
Dynamic Metal Price Calculator Security & Risk Analysis
wordpress.org/plugins/dynamic-metal-price-calculatorDynamic WooCommerce jewellery pricing using live metal rates with support for karat, weight, GST, markup, wastage, shipping, and variable products.
Is Dynamic Metal Price Calculator Safe to Use in 2026?
Generally Safe
Score 100/100Dynamic Metal Price Calculator has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'dynamic-metal-price-calculator' plugin v3.0.0 exhibits a generally strong security posture, primarily due to the complete absence of dangerous functions, SQL queries executed without prepared statements, and external HTTP requests. The plugin also demonstrates good practices with a significant percentage of outputs being properly escaped and the presence of nonce and capability checks. The vulnerability history is also notably clean, with no recorded CVEs, suggesting a well-maintained and secure codebase over time.
However, a potential concern arises from the 71% of outputs being properly escaped. While this is a good percentage, it implies that 29% of outputs are not being escaped, which could lead to cross-site scripting (XSS) vulnerabilities if user-supplied data is involved in these unescaped outputs. The static analysis also shows no unprotected entry points, which is excellent. The lack of any taint analysis issues further reinforces the low risk of severe vulnerabilities like SQL injection or path traversal.
In conclusion, the plugin is likely secure for most use cases. The primary area for improvement would be to ensure 100% of output escaping is implemented to mitigate any potential XSS risks. The absence of any historical vulnerabilities is a very positive indicator of the developer's commitment to security. The low attack surface and solid coding practices contribute to a favorable risk assessment.
Key Concerns
- Unescaped output detected
Dynamic Metal Price Calculator Security Vulnerabilities
Dynamic Metal Price Calculator Code Analysis
Output Escaping
Data Flow Analysis
Dynamic Metal Price Calculator Attack Surface
WordPress Hooks 40
Maintenance & Trust
Dynamic Metal Price Calculator Maintenance & Trust
Maintenance Signals
Community Trust
Dynamic Metal Price Calculator Alternatives
Cost of Goods: Product Cost & Profit Calculator for WooCommerce
cost-of-goods-for-woocommerce
Unlock detailed insights into products profitability, calculate COGS & profit margins, and get a better financial analytics insights with our Cost …
Easyship WooCommerce Shipping Rates
easyship-woocommerce-shipping-rates
Easyship for WooCommerce saves you time and money with live courier rates, seamless checkout, automated taxes & duties, and shipping label creation.
WooReer
wcsdm
WooReer calculates shipping rates based on distance via Google Maps, Mapbox, DistanceMatrix.ai, Geoapify, or HERE.
Product page shipping calculator for WooCommerce
product-page-shipping-calculator-for-woocommerce
This plugin allows you to show the shipping methods available on the product page for WooCommerce, so customers can see if shipping is available to th …
MetalpriceAPI
metalpriceapi
Display live or historical precious metal prices (Gold, Silver, Platinum, Palladium, ...) in over 150+ currencies
Dynamic Metal Price Calculator Developer Profile
7 plugins · 50 total installs
How We Detect Dynamic Metal Price Calculator
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
dynamic-metal-price-calculator/assets/js/frontend.js?ver=dynamic-metal-price-calculator/assets/css/frontend.css?ver=HTML / DOM Fingerprints
dmmp_noncedmmp_gold_ratedmmp_silver_ratedmmp_gstdmmp_shippingdmmp_gold_22k_percent+6 more