Claim GST for Input Tax Credit Security & Risk Analysis

wordpress.org/plugins/claim-gst

A plugin to allow buyers to input their GST details for B2B purchase

100 active installs v1.3.4 PHP 5.3.4+ WP 3.5+ Updated Mar 28, 2025
b2bclaim-gstgst-creditinput-credit
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Claim GST for Input Tax Credit Safe to Use in 2026?

Generally Safe

Score 92/100

Claim GST for Input Tax Credit has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The static analysis of the "claim-gst" plugin version 1.3.4 reveals a promising security posture with no identified attack surface points, dangerous functions, or SQL queries that are not using prepared statements. The taint analysis also indicates a lack of critical or high-severity vulnerabilities related to unsanitized data flows. This suggests the developers have implemented strong foundational security practices in these areas. However, the analysis does flag a concern regarding output escaping, with approximately 33% of outputs not being properly escaped. While this doesn't translate to a critical vulnerability given the absence of an attack surface, it represents a potential weakness that could be exploited if new entry points are introduced or if an attacker finds an indirect way to trigger these unescaped outputs. The plugin's history of zero known vulnerabilities further reinforces the perception of good development practices. Overall, the plugin appears to be secure for its current version and feature set, but the unescaped output is a minor area for improvement to achieve a fully robust security profile.

Key Concerns

  • Unescaped output detected
Vulnerabilities
None known

Claim GST for Input Tax Credit Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Claim GST for Input Tax Credit Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
8
16 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

67% escaped24 total outputs
Attack Surface

Claim GST for Input Tax Credit Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 12
actioninitclaim-gst.php:41
actionbefore_woocommerce_initclaim-gst.php:43
actionwoocommerce_review_order_before_submitclaim-gst.php:57
actionwoocommerce_checkout_processclaim-gst.php:139
actionwoocommerce_checkout_update_order_metaclaim-gst.php:179
filtermanage_edit-shop_order_columnsclaim-gst.php:199
actionmanage_shop_order_posts_custom_columnclaim-gst.php:206
actionwoocommerce_admin_order_data_after_shipping_addressclaim-gst.php:218
actionwpo_wcpdf_after_billing_addressclaim-gst.php:244
actionwpo_wcpdf_before_order_dataclaim-gst.php:256
actionadmin_menuclasses\class-wc-claim-gst.php:14
filtersa_wc_variablesclasses\class-wc-claim-gst.php:16
Maintenance & Trust

Claim GST for Input Tax Credit Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedMar 28, 2025
PHP min version5.3.4
Downloads5K

Community Trust

Rating90/100
Number of ratings2
Active installs100
Developer Profile

Claim GST for Input Tax Credit Developer Profile

Cozy Vision

3 plugins · 4K total installs

82
trust score
Avg Security Score
91/100
Avg Patch Time
86 days
View full developer profile
Detection Fingerprints

How We Detect Claim GST for Input Tax Credit

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/claim-gst/assets/css/claim-gst.css/wp-content/plugins/claim-gst/assets/js/claim-gst.js
Script Paths
/wp-content/plugins/claim-gst/assets/js/claim-gst.js
Version Parameters
claim-gst/assets/css/claim-gst.css?ver=claim-gst/assets/js/claim-gst.js?ver=

HTML / DOM Fingerprints

CSS Classes
my-field-classform-row-wide
Data Attributes
data-gstindata-gstin-holder-namedata-gstin-holder-address
JS Globals
cvcg_claim_gstcvcg_custom_checkout_fieldcvcg_customise_checkout_field_processcvcg__custom_checkout_field_update_order_metacvcg_add_column_order_listcvcg_add_column_value_order_list+1 more
Shortcode Output
<div id="custom_checkout_field" style="display:none;"><label for="is_gstin">Use GSTIN for claiming input tax</label><label for="gstin">GSTIN</label><label for="gstin_holder_name">GSTIN Holder Name</label>
FAQ

Frequently Asked Questions about Claim GST for Input Tax Credit