Dolyame Payment gateway Security & Risk Analysis

wordpress.org/plugins/dolyame-payment

Dolyame payment gateway for WooCommerce

700 active installs v3.4.0 PHP 5.6+ WP 5.2+ Updated Dec 3, 2025
%d0%b4%d0%be%d0%bb%d1%8f%d0%bc%d0%b8gatewaypaymentwoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Dolyame Payment gateway Safe to Use in 2026?

Generally Safe

Score 100/100

Dolyame Payment gateway has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4mo ago
Risk Assessment

Based on the provided static analysis and vulnerability history, the 'dolyame-payment' plugin v3.4.0 exhibits a strong security posture. The code analysis reveals no dangerous functions, file operations, external HTTP requests, or SQL queries that are not properly prepared. Furthermore, all identified output is correctly escaped, and there are no indications of taint flows, suggesting a diligent approach to secure coding practices. The complete absence of known CVEs and past vulnerabilities is a significant positive indicator, implying consistent security attention from the developers. However, a notable concern is the complete lack of any detected entry points (AJAX, REST API, shortcodes, cron events). While this suggests a very limited attack surface, it could also indicate that the plugin's functionality is minimal or that the static analysis might not have fully captured all potential interaction points. The absence of nonces and capability checks is also a point of consideration, as these are standard security mechanisms that would typically be expected on any plugin that interacts with user data or performs sensitive operations. Despite these minor points, the plugin appears robustly built from a security perspective with no obvious exploitable flaws.

Key Concerns

  • Missing nonce checks
  • Missing capability checks
Vulnerabilities
None known

Dolyame Payment gateway Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Dolyame Payment gateway Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
1 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped1 total outputs
Attack Surface

Dolyame Payment gateway Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 6
actionplugins_loadeddolyme_payment.php:38
actionbefore_woocommerce_initdolyme_payment.php:47
actionwoocommerce_blocks_loadeddolyme_payment.php:48
filterwoocommerce_payment_gatewaysdolyme_payment.php:54
actionwoocommerce_blocks_payment_method_type_registrationdolyme_payment.php:91
actionwoocommerce_api_wc_gateway_dolyamepaymentincludes\class-wc-gateway-dolyamepayment.php:83
Maintenance & Trust

Dolyame Payment gateway Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 3, 2025
PHP min version5.6
Downloads8K

Community Trust

Rating0/100
Number of ratings0
Active installs700
Developer Profile

Dolyame Payment gateway Developer Profile

dolyame

1 plugin · 700 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Dolyame Payment gateway

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/dolyame-payment/assets/css/dolyame-payment.css/wp-content/plugins/dolyame-payment/assets/js/dolyame-payment.js/wp-content/plugins/dolyame-payment/assets/js/dolyame-payment-admin.js
Version Parameters
dolyame-payment/assets/css/dolyame-payment.css?ver=dolyame-payment/assets/js/dolyame-payment.js?ver=dolyame-payment/assets/js/dolyame-payment-admin.js?ver=

HTML / DOM Fingerprints

CSS Classes
dolyame-payment-gateway-descriptiondolyame-payment-form-field
HTML Comments
<!-- Dolyame payment gateway --><!-- BEGIN Dolyame Payment Form --><!-- END Dolyame Payment Form -->
Data Attributes
data-dolyame-logindata-dolyame-order-id
JS Globals
window.DolyamePaymentConfigvar dolyamePaymentSettings
REST Endpoints
/wp-json/dolyame/v1/payment-status/wp-json/dolyame/v1/webhook
Shortcode Output
[dolyame_payment_button][dolyame_payment_info]
FAQ

Frequently Asked Questions about Dolyame Payment gateway