is the leading plugin for customizing, editing, removing, and managing your WooCommerce checkout fields.
FEWC – Extra Checkout Fields For WooCommerce
fewc-extra-checkout-fields-for-woocommerce
Easily customize your checkout page: add custom fields, enable/disable fields, rearrange their positions, and preview changes in the WP Customizer
Checkout Field Editor and Manager for WooCommerce
extra-checkout-fields-for-woocommerce
A simple WooCommerce Checkout Field Editor and Manager plugin to edit WooCommerce checkout fields, add custom checkout fields and more.
Checkout Manager for Woocommerce
checkout-manager
Checkout Manager - The most advanced and powerful customization for your checkout page.
Checkout Field Builder (Checkout Field Editor & Manager) for WooCommerce
checkout-field-builder-checkout-manager-for-woocommerce
Checkout Field Builder - The best WooCommerce checkout filed editor & manager plugin to customize checkout fields on your WooCommerce checkout page.
Checkout Custom Fields Builder for WooCommerce Developer Profile
8 plugins · 58K total installs
How We Detect Checkout Custom Fields Builder for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/checkout-custom-fields-builder-for-woocommerce/assets/dist/css/admin.css/wp-content/plugins/checkout-custom-fields-builder-for-woocommerce/assets/dist/css/dashboard.css/wp-content/plugins/checkout-custom-fields-builder-for-woocommerce/assets/dist/js/admin.js/wp-content/plugins/checkout-custom-fields-builder-for-woocommerce/assets/images/menu-icon.png/wp-content/plugins/checkout-custom-fields-builder-for-woocommerce/assets/dist/css/upgrade_gopro.css/wp-content/plugins/checkout-custom-fields-builder-for-woocommerce/assets/blocks/build/style-index.css/wp-content/plugins/checkout-custom-fields-builder-for-woocommerce/assets/blocks/build/index.js/wp-content/plugins/checkout-custom-fields-builder-for-woocommerce/assets/dist/js/admin.js/wp-content/plugins/checkout-custom-fields-builder-for-woocommerce/assets/blocks/build/index.jscheckout-custom-fields-builder-for-woocommerce/assets/dist/css/admin.css?ver=checkout-custom-fields-builder-for-woocommerce/assets/dist/css/dashboard.css?ver=checkout-custom-fields-builder-for-woocommerce/assets/dist/js/admin.js?ver=checkout-custom-fields-builder-for-woocommerce/assets/dist/css/upgrade_gopro.css?ver=checkout-custom-fields-builder-for-woocommerce/assets/blocks/build/style-index.css?ver=checkout-custom-fields-builder-for-woocommerce/assets/blocks/build/index.js?ver=HTML / DOM Fingerprints
ccfbw-unlock-pro-btnccfbw-unlock-wrap-spanccfbw_settingsccfbw_additional_settingsccfbw_new_fields