
CMSPS Revenue Pulse Advisor Security & Risk Analysis
wordpress.org/plugins/cmsps-revenue-pulse-advisorGenerate AI-powered WooCommerce revenue analysis in wp-admin and review saved reports, trends, and recommendations.
Is CMSPS Revenue Pulse Advisor Safe to Use in 2026?
Generally Safe
Score 100/100CMSPS Revenue Pulse Advisor has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin 'cmsps-revenue-pulse-advisor' v1.0.3 exhibits a generally strong security posture with several positive indicators. The absence of dangerous functions, the exclusive use of prepared statements for all SQL queries, and the 100% proper output escaping are excellent practices. Furthermore, the plugin demonstrates a clean vulnerability history with no recorded CVEs, suggesting a well-maintained and secure codebase.
However, a significant concern arises from the static analysis, specifically the presence of one unprotected REST API route. This creates a direct entry point into the plugin's functionality that is not protected by any permission checks, posing a potential risk of unauthorized access or execution of sensitive operations. While the overall code quality appears high, this single unprotected entry point is a critical vulnerability that needs immediate attention.
In conclusion, while the plugin benefits from robust coding practices in SQL handling and output sanitization, the unprotected REST API route is a glaring weakness that overshadows these strengths. The lack of historical vulnerabilities is a positive sign, but it does not negate the present risk introduced by the exposed API endpoint.
Key Concerns
- Unprotected REST API route found
CMSPS Revenue Pulse Advisor Security Vulnerabilities
CMSPS Revenue Pulse Advisor Release Timeline
CMSPS Revenue Pulse Advisor Code Analysis
SQL Query Safety
Output Escaping
CMSPS Revenue Pulse Advisor Attack Surface
REST API Routes 1
WordPress Hooks 11
Maintenance & Trust
CMSPS Revenue Pulse Advisor Maintenance & Trust
Maintenance Signals
Community Trust
CMSPS Revenue Pulse Advisor Alternatives
IKAROS Ai Commerce Infrastructure
ikaros-ai-manifest
Prepare your WooCommerce store for the AI internet.
BaoBrain Analytics for WooCommerce
baobrain-analytics-for-woocommerce
AI-powered customer intelligence that connects what shoppers SAY online with what they DO on your store.
Klaviyo
klaviyo
Klaviyo for WooCommerce
MailerLite – WooCommerce integration
woo-mailerlite
Powerful e-commerce email marketing tools that are easy to use. Grow your store with automated emails, pop-ups, product blocks, sales tracking + more.
Website Pop-up Builder by BDOW! (formerly Sumo): Pop-ups + forms for email opt-ins and lead generation
sumome
Sumo is trusted by over 600,000 businesses — small and large — in growing their email lists, customer base, and revenue online.
CMSPS Revenue Pulse Advisor Developer Profile
4 plugins · 30 total installs
How We Detect CMSPS Revenue Pulse Advisor
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/cmsps-revenue-pulse-advisor/assets/css/style.css/wp-content/plugins/cmsps-revenue-pulse-advisor/assets/js/script.js/wp-content/plugins/cmsps-revenue-pulse-advisor/assets/js/script.jscmsps-revenue-pulse-advisor/assets/css/style.css?ver=cmsps-revenue-pulse-advisor/assets/js/script.js?ver=HTML / DOM Fingerprints
cmsps-rpa-admin-notice<!-- CMSPS Revenue Pulse Advisor Activation Notice --><!-- CMSPS Revenue Pulse Advisor WooCommerce Required Notice -->data-cmsps-rpa-noncecmspsRPA_ajax_urlcmspsRPA_site_idcmspsRPA_site_token/wp-json/cmsps-rpa/v1/domain-proof