Courier Tracking for WooCommerce Security & Risk Analysis

wordpress.org/plugins/courier-tracking-woocommerce

Now clients be able to track a courier on the map in real time. Improve your delivery with Courier Tracking. Set delivery status on each order.

0 active installs v1.0.1 PHP + WP 6.7+ Updated Jun 21, 2025
courierdeliverytrackertrackingwoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Courier Tracking for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

Courier Tracking for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 11mo ago
Risk Assessment

Based on the provided static analysis and vulnerability history, the "courier-tracking-woocommerce" plugin version 1.0.1 exhibits a generally good security posture. The code appears to be written with security best practices in mind, evident by the absence of dangerous functions, 100% use of prepared statements for SQL queries, and 100% proper output escaping. The plugin also has a clean vulnerability history with no recorded CVEs, indicating a history of stable and secure development. The limited attack surface and the presence of capability checks further contribute to its positive security standing.

However, a notable concern is the complete absence of nonce checks. While the analysis did not identify any direct vulnerabilities stemming from this, nonces are a critical layer of defense against Cross-Site Request Forgery (CSRF) attacks. Their absence creates a potential weakness that could be exploited if other security measures were to fail or be bypassed. The presence of two cron events without explicitly stated authentication checks also represents a small, albeit unquantified, potential attack vector. In conclusion, the plugin is strong in areas like data sanitization and SQL security, but the lack of nonce checks is a significant oversight that warrants attention for a more robust security profile.

Key Concerns

  • No nonce checks on entry points
  • Cron events without apparent auth checks
Vulnerabilities
None known

Courier Tracking for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Courier Tracking for WooCommerce Release Timeline

v1.0.1Current
v1.0.0
Code Analysis
Analyzed Apr 16, 2026

Courier Tracking for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
46 prepared
Unescaped Output
0
49 escaped
Nonce Checks
0
Capability Checks
9
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared46 total queries

Output Escaping

100% escaped49 total outputs
Attack Surface

Courier Tracking for WooCommerce Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 15
actionadmin_menuadmin/class-woo-courier-tracking-admin.php:502
actionplugins_loadedincludes/class-woo-courier-tracking.php:151
actionadmin_enqueue_scriptsincludes/class-woo-courier-tracking.php:166
actionadmin_enqueue_scriptsincludes/class-woo-courier-tracking.php:167
actionrest_api_initincludes/class-woo-courier-tracking.php:169
actionrest_api_initincludes/class-woo-courier-tracking.php:170
actionrest_api_initincludes/class-woo-courier-tracking.php:171
actioncourier_tracker_5min_eventincludes/class-woo-courier-tracking.php:173
actionwp_enqueue_scriptsincludes/class-woo-courier-tracking.php:187
actionwp_enqueue_scriptsincludes/class-woo-courier-tracking.php:188
actionrest_api_initincludes/class-woo-courier-tracking.php:189
actionwoocommerce_order_details_before_order_table_itemsincludes/class-woo-courier-tracking.php:191
filtercron_schedulesincludes/class-woo-courier-tracking.php:206
actioninitincludes/class-woo-courier-tracking.php:245
actioncouriertrackingwoocommerce_courier_tracking_every_five_minutesincludes/class-woo-courier-tracking.php:246

Scheduled Events 2

couriertrackingwoocommerce_courier_tracker_cron
couriertrackingwoocommerce_courier_tracking_every_five_minutes
Maintenance & Trust

Courier Tracking for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedJun 21, 2025
PHP min version
Downloads561

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Courier Tracking for WooCommerce Developer Profile

restorro

2 plugins · 10 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Courier Tracking for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/courier-tracking-woocommerce/assets/css/woo-courier-tracking-public.css/wp-content/plugins/courier-tracking-woocommerce/assets/js/woo-courier-tracking-public.js/wp-content/plugins/courier-tracking-woocommerce/assets/css/woo-courier-tracking-admin.css/wp-content/plugins/courier-tracking-woocommerce/assets/js/woo-courier-tracking-admin.js/wp-content/plugins/courier-tracking-woocommerce/assets/js/woo-courier-tracking-script.js
Script Paths
/wp-content/plugins/courier-tracking-woocommerce/assets/js/woo-courier-tracking-public.js/wp-content/plugins/courier-tracking-woocommerce/assets/js/woo-courier-tracking-admin.js/wp-content/plugins/courier-tracking-woocommerce/assets/js/woo-courier-tracking-script.js
Version Parameters
courier-tracking-woocommerce/assets/css/woo-courier-tracking-public.css?ver=courier-tracking-woocommerce/assets/js/woo-courier-tracking-public.js?ver=courier-tracking-woocommerce/assets/css/woo-courier-tracking-admin.css?ver=courier-tracking-woocommerce/assets/js/woo-courier-tracking-admin.js?ver=courier-tracking-woocommerce/assets/js/woo-courier-tracking-script.js?ver=

HTML / DOM Fingerprints

CSS Classes
woo-courier-tracking-map
Data Attributes
data-courier-tracking-map-iddata-courier-tracking-map-icon-urldata-courier-tracking-map-center-latdata-courier-tracking-map-center-lngdata-courier-tracking-map-zoomdata-courier-tracking-map-marker-lat+2 more
JS Globals
woo_courier_tracking_public_params
FAQ

Frequently Asked Questions about Courier Tracking for WooCommerce