Custom Spinner For WooCommerce: custom spinner for the WooCommerce checkout and cart pages Security & Risk Analysis

wordpress.org/plugins/custom-spinner-for-woocommerce

Load your custom spinner for the WooCommerce checkout and cart pages.

80 active installs v0.0.2 PHP 5.6+ WP 4.6+ Updated Dec 10, 2025
ajax-loadercheckoutspinner
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Custom Spinner For WooCommerce: custom spinner for the WooCommerce checkout and cart pages Safe to Use in 2026?

Generally Safe

Score 100/100

Custom Spinner For WooCommerce: custom spinner for the WooCommerce checkout and cart pages has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3mo ago
Risk Assessment

The static analysis of "custom-spinner-for-woocommerce" v0.0.2 indicates a strong security posture regarding common web vulnerabilities. The plugin has a zero attack surface, meaning there are no apparent direct entry points like AJAX handlers, REST API routes, or shortcodes that could be exploited. Furthermore, the code demonstrates good practices by not using dangerous functions, all SQL queries are prepared, and output is consistently escaped, preventing cross-site scripting (XSS) vulnerabilities. There are also no file operations or external HTTP requests, further reducing the potential for attack vectors. Taint analysis shows no unsanitized flows, reinforcing the idea that user input is likely handled safely.

However, the absence of nonce checks and capability checks, while not directly leading to a vulnerability in this specific version due to the lack of an attack surface, represents a potential weakness. If future versions introduce new entry points or functionality, these checks would be crucial for authorization and preventing CSRF attacks. The plugin's vulnerability history is also empty, which is positive, but it's important to note that this could be due to its current limited exposure or the short time it has been in the wild. Overall, the plugin appears secure in its current state based on the provided data, but the lack of authorization checks is a point of caution for future development.

Key Concerns

  • Missing nonce checks
  • Missing capability checks
Vulnerabilities
None known

Custom Spinner For WooCommerce: custom spinner for the WooCommerce checkout and cart pages Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Custom Spinner For WooCommerce: custom spinner for the WooCommerce checkout and cart pages Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
9 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped9 total outputs
Attack Surface

Custom Spinner For WooCommerce: custom spinner for the WooCommerce checkout and cart pages Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 5
filterwoocommerce_settings_tabs_arrayadmin\csw-admin.php:4
filterwoocommerce_get_sections_productsadmin\csw-admin.php:9
actionwoocommerce_settings_tabs_custom_spinneradmin\csw-admin.php:14
actionwoocommerce_update_options_custom_spinneradmin\csw-admin.php:55
actionwp_headcustom-spinner-for-woocommerce.php:38
Maintenance & Trust

Custom Spinner For WooCommerce: custom spinner for the WooCommerce checkout and cart pages Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 10, 2025
PHP min version5.6
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs80
Developer Profile

Custom Spinner For WooCommerce: custom spinner for the WooCommerce checkout and cart pages Developer Profile

Jose Mortellaro

56 plugins · 26K total installs

87
trust score
Avg Security Score
99/100
Avg Patch Time
62 days
View full developer profile
Detection Fingerprints

How We Detect Custom Spinner For WooCommerce: custom spinner for the WooCommerce checkout and cart pages

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/custom-spinner-for-woocommerce/admin/assets/js/csw-admin.js
Script Paths
/wp-content/plugins/custom-spinner-for-woocommerce/admin/assets/js/csw-admin.js
Version Parameters
custom-spinner-for-woocommerce/admin/assets/js/csw-admin.js?ver=

HTML / DOM Fingerprints

CSS Classes
csfw-link
Data Attributes
id="csw-css"id="csw-upload"id="csw-preview-wrp"id="csw-preview"id="custom_spinner_gif"
JS Globals
csw_params
FAQ

Frequently Asked Questions about Custom Spinner For WooCommerce: custom spinner for the WooCommerce checkout and cart pages