CoinGate for WooCommerce Security & Risk Analysis

wordpress.org/plugins/coingate-for-woocommerce

Accept Crypto Payments with CoinGate for WooCommerce

500 active installs v2.3.0 PHP 7.3+ WP 5.3+ Updated Sep 8, 2025
accept-bitcoinbitcoincoingateethereumlitecoin
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is CoinGate for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

CoinGate for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 8mo ago
Risk Assessment

The coingate-for-woocommerce v2.3.0 plugin exhibits a strong security posture based on the provided static analysis. The absence of any identified dangerous functions, raw SQL queries, unsanitized output, or file operations is commendable. Furthermore, the complete lack of identified vulnerabilities in its history suggests a commitment to security by the developers. The attack surface is effectively zero, with no AJAX handlers, REST API routes, shortcodes, or cron events exposed, and all identified entry points are properly secured. This indicates a well-hardened plugin that prioritizes secure coding practices.

Vulnerabilities
None known

CoinGate for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

CoinGate for WooCommerce Release Timeline

v2.3.1
v2.3.0Current
v2.2.0
v2.1.1
v2.1.0
v2.0.2
v2.0.1
v2.0.0
v1.2.4
v1.2.3
v1.2.2
v1.2.1
v1.2.0
v1.1.0
v1.0.9
v1.0.8
v1.0.7
v1.0.6
v1.0.5
v1.0.4
Code Analysis
Analyzed Mar 16, 2026

CoinGate for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
13 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped13 total outputs
Attack Surface

CoinGate for WooCommerce Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 9
actionwoocommerce_update_options_payment_gateways_coingateincludes\class-coingate-for-woocommerce-payment-gateway.php:84
actionwoocommerce_update_options_payment_gateways_coingateincludes\class-coingate-for-woocommerce-payment-gateway.php:85
actionwoocommerce_thankyou_coingateincludes\class-coingate-for-woocommerce-payment-gateway.php:86
actionwoocommerce_api_wc_gateway_coingateincludes\class-coingate-for-woocommerce-payment-gateway.php:87
actionplugins_loadedincludes\class-coingate-for-woocommerce.php:137
actionplugins_loadedincludes\class-coingate-for-woocommerce.php:151
filterwoocommerce_payment_gatewaysincludes\class-coingate-for-woocommerce.php:164
actionwoocommerce_blocks_loadedincludes\class-coingate-for-woocommerce.php:166
actionwoocommerce_blocks_payment_method_type_registrationpublic\class-coingate-for-woocommerce-public.php:80
Maintenance & Trust

CoinGate for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedSep 8, 2025
PHP min version7.3
Downloads47K

Community Trust

Rating70/100
Number of ratings17
Active installs500
Developer Profile

CoinGate for WooCommerce Developer Profile

coingate

1 plugin · 500 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect CoinGate for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/coingate-for-woocommerce/assets/bitcoin.png

HTML / DOM Fingerprints

Data Attributes
id="coingate"name="woocommerce_coingate_settings"
JS Globals
CoinGate
REST Endpoints
/wp-json/wc/v3/orders/
FAQ

Frequently Asked Questions about CoinGate for WooCommerce