DEiXTo Recommender for WooCommerce Security & Risk Analysis

wordpress.org/plugins/deixto-recommender-for-woocommerce

DEiXTo Recommender recommends products in WooCommerce based e-shops, using the following methods: Best Selling, Top Rated, Recently Added, Featured, R …

0 active installs v1.0.3 PHP 7.2+ WP 5.5+ Updated Jun 5, 2022
carouselproduct-recommendationsrecommenderrelated-productsslider
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is DEiXTo Recommender for WooCommerce Safe to Use in 2026?

Generally Safe

Score 85/100

DEiXTo Recommender for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3yr ago
Risk Assessment

The static analysis of deixto-recommender-for-woocommerce v1.0.3 indicates a generally strong security posture, with several good practices observed. The plugin avoids dangerous functions, all SQL queries utilize prepared statements, and there are no recorded external HTTP requests or file operations. Notably, the absence of known CVEs and a clean vulnerability history suggest a well-maintained and secure plugin. However, there are areas for improvement. The plugin has a modest attack surface of 5 shortcodes, but none of the identified entry points (shortcodes, AJAX handlers, REST API routes) are protected by authentication or capability checks. Additionally, 26% of output escaping is missing, which could lead to cross-site scripting (XSS) vulnerabilities if user-supplied data is not properly handled before being displayed. The absence of taint analysis flows is positive but could also be due to the limited interaction points or a lack of complex data processing that would trigger such analysis.

Key Concerns

  • No capability checks on entry points
  • Unescaped output (26%)
Vulnerabilities
None known

DEiXTo Recommender for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

DEiXTo Recommender for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
20
58 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

74% escaped78 total outputs
Attack Surface

DEiXTo Recommender for WooCommerce Attack Surface

Entry Points5
Unprotected0

Shortcodes 5

[dr_random] shortcode\deixto-recommender-shortcodes.php:3
[dr_featured] shortcode\deixto-recommender-shortcodes.php:60
[dr_top_rated] shortcode\deixto-recommender-shortcodes.php:118
[dr_recent] shortcode\deixto-recommender-shortcodes.php:177
[dr_best_selling] shortcode\deixto-recommender-shortcodes.php:236
WordPress Hooks 20
actionadmin_menuadmin\deixto-recommender-admin.php:2
filterplugin_action_links_deixto-recommender-for-woocommerce/deixto-recommender.phpadmin\deixto-recommender-admin.php:18
actionplugins_loadedadmin\deixto-recommender-admin.php:30
actionadmin_noticesadmin\deixto-recommender-admin.php:33
actionadmin_initadmin\deixto-recommender-admin.php:73
actionadmin_initadmin\deixto-recommender-admin.php:445
actionwp_enqueue_scriptsdeixto-recommender.php:26
actionwp_enqueue_scriptsdeixto-recommender.php:52
actionadmin_enqueue_scriptsdeixto-recommender.php:62
actionadmin_enqueue_scriptsdeixto-recommender.php:74
filtergettextpublic\deixto-recommender-public.php:4
filterngettextpublic\deixto-recommender-public.php:5
filterwoocommerce_related_productspublic\deixto-recommender-public.php:18
filterwoocommerce_related_productspublic\deixto-recommender-public.php:61
filterwoocommerce_related_productspublic\deixto-recommender-public.php:107
filterwoocommerce_related_productspublic\deixto-recommender-public.php:151
filterwoocommerce_related_productspublic\deixto-recommender-public.php:197
actioninitpublic\deixto-recommender-public.php:241
filterwoocommerce_output_related_products_argspublic\deixto-recommender-public.php:249
filterwoocommerce_locate_templatetemplate-woocommerce-override.php:8
Maintenance & Trust

DEiXTo Recommender for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.0.11
Last updatedJun 5, 2022
PHP min version7.2
Downloads3K

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

DEiXTo Recommender for WooCommerce Developer Profile

deixto-wp

1 plugin · 0 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect DEiXTo Recommender for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/deixto-recommender-for-woocommerce/css/swiper-css.css/wp-content/plugins/deixto-recommender-for-woocommerce/css/init.css/wp-content/plugins/deixto-recommender-for-woocommerce/js/swiper-js.js/wp-content/plugins/deixto-recommender-for-woocommerce/js/init.js/wp-content/plugins/deixto-recommender-for-woocommerce/admin/css/init-menu.css/wp-content/plugins/deixto-recommender-for-woocommerce/admin/js/init-menu.js
Script Paths
/wp-content/plugins/deixto-recommender-for-woocommerce/js/swiper-js.js/wp-content/plugins/deixto-recommender-for-woocommerce/js/init.js/wp-content/plugins/deixto-recommender-for-woocommerce/admin/js/init-menu.js
Version Parameters
deixto-recommender-for-woocommerce/css/swiper-css.css?ver=deixto-recommender-for-woocommerce/css/init.css?ver=deixto-recommender-for-woocommerce/js/swiper-js.js?ver=deixto-recommender-for-woocommerce/js/init.js?ver=deixto-recommender-for-woocommerce/admin/css/init-menu.css?ver=deixto-recommender-for-woocommerce/admin/js/init-menu.js?ver=

HTML / DOM Fingerprints

CSS Classes
mySwiper_shortcodeswiper-slide
Data Attributes
data-effectdata-slidesperviewdata-speeddata-delaydata-spacebetweendata-disableoninteraction
JS Globals
scriptParams
Shortcode Output
[dr_random[dr_featured[dr_top_rated
FAQ

Frequently Asked Questions about DEiXTo Recommender for WooCommerce