
Payment Gateway Based Fees and Discounts for WooCommerce Security & Risk Analysis
wordpress.org/plugins/checkout-fees-for-woocommerceSet fees and discounts for WooCommerce payment gateways.
Is Payment Gateway Based Fees and Discounts for WooCommerce Safe to Use in 2026?
Generally Safe
Score 99/100Payment Gateway Based Fees and Discounts for WooCommerce has a strong security track record. Known vulnerabilities have been patched promptly.
The "checkout-fees-for-woocommerce" plugin version 3.0.0 exhibits a generally good security posture, with a robust number of capability and nonce checks, and a high percentage of SQL queries using prepared statements and outputs being properly escaped. The absence of dangerous functions, file operations, and critical/high severity taint flows is a positive indicator. However, the presence of one flow with unsanitized paths in the taint analysis warrants attention. Furthermore, the plugin's vulnerability history indicates a past medium severity vulnerability, specifically CSRF, which, while currently patched, suggests a need for continued vigilance in code security reviews.
The attack surface is relatively small with only a few entry points, and crucially, none are identified as unprotected in the static analysis. The external HTTP requests, while present, are not necessarily a direct security risk without further context but should be monitored. The existence of a single medium severity CVE in the past, though patched, highlights that past security issues have existed. This, combined with the taint analysis result, suggests that while the codebase is largely secure, there are specific areas that require ongoing attention and rigorous testing to maintain a strong security posture.
Key Concerns
- Flow with unsanitized paths in taint analysis
- Past medium severity CVE
Payment Gateway Based Fees and Discounts for WooCommerce Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Payment Gateway Based Fees and Discounts for WooCommerce <= 2.12.1 - Cross-Site Request Forgery to Notice Dismissal
Payment Gateway Based Fees and Discounts for WooCommerce Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Payment Gateway Based Fees and Discounts for WooCommerce Attack Surface
AJAX Handlers 1
Shortcodes 2
WordPress Hooks 46
Maintenance & Trust
Payment Gateway Based Fees and Discounts for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
Payment Gateway Based Fees and Discounts for WooCommerce Alternatives
Pay for Payment for WooCommerce
woocommerce-pay-for-payment
Setup individual charges for each payment method in WooCommerce.
Ni WooCommerce Payment Gateway Charges
ni-woocommerce-payment-gateway-charges
The Ni WooCommerce Payment Gateway Charges plugin offers the capability to apply additional payment amounts or fees based on the customer's selec …
Gateway Coupon Assistant
gateway-coupon-assistant
Create and manage WooCommerce coupons that are only valid for specific payment gateways. Display promotional banners to boost sales.
PayFeez: Payment Gateway-Based Fees for WooCommerce
payfeez
Apply fees based on the WooCommerce payment gateway selected by the customer.
Paystack WooCommerce Payment Gateway
woo-paystack
Paystack for WooCommerce allows your WooCommerce store to accept secure payments from multiple local and global payment channels.
Payment Gateway Based Fees and Discounts for WooCommerce Developer Profile
20 plugins · 160K total installs
How We Detect Payment Gateway Based Fees and Discounts for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/checkout-fees-for-woocommerce/includes/js/tyche-dismiss-tracking-notice.js/wp-content/plugins/checkout-fees-for-woocommerce/includes/js/tyche-dismiss-tracking-notice.jscheckout-fees-for-woocommerce/includes/js/tyche-dismiss-tracking-notice.js?ver=checkout-fees-for-woocommerce.php?ver=HTML / DOM Fingerprints
alg-wc-checkout-fees-extra-costs-table<!-- Checkout Fees for WooCommerce -->data-alg-wc-checkout-fees-rule-iddata-alg-wc-checkout-fees-rule-typepgbf_lite_ts_dismiss_notice