Divídelo para WooCommerce Security & Risk Analysis

wordpress.org/plugins/dividelo

This Divídelo plugin adds the installment simulation component for Interbank's exclusive clients.

0 active installs v1.2 PHP 5.6.20+ WP 5.6+ Updated Jun 14, 2025
cuotadividelointerbankperu
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Divídelo para WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

Divídelo para WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 9mo ago
Risk Assessment

The plugin "dividelo" v1.2 exhibits a generally strong security posture based on the static analysis. The absence of identified AJAX handlers, REST API routes, shortcodes, and cron events significantly limits the plugin's attack surface. Furthermore, the code analysis shows no dangerous functions, no direct file operations, and all SQL queries are properly prepared, which are excellent security practices. The high percentage of properly escaped output is also a positive indicator. However, there are a few areas that warrant attention. The lack of nonce checks and capability checks is a significant concern, as it means that any entry point, if one were to be discovered or introduced, would be unprotected against various attacks like Cross-Site Request Forgery (CSRF). The presence of external HTTP requests, while not inherently insecure, represents potential vectors for attack if the targets are compromised or if the requests themselves are not handled with sufficient validation and sanitization. The plugin's vulnerability history is clean, with no recorded CVEs, which suggests a good track record of security. This, combined with the robust code practices in most areas, indicates a developer who is likely security-conscious. However, the absence of specific taint flow analysis results is a limitation, as it prevents a deeper understanding of how data moves within the plugin and if any sensitive data could be mishandled. Overall, while the plugin is currently secure due to its limited attack surface and good coding practices in critical areas, the lack of fundamental security checks like nonces and capability checks introduces an underlying risk that should be addressed.

Key Concerns

  • Missing nonce checks
  • Missing capability checks
  • External HTTP requests present
  • Low output escaping coverage (93%)
Vulnerabilities
None known

Divídelo para WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Divídelo para WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
2
28 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
3
Bundled Libraries
0

Output Escaping

93% escaped30 total outputs
Attack Surface

Divídelo para WooCommerce Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 7
actionbefore_woocommerce_initdividelo.php:32
actionadmin_menudividelo_admin.php:3
actionadmin_initdividelo_admin.php:8
filterwoocommerce_get_price_htmldividelo_producto_page.php:57
actionwp_enqueue_scriptsdividelo_producto_page.php:71
actionafter_woocommerce_paydividelo_producto_page.php:112
actionwoocommerce_review_order_before_submitdividelo_producto_page.php:152
Maintenance & Trust

Divídelo para WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedJun 14, 2025
PHP min version5.6.20
Downloads1K

Community Trust

Rating100/100
Number of ratings2
Active installs0
Developer Profile

Divídelo para WooCommerce Developer Profile

Renzo Tejada

11 plugins · 9K total installs

75
trust score
Avg Security Score
94/100
Avg Patch Time
327 days
View full developer profile
Detection Fingerprints

How We Detect Divídelo para WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Script Paths
/wp-content/plugins/dividelo/js/rt_dividelo.js
Version Parameters
rt-dividelo/js/rt_dividelo.js?ver=

HTML / DOM Fingerprints

CSS Classes
dividelo_url_logo
Data Attributes
jwtsubscription-key
Shortcode Output
<split-payment-cta
FAQ

Frequently Asked Questions about Divídelo para WooCommerce