Dynamic Step Pricing Security & Risk Analysis

wordpress.org/plugins/dynamic-step-pricing

Dynamic variable products with step pricing.

0 active installs v0.0.1 PHP 5.2.4+ WP 4.7+ Updated Jun 7, 2018
price-categoriesproduct-configuratorstep-pricingvariable-productwoocommerce
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Dynamic Step Pricing Safe to Use in 2026?

Generally Safe

Score 85/100

Dynamic Step Pricing has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 7yr ago
Risk Assessment

The static analysis of the "dynamic-step-pricing" v0.0.1 plugin reveals an exceptionally clean codebase with no identified vulnerabilities or risky code patterns. The plugin demonstrates excellent security practices, as evidenced by the absence of dangerous functions, raw SQL queries, unescaped output, file operations, external HTTP requests, and untainted data flows. Furthermore, the lack of any recorded CVEs, past or present, and a history of no reported vulnerabilities contribute to a strong security posture.

While the plugin's current version appears highly secure and adheres to best practices, the analysis also highlights a significant lack of entry points and security checks. The reported zero AJAX handlers, REST API routes, shortcodes, and cron events, along with no nonce or capability checks, suggest that this plugin may have very limited functionality or is designed to be integrated in a way that bypasses typical WordPress entry points. This absence of active security checks, while not an immediate vulnerability in itself given the clean code, could become a concern if future versions introduce new features without implementing appropriate authentication and authorization mechanisms.

In conclusion, "dynamic-step-pricing" v0.0.1 is currently a very secure plugin. Its strengths lie in its clean code and lack of known vulnerabilities. However, the complete absence of any entry points with security checks presents a potential future risk if the plugin's functionality expands without a corresponding increase in security measures. For this version, the risk is minimal, but future development should prioritize the secure implementation of any new user-facing features.

Vulnerabilities
None known

Dynamic Step Pricing Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Dynamic Step Pricing Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

Dynamic Step Pricing Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 1
actionwp_enqueue_scriptsdynamic-step-pricing.php:30
Maintenance & Trust

Dynamic Step Pricing Maintenance & Trust

Maintenance Signals

WordPress version tested4.9.29
Last updatedJun 7, 2018
PHP min version5.2.4
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Dynamic Step Pricing Developer Profile

Fuxlab

1 plugin · 0 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Dynamic Step Pricing

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/dynamic-step-pricing/assets/js/dynamic-step-pricing.js
Script Paths
/wp-content/plugins/dynamic-step-pricing/assets/js/dynamic-step-pricing.js
Version Parameters
dynamic-step-pricing/assets/js/dynamic-step-pricing.js?ver=

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Dynamic Step Pricing