
Confirmed Shipped for WooCommerce – Add confirmed shipped order status Security & Risk Analysis
wordpress.org/plugins/confirmed-shipped-for-woocommerceConfirmed Shipped for WooCommerce adds an "Order Shipped" status to WooCommerce, improving workflow and keeping customers informed about shipments.
Is Confirmed Shipped for WooCommerce – Add confirmed shipped order status Safe to Use in 2026?
Generally Safe
Score 100/100Confirmed Shipped for WooCommerce – Add confirmed shipped order status has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin 'confirmed-shipped-for-woocommerce' v1.6.1 exhibits a strong security posture based on the provided static analysis. The absence of known vulnerabilities in its history, combined with the static analysis indicating no dangerous functions, raw SQL queries, file operations, or external HTTP requests, suggests a robust development approach. The presence of a nonce check and a high percentage of properly escaped output further bolster its security. The taint analysis also shows no critical or high severity flows, reinforcing the low-risk profile.
However, the static analysis does reveal some areas that, while not indicating immediate vulnerabilities in this version, warrant attention. The complete lack of capability checks on the entry points is a concern, as it implies that any user, regardless of their role, could potentially interact with these points if they were to exist or be discovered. While there are currently no exposed entry points, this could become a significant risk if new features are added without proper authorization checks. The absence of any recorded vulnerabilities in the past is a positive sign, suggesting a well-maintained codebase, but it doesn't guarantee future immunity. Overall, this plugin appears to be secure in its current state, with the main area for improvement being the implementation of capability checks on its entry points for future-proofing.
Key Concerns
- No capability checks on entry points
- 11% of output not properly escaped
Confirmed Shipped for WooCommerce – Add confirmed shipped order status Security Vulnerabilities
Confirmed Shipped for WooCommerce – Add confirmed shipped order status Code Analysis
Output Escaping
Data Flow Analysis
Confirmed Shipped for WooCommerce – Add confirmed shipped order status Attack Surface
WordPress Hooks 7
Maintenance & Trust
Confirmed Shipped for WooCommerce – Add confirmed shipped order status Maintenance & Trust
Maintenance Signals
Community Trust
Confirmed Shipped for WooCommerce – Add confirmed shipped order status Alternatives
Orders Tracking for WooCommerce
woo-orders-tracking
Easily import/manage your tracking numbers, add tracking numbers to PayPal and send email notifications to customers.
Advanced Shipment Tracking for WooCommerce
woo-advanced-shipment-tracking
Add shipment tracking info to WooCommerce orders, send tracking numbers to customers via email, and let them track deliveries from My Account.
Shiprocket
shiprocket
Auto Sync your Woocommerce store orders & ship them at lowest shipping rates. Automate your shipping, save time & money.
AfterShip Tracking – All-In-One WooCommerce Order Tracking (Free plan available)
aftership-woocommerce-tracking
Track orders in one place. shipment tracking, automated notifications, order lookup, branded tracking page, delivery day prediction
ParcelWILL (Formerly ParcelPanel) – Shipment Tracking, Tracking & Order Tracking for WooCommerce
parcelpanel
Free Plan Available. Order Tracking, Shipment Tracking. The best WooCommerce Order Tracker for Track Order Status & Delivery Notifications
Confirmed Shipped for WooCommerce – Add confirmed shipped order status Developer Profile
14 plugins · 850 total installs
How We Detect Confirmed Shipped for WooCommerce – Add confirmed shipped order status
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
initedinited_media_selectorname="tracking_number"value="'