Discountify – Discount Rules & Coupon Management for WooCommerce Security & Risk Analysis

wordpress.org/plugins/discountify

Discountify is a WooCommerce discount rules and dynamic pricing plugin that allow you to set different discount rules in WordPress eCommerce stores.

30 active installs v1.0.87 PHP 7.4+ WP 5.0+ Updated Apr 4, 2026
category-discountdiscountdiscount-rulesdynamic-pricing
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Discountify – Discount Rules & Coupon Management for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

Discountify – Discount Rules & Coupon Management for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

Discountify v1.0.84 exhibits a mixed security posture. On the positive side, it demonstrates good practices in areas such as SQL query sanitization and output escaping, with a very high percentage of outputs being properly escaped. The absence of known vulnerabilities and a clean vulnerability history are also strong indicators of a well-maintained plugin. However, a significant concern arises from the presence of two unprotected AJAX handlers, which represent an open attack surface. While no critical taint flows or dangerous functions were detected, the unprotected AJAX endpoints could potentially be exploited if they handle user-supplied data without proper validation and authorization, allowing for unauthorized actions or information disclosure.

The plugin's vulnerability history is clean, showing no past issues, which is encouraging. This suggests a proactive approach to security from the developers. However, the presence of unprotected AJAX handlers, despite the clean history, highlights a potential blind spot or oversight that needs addressing. The plugin's strengths lie in its secure handling of SQL and outputs, but its weakness is the exposed AJAX endpoints. Overall, the plugin is in a relatively good state, but the identified attack surface requires immediate attention to prevent potential vulnerabilities.

Key Concerns

  • Unprotected AJAX handlers found
  • Large attack surface without auth checks
Vulnerabilities
None known

Discountify – Discount Rules & Coupon Management for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Discountify – Discount Rules & Coupon Management for WooCommerce Release Timeline

v1.0.87Current
v1.0.86
v1.0.85
v1.0.84
v1.0.83
v1.0.82
v1.0.81
v1.0.80
v1.0.79
v1.0.78
v1.0.77
v1.0.76
v1.0.75
v1.0.74
v1.0.73
v1.0.72
v1.0.71
v1.0.70
Code Analysis
Analyzed Mar 16, 2026

Discountify – Discount Rules & Coupon Management for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
6
180 escaped
Nonce Checks
2
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
1

Bundled Libraries

Select2

Output Escaping

97% escaped186 total outputs
Attack Surface
2 unprotected

Discountify – Discount Rules & Coupon Management for WooCommerce Attack Surface

Entry Points2
Unprotected2

AJAX Handlers 2

authwp_ajax_discountify_get_variation_discountcore\frontend\frontend.php:51
noprivwp_ajax_discountify_get_variation_discountcore\frontend\frontend.php:52
WordPress Hooks 19
actionadmin_enqueue_scriptsbase\enqueue.php:22
actionwp_enqueue_scriptsbase\enqueue.php:24
actionelementor/editor/before_enqueue_stylesbase\enqueue.php:26
actionelementor/frontend/before_enqueue_scriptsbase\enqueue.php:28
actionadmin_menucore\admin\menus.php:27
actioninitcore\admin\settings\settings.php:34
filterwoocommerce_cart_item_pricecore\frontend\frontend.php:33
actionwoocommerce_before_calculate_totalscore\frontend\frontend.php:34
filterwoocommerce_get_item_datacore\frontend\frontend.php:37
actionwoocommerce_checkout_create_order_line_itemcore\frontend\frontend.php:40
actionwp_headcore\frontend\frontend.php:43
actionwoocommerce_cart_calculate_feescore\frontend\frontend.php:45
filterwoocommerce_package_ratescore\frontend\frontend.php:46
filterwoocommerce_get_shop_coupon_datacore\frontend\frontend.php:47
filterwoocommerce_cart_totals_coupon_htmlcore\frontend\frontend.php:48
actionwoocommerce_after_shop_loop_itemcore\frontend\frontend.php:49
actionwoocommerce_product_thumbnailscore\frontend\frontend.php:50
actionplugins_loadeddiscountify.php:70
actionadmin_noticesdiscountify.php:105
Maintenance & Trust

Discountify – Discount Rules & Coupon Management for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedApr 4, 2026
PHP min version7.4
Downloads6K

Community Trust

Rating90/100
Number of ratings4
Active installs30
Developer Profile

Discountify – Discount Rules & Coupon Management for WooCommerce Developer Profile

Wpbens

5 plugins · 150 total installs

97
trust score
Avg Security Score
95/100
Avg Patch Time
1 days
View full developer profile
Detection Fingerprints

How We Detect Discountify – Discount Rules & Coupon Management for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/discountify/assets/js/discountify-select2.js/wp-content/plugins/discountify/assets/js/admin.js/wp-content/plugins/discountify/assets/js/daterangepicker.min.js/wp-content/plugins/discountify/assets/css/admin.css/wp-content/plugins/discountify/assets/css/select2.css/wp-content/plugins/discountify/assets/css/daterangepicker.css
Script Paths
/wp-content/plugins/discountify/assets/js/discountify-select2.js/wp-content/plugins/discountify/assets/js/admin.js/wp-content/plugins/discountify/assets/js/daterangepicker.min.js
Version Parameters
ver=1.0.84

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Discountify – Discount Rules & Coupon Management for WooCommerce