Custom Status for WooCommerce Orders Security & Risk Analysis

wordpress.org/plugins/custom-status-for-wc-orders

The plugin helps you to create unlimited number of statuses for WooCommerce orders. Adding custom status helps you to differentiate between orders and …

20 active installs v1.0 PHP 7.0+ WP 5.0+ Updated Dec 8, 2021
custom-statusorders-statuswoocommerce-orders
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Custom Status for WooCommerce Orders Safe to Use in 2026?

Generally Safe

Score 85/100

Custom Status for WooCommerce Orders has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4yr ago
Risk Assessment

The custom-status-for-wc-orders plugin v1.0 demonstrates a very strong security posture based on the provided static analysis. The absence of any identified dangerous functions, SQL queries without prepared statements, unsanitized taint flows, and external HTTP requests are all positive indicators. Furthermore, the plugin correctly implements output escaping and has at least one capability check, suggesting an awareness of secure coding practices.

The plugin's attack surface is effectively zero, with no AJAX handlers, REST API routes, shortcodes, or cron events exposed. This significantly reduces the potential for attackers to interact with the plugin in unintended ways. The vulnerability history also shows no recorded CVEs, which, combined with the clean static analysis, suggests a mature and secure codebase.

Overall, this plugin appears to be very well-developed from a security perspective. Its strengths lie in its minimal attack surface and adherence to secure coding principles like prepared statements and output escaping. The lack of any identified vulnerabilities or risky code patterns is highly commendable.

Vulnerabilities
None known

Custom Status for WooCommerce Orders Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Custom Status for WooCommerce Orders Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
1 escaped
Nonce Checks
0
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped1 total outputs
Attack Surface

Custom Status for WooCommerce Orders Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 4
actioninitinc\mainFunction.php:15
filterwc_order_statusesinc\mainFunction.php:17
actionadmin_menuinc\menu_page.php:11
actionadmin_enqueue_scriptsinc\menu_page.php:13
Maintenance & Trust

Custom Status for WooCommerce Orders Maintenance & Trust

Maintenance Signals

WordPress version tested5.8.13
Last updatedDec 8, 2021
PHP min version7.0
Downloads1K

Community Trust

Rating100/100
Number of ratings1
Active installs20
Developer Profile

Custom Status for WooCommerce Orders Developer Profile

charlestsmith

5 plugins · 130 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Custom Status for WooCommerce Orders

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/custom-status-for-wc-orders/assets/css/global.css/wp-content/plugins/custom-status-for-wc-orders/assets/js/main.js
Script Paths
/wp-content/plugins/custom-status-for-wc-orders/assets/js/main.js
Version Parameters
custom-status-for-wc-orders/assets/css/global.css?ver=custom-status-for-wc-orders/assets/js/main.js?ver=

HTML / DOM Fingerprints

CSS Classes
notice-successnotice-warningis-dismissible
FAQ

Frequently Asked Questions about Custom Status for WooCommerce Orders