Digital Signature for eCommerce Checkout Security & Risk Analysis

wordpress.org/plugins/digital-signature-for-ecommerce-checkout

Add a secure and responsive digital signature field to the WooCommerce checkout page. Perfect for waivers, terms, and customer authorization.

10 active installs v1.0.3 PHP 7.0+ WP 5.5+ Updated Aug 24, 2025
checkout-signaturedigital-signaturee-signatureorder-signaturesignature-field
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Digital Signature for eCommerce Checkout Safe to Use in 2026?

Generally Safe

Score 100/100

Digital Signature for eCommerce Checkout has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 7mo ago
Risk Assessment

The plugin "digital-signature-for-ecommerce-checkout" v1.0.3 exhibits a very strong security posture based on the provided static analysis and vulnerability history. The complete absence of unprotected entry points, dangerous functions, raw SQL queries, and critical taint flows is highly commendable and indicates excellent development practices. The high percentage of properly escaped output further reinforces this positive assessment, minimizing the risk of cross-site scripting vulnerabilities.

The vulnerability history is also a significant strength, with zero known CVEs of any severity. This suggests a well-maintained and thoroughly tested plugin. The presence of a file operation, a nonce check, and a capability check, while present, are noted as single instances. Without further context on the nature of these operations, it's difficult to assign a specific risk, but their presence within a generally secure codebase is not inherently concerning.

Overall, this plugin appears to be very secure. The primary areas of potential, albeit minor, concern would be further investigation into the single file operation to ensure it's handled securely, and confirmation that the nonce and capability checks cover all necessary functionalities. However, based on the provided data, the risk associated with this plugin is exceptionally low.

Vulnerabilities
None known

Digital Signature for eCommerce Checkout Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Digital Signature for eCommerce Checkout Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
11
56 escaped
Nonce Checks
1
Capability Checks
1
File Operations
1
External Requests
0
Bundled Libraries
0

Output Escaping

84% escaped67 total outputs
Data Flows
All sanitized

Data Flow Analysis

3 flows
dsfec_settings_page (includes\class-dsfec-signature-backend.php:145)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Digital Signature for eCommerce Checkout Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 15
actionplugins_loadeddigital-signature-for-ecommerce-checkout.php:42
actionadmin_menuincludes\class-dsfec-signature-backend.php:19
actionadmin_post_dsfec_save_settingsincludes\class-dsfec-signature-backend.php:22
actionadmin_enqueue_scriptsincludes\class-dsfec-signature-backend.php:25
actionwp_enqueue_scriptsincludes\class-dsfec-signature-frontend.php:20
actionwoocommerce_blocks_loadedincludes\class-dsfec-signature-frontend.php:23
actionwoocommerce_blocks_checkout_block_registrationincludes\class-dsfec-signature-frontend.php:27
actionwoocommerce_store_api_checkout_update_order_from_requestincludes\class-dsfec-signature-frontend.php:36
actionwoocommerce_before_checkout_billing_formincludes\class-dsfec-signature-frontend.php:40
actionwoocommerce_after_checkout_billing_formincludes\class-dsfec-signature-frontend.php:42
actionwoocommerce_checkout_update_order_metaincludes\class-dsfec-signature-frontend.php:44
actionwoocommerce_checkout_processincludes\class-dsfec-signature-frontend.php:45
actionwoocommerce_order_details_before_order_tableincludes\class-dsfec-signature-frontend.php:48
actionwoocommerce_order_details_after_order_tableincludes\class-dsfec-signature-frontend.php:50
actionwoocommerce_admin_order_data_after_billing_addressincludes\class-dsfec-signature-frontend.php:53
Maintenance & Trust

Digital Signature for eCommerce Checkout Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedAug 24, 2025
PHP min version7.0
Downloads590

Community Trust

Rating100/100
Number of ratings1
Active installs10
Developer Profile

Digital Signature for eCommerce Checkout Developer Profile

Pluginorbit

2 plugins · 30 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Digital Signature for eCommerce Checkout

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/digital-signature-for-ecommerce-checkout/assets/css/dsfec-backend.css
Script Paths
/wp-content/plugins/digital-signature-for-ecommerce-checkout/assets/js/dsfec-frontend.js
Version Parameters
digital-signature-for-ecommerce-checkout/assets/css/dsfec-backend.css?ver=digital-signature-for-ecommerce-checkout/assets/js/dsfec-frontend.js?ver=

HTML / DOM Fingerprints

CSS Classes
dsfec-color-pickerdsfec_settings_containerdsfec_setting_fields
Data Attributes
data-default-color
JS Globals
DSFEC_VERSIONDSFEC_PLUGIN_URL
FAQ

Frequently Asked Questions about Digital Signature for eCommerce Checkout