DigiCommerce – Conversion-Focused Digital Sales Platform Security & Risk Analysis

wordpress.org/plugins/digicommerce

DigiCommerce is your lightning-fast, conversion-optimized solution for selling digital products - built to maximize your business growth.

10 active installs v1.0.5 PHP 7.4+ WP 6.0+ Updated Unknown
appointmentsdigital-productsecommercesell-onlineshop
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is DigiCommerce – Conversion-Focused Digital Sales Platform Safe to Use in 2026?

Generally Safe

Score 100/100

DigiCommerce – Conversion-Focused Digital Sales Platform has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs
Risk Assessment

The "digicommerce" v1.0.5 plugin exhibits a generally strong security posture with a high percentage of SQL queries using prepared statements and proper output escaping. The absence of known CVEs and a clean vulnerability history are positive indicators. However, the static analysis reveals several areas of concern that warrant attention. A significant number of AJAX handlers and REST API routes lack proper authorization checks, presenting a potential attack surface that could be exploited if specific vulnerabilities are present. The taint analysis also highlights a substantial number of flows with unsanitized paths, with 20 identified as high severity. While no critical taint flows or direct vulnerabilities are flagged, these unsanitized paths are a significant risk, as they can lead to various injection attacks if exploited.

Overall, the plugin demonstrates good development practices in terms of data handling (prepared statements, escaping), but the lack of robust access controls on certain entry points and the presence of numerous unsanitized data flows are critical weaknesses. The lack of historical vulnerabilities might indicate a mature, well-tested codebase or simply a lack of discovery. It's crucial to address the identified taint analysis issues and the unprotected entry points to mitigate potential risks.

Key Concerns

  • REST API routes without permission callbacks
  • AJAX handlers without authentication checks
  • High severity taint flows with unsanitized paths
Vulnerabilities
None known

DigiCommerce – Conversion-Focused Digital Sales Platform Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

DigiCommerce – Conversion-Focused Digital Sales Platform Code Analysis

Dangerous Functions
0
Raw SQL Queries
21
202 prepared
Unescaped Output
54
1842 escaped
Nonce Checks
40
Capability Checks
48
File Operations
18
External Requests
14
Bundled Libraries
1

Bundled Libraries

Stripe PHP

SQL Query Safety

91% prepared223 total queries

Output Escaping

97% escaped1896 total outputs
Data Flows
23 unsanitized

Data Flow Analysis

25 flows23 with unsanitized paths
send_file (includes\admin\class-digicommerce-files.php:434)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
2 unprotected

DigiCommerce – Conversion-Focused Digital Sales Platform Attack Surface

Entry Points40
Unprotected2

AJAX Handlers 33

authwp_ajax_digicommerce_download_tokenincludes\admin\class-digicommerce-files.php:77
noprivwp_ajax_digicommerce_download_tokenincludes\admin\class-digicommerce-files.php:78
authwp_ajax_digicommerce_upload_fileincludes\admin\class-digicommerce-files.php:80
authwp_ajax_digicommerce_reports_overviewincludes\admin\class-digicommerce-reports.php:37
authwp_ajax_digicommerce_reports_productsincludes\admin\class-digicommerce-reports.php:38
authwp_ajax_digicommerce_reports_customersincludes\admin\class-digicommerce-reports.php:39
authwp_ajax_digicommerce_reports_taxesincludes\admin\class-digicommerce-reports.php:40
authwp_ajax_digicommerce_reports_couponsincludes\admin\class-digicommerce-reports.php:43
authwp_ajax_digicommerce_reports_subscriptionsincludes\admin\class-digicommerce-reports.php:46
authwp_ajax_digicommerce_reports_abandoned_cartincludes\admin\class-digicommerce-reports.php:49
authwp_ajax_digicommerce_dismiss_review_noticeincludes\admin\class-digicommerce-review-notice.php:23
authwp_ajax_digicommerce_setup_wizard_saveincludes\admin\class-digicommerce-wizard.php:33
authwp_ajax_digicommerce_skip_setupincludes\admin\class-digicommerce-wizard.php:34
authwp_ajax_digicommerce_add_to_cartincludes\class-digicommerce-checkout.php:62
noprivwp_ajax_digicommerce_add_to_cartincludes\class-digicommerce-checkout.php:63
authwp_ajax_digicommerce_process_checkoutincludes\class-digicommerce-checkout.php:64
noprivwp_ajax_digicommerce_process_checkoutincludes\class-digicommerce-checkout.php:65
authwp_ajax_digicommerce_login_checkoutincludes\class-digicommerce-checkout.php:68
noprivwp_ajax_digicommerce_login_checkoutincludes\class-digicommerce-checkout.php:69
authwp_ajax_digicommerce_remove_cart_itemincludes\class-digicommerce-checkout.php:73
noprivwp_ajax_digicommerce_remove_cart_itemincludes\class-digicommerce-checkout.php:74
noprivwp_ajax_digicommerce_loginincludes\front\class-digicommerce-account.php:38
noprivwp_ajax_digicommerce_registerincludes\front\class-digicommerce-account.php:39
noprivwp_ajax_digicommerce_lost_passwordincludes\front\class-digicommerce-account.php:40
noprivwp_ajax_digicommerce_reset_passwordincludes\front\class-digicommerce-account.php:41
authwp_ajax_digicommerce_update_profileincludes\front\class-digicommerce-account.php:44
authwp_ajax_digicommerce_change_passwordincludes\front\class-digicommerce-account.php:45
authwp_ajax_digicommerce_create_paypal_planincludes\gateways\class-digicommerce-paypal.php:56
noprivwp_ajax_digicommerce_create_paypal_planincludes\gateways\class-digicommerce-paypal.php:57
authwp_ajax_digicommerce_process_stripe_paymentincludes\gateways\class-digicommerce-stripe.php:66
noprivwp_ajax_digicommerce_process_stripe_paymentincludes\gateways\class-digicommerce-stripe.php:67
authwp_ajax_digicommerce_verify_subscriptionincludes\gateways\class-digicommerce-stripe.php:68
noprivwp_ajax_digicommerce_verify_subscriptionincludes\gateways\class-digicommerce-stripe.php:69

REST API Routes 3

POST/wp-json/wp/v2/digicommerce/delete-fileincludes\admin\class-digicommerce-product.php:836
POST/wp-json/digicommerce/v2/paypal-webhookincludes\gateways\class-digicommerce-paypal-webhook.php:39
POST/wp-json/digicommerce/v2/stripe-webhookincludes\gateways\class-digicommerce-stripe-webhook.php:39

Shortcodes 4

[digicommerce_account] includes\class-digicommerce-shortcodes.php:31
[digicommerce_reset_password] includes\class-digicommerce-shortcodes.php:32
[digicommerce_checkout] includes\class-digicommerce-shortcodes.php:33
[digicommerce_payment_success] includes\class-digicommerce-shortcodes.php:34
WordPress Hooks 134
actionwp_enqueue_scriptsdigicommerce.php:125
actionwp_enqueue_scriptsdigicommerce.php:128
actionadmin_initdigicommerce.php:131
filtershow_admin_bardigicommerce.php:132
actioninitdigicommerce.php:135
filterdisplay_post_statesdigicommerce.php:138
actiontemplate_redirectdigicommerce.php:147
filterbody_classdigicommerce.php:150
actionwp_enqueue_scriptsdigicommerce.php:153
filterlanguage_attributesdigicommerce.php:156
filterbody_classdigicommerce.php:1071
filterblock_categories_allincludes\admin\class-digicommerce-blocks.php:19
actionenqueue_block_editor_assetsincludes\admin\class-digicommerce-blocks.php:20
actionplugins_loadedincludes\admin\class-digicommerce-blocks.php:23
actionwp_dashboard_setupincludes\admin\class-digicommerce-dashboard.php:67
actiondigicommerce_order_createdincludes\admin\class-digicommerce-dashboard.php:70
actiondigicommerce_order_status_changedincludes\admin\class-digicommerce-dashboard.php:71
actiondigicommerce_order_deletedincludes\admin\class-digicommerce-dashboard.php:72
actionadmin_enqueue_scriptsincludes\admin\class-digicommerce-dashboard.php:86
actioninitincludes\admin\class-digicommerce-files.php:73
filterquery_varsincludes\admin\class-digicommerce-files.php:74
actiontemplate_redirectincludes\admin\class-digicommerce-files.php:79
filterdigicommerce_before_remove_fileincludes\admin\class-digicommerce-files.php:81
filterupload_mimesincludes\admin\class-digicommerce-files.php:82
actionplugins_loadedincludes\admin\class-digicommerce-files.php:88
actionadmin_menuincludes\admin\class-digicommerce-import-export.php:30
actionadmin_post_digicommerce_exportincludes\admin\class-digicommerce-import-export.php:33
actionadmin_post_digicommerce_importincludes\admin\class-digicommerce-import-export.php:34
actionadmin_enqueue_scriptsincludes\admin\class-digicommerce-import-export.php:37
filteradmin_footer_textincludes\admin\class-digicommerce-import-export.php:40
filterupdate_footerincludes\admin\class-digicommerce-import-export.php:41
filterlanguage_attributesincludes\admin\class-digicommerce-import-export.php:44
actionadmin_menuincludes\admin\class-digicommerce-pro-addons.php:36
actionadmin_enqueue_scriptsincludes\admin\class-digicommerce-pro-addons.php:37
filteradmin_footer_textincludes\admin\class-digicommerce-pro-addons.php:40
filterupdate_footerincludes\admin\class-digicommerce-pro-addons.php:41
actionadd_meta_boxesincludes\admin\class-digicommerce-product-metaboxes.php:43
actionsave_postincludes\admin\class-digicommerce-product-metaboxes.php:44
actionadmin_enqueue_scriptsincludes\admin\class-digicommerce-product-metaboxes.php:45
actioninitincludes\admin\class-digicommerce-product.php:32
actioninitincludes\admin\class-digicommerce-product.php:33
actioninitincludes\admin\class-digicommerce-product.php:34
actionadmin_initincludes\admin\class-digicommerce-product.php:37
actionwp_enqueue_scriptsincludes\admin\class-digicommerce-product.php:42
filtertemplate_includeincludes\admin\class-digicommerce-product.php:45
filtertemplate_includeincludes\admin\class-digicommerce-product.php:46
actionrest_api_initincludes\admin\class-digicommerce-product.php:50
actionenqueue_block_editor_assetsincludes\admin\class-digicommerce-product.php:169
actionadmin_enqueue_scriptsincludes\admin\class-digicommerce-product.php:170
actionadmin_menuincludes\admin\class-digicommerce-reports.php:31
actionadmin_enqueue_scriptsincludes\admin\class-digicommerce-reports.php:34
filteradmin_footer_textincludes\admin\class-digicommerce-reports.php:54
filterupdate_footerincludes\admin\class-digicommerce-reports.php:55
filterlanguage_attributesincludes\admin\class-digicommerce-reports.php:58
actionadmin_noticesincludes\admin\class-digicommerce-review-notice.php:20
actionadmin_enqueue_scriptsincludes\admin\class-digicommerce-review-notice.php:26
actionadmin_menuincludes\admin\class-digicommerce-settings.php:29
actionadmin_initincludes\admin\class-digicommerce-settings.php:30
actionadmin_initincludes\admin\class-digicommerce-settings.php:31
actionadmin_enqueue_scriptsincludes\admin\class-digicommerce-settings.php:32
filteradmin_footer_textincludes\admin\class-digicommerce-settings.php:33
filterupdate_footerincludes\admin\class-digicommerce-settings.php:34
filterlanguage_attributesincludes\admin\class-digicommerce-settings.php:35
actionadmin_enqueue_scriptsincludes\admin\class-digicommerce-wizard.php:32
actionadmin_footerincludes\admin\class-digicommerce-wizard.php:37
actionadmin_initincludes\admin\class-digicommerce-wizard.php:40
actioninitincludes\blocks\class-digicommerce-add-to-cart-block.php:19
actioninitincludes\blocks\class-digicommerce-order-details-block.php:19
actioninitincludes\blocks\class-digicommerce-order-receipt-block.php:19
actioninitincludes\blocks\class-digicommerce-product-button-block.php:19
actioninitincludes\blocks\class-digicommerce-product-content-block.php:19
actioninitincludes\blocks\class-digicommerce-product-description-block.php:19
actioninitincludes\blocks\class-digicommerce-product-features-block.php:19
actioninitincludes\blocks\class-digicommerce-product-gallery-block.php:19
actioninitincludes\blocks\class-digicommerce-product-meta-block.php:19
actioninitincludes\blocks\class-digicommerce-product-price-block.php:19
actioninitincludes\blocks\class-digicommerce-product-share-block.php:19
actioninitincludes\blocks\class-digicommerce-product-title-block.php:19
actioninitincludes\blocks\class-digicommerce-products-filters-block.php:19
actioninitincludes\blocks\class-digicommerce-products-grid-block.php:19
actioninitincludes\blocks\class-digicommerce-products-sorting-block.php:19
actioninitincludes\blocks\class-digicommerce-success-message-block.php:19
actioninitincludes\class-digicommerce-checkout.php:56
actionshutdownincludes\class-digicommerce-checkout.php:59
actioninitincludes\class-digicommerce-checkout.php:61
actionwp_footerincludes\class-digicommerce-checkout.php:79
actionwp_loginincludes\class-digicommerce-checkout.php:83
actionwp_logoutincludes\class-digicommerce-checkout.php:84
actiondigicommerce_cleanup_sessionsincludes\class-digicommerce-checkout.php:90
filterdigicommerce_cart_itemsincludes\class-digicommerce-checkout.php:156
actioninitincludes\class-digicommerce-emails.php:29
filterwp_mail_content_typeincludes\class-digicommerce-emails.php:30
filterwp_mail_fromincludes\class-digicommerce-emails.php:38
filterwp_mail_from_nameincludes\class-digicommerce-emails.php:46
actionadmin_menuincludes\class-digicommerce-orders.php:76
actionadmin_enqueue_scriptsincludes\class-digicommerce-orders.php:77
actionadmin_initincludes\class-digicommerce-orders.php:78
actionadmin_initincludes\class-digicommerce-orders.php:79
actionwp_enqueue_scriptsincludes\class-digicommerce-orders.php:80
actionload-digicommerce_page_digi-ordersincludes\class-digicommerce-orders.php:83
filterset-screen-optionincludes\class-digicommerce-orders.php:84
filteradmin_footer_textincludes\class-digicommerce-orders.php:87
filterupdate_footerincludes\class-digicommerce-orders.php:88
filterauthenticateincludes\class-digicommerce-security.php:46
actioninitincludes\class-digicommerce-theme-compatibility.php:21
actiontemplate_redirectincludes\class-digicommerce-theme-compatibility.php:24
filterpre_get_block_file_templateincludes\class-digicommerce-theme-compatibility.php:27
filterget_block_templatesincludes\class-digicommerce-theme-compatibility.php:30
actionwp_headincludes\class-digicommerce-theme-compatibility.php:101
actionwp_headincludes\class-digicommerce-theme-compatibility.php:103
actiondigicommerce_before_wrapperincludes\compatibility\class-digicommerce-blocksy.php:36
actiondigicommerce_after_wrapperincludes\compatibility\class-digicommerce-blocksy.php:37
actiondigicommerce_before_wrapperincludes\compatibility\class-digicommerce-hello-elementor.php:36
actiondigicommerce_after_wrapperincludes\compatibility\class-digicommerce-hello-elementor.php:37
actiondigicommerce_before_wrapperincludes\compatibility\class-digicommerce-hestia.php:36
actiondigicommerce_after_wrapperincludes\compatibility\class-digicommerce-hestia.php:37
actiondigicommerce_before_wrapperincludes\compatibility\class-digicommerce-kadence.php:36
actiondigicommerce_after_wrapperincludes\compatibility\class-digicommerce-kadence.php:37
actiondigicommerce_before_wrapperincludes\compatibility\class-digicommerce-neve.php:36
actiondigicommerce_after_wrapperincludes\compatibility\class-digicommerce-neve.php:37
actiondigicommerce_before_wrapperincludes\compatibility\class-digicommerce-oceanwp.php:36
actiondigicommerce_after_wrapperincludes\compatibility\class-digicommerce-oceanwp.php:37
actioninitincludes\front\class-digicommerce-account.php:48
actionwp_logoutincludes\front\class-digicommerce-account.php:49
filterlogin_urlincludes\front\class-digicommerce-account.php:50
filterlostpassword_urlincludes\front\class-digicommerce-account.php:51
actionlogin_form_logoutincludes\front\class-digicommerce-account.php:54
actionwp_logoutincludes\front\class-digicommerce-login-handler.php:30
actioninitincludes\front\class-digicommerce-login-handler.php:34
filterlostpassword_urlincludes\front\class-digicommerce-login-handler.php:37
filterregister_urlincludes\front\class-digicommerce-login-handler.php:38
filterlogin_urlincludes\front\class-digicommerce-login-handler.php:39
actionrest_api_initincludes\gateways\class-digicommerce-paypal-webhook.php:32
actionrest_api_initincludes\gateways\class-digicommerce-stripe-webhook.php:32

Scheduled Events 1

digicommerce_cleanup_sessions
Maintenance & Trust

DigiCommerce – Conversion-Focused Digital Sales Platform Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedUnknown
PHP min version7.4
Downloads948

Community Trust

Rating100/100
Number of ratings2
Active installs10
Developer Profile

DigiCommerce – Conversion-Focused Digital Sales Platform Developer Profile

DigiHold

5 plugins · 180 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect DigiCommerce – Conversion-Focused Digital Sales Platform

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/digicommerce/assets/css/theme-options.css/wp-content/plugins/digicommerce/assets/css/admin.css/wp-content/plugins/digicommerce/assets/css/customizer.css/wp-content/plugins/digicommerce/assets/css/customizer_preview.css/wp-content/plugins/digicommerce/assets/js/admin.js/wp-content/plugins/digicommerce/assets/js/customizer.js/wp-content/plugins/digicommerce/assets/js/color-picker.js
Script Paths
/wp-content/plugins/digicommerce/assets/js/admin.js/wp-content/plugins/digicommerce/assets/js/customizer.js/wp-content/plugins/digicommerce/assets/js/color-picker.js
Version Parameters
digicommerce/assets/css/theme-options.css?ver=digicommerce/assets/css/admin.css?ver=digicommerce/assets/css/customizer.css?ver=digicommerce/assets/css/customizer_preview.css?ver=digicommerce/assets/js/admin.js?ver=digicommerce/assets/js/customizer.js?ver=digicommerce/assets/js/color-picker.js?ver=

HTML / DOM Fingerprints

CSS Classes
digicommerce-account-formdigicommerce-cart-tabledigicommerce-checkout-formdigicommerce-product-listdigicommerce-order-detailsdigicommerce-dashboard-widgetdigicommerce-review-noticedigicommerce-settings-section
HTML Comments
<!-- BEGIN: DigiCommerce Shortcode --><!-- END: DigiCommerce Shortcode --><!-- DigiCommerce Admin Notice --><!-- DigiCommerce Review Notice -->+1 more
Data Attributes
data-digicommerce-product-iddata-digicommerce-cart-itemdata-digicommerce-checkout-fielddata-digicommerce-order-id
JS Globals
window.DigiCommerceAdminwindow.DigiCommerceCustomizer
REST Endpoints
/wp-json/digicommerce/v1/products/wp-json/digicommerce/v1/orders/wp-json/digicommerce/v1/cart
Shortcode Output
[digicommerce_products][digicommerce_cart][digicommerce_checkout][digicommerce_account]
FAQ

Frequently Asked Questions about DigiCommerce – Conversion-Focused Digital Sales Platform