Easy Digital Downloads – CoinPayments Gateway Security & Risk Analysis

wordpress.org/plugins/easy-digital-downloads-coinpayments-gateway

Add support for CoinPayments to Easy Digital Downloads.

10 active installs v1.0.1 PHP + WP 3.0.1+ Updated Feb 3, 2026
digital-downloadseasy-digital-downloadsecommerceeddgateway
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Easy Digital Downloads – CoinPayments Gateway Safe to Use in 2026?

Generally Safe

Score 100/100

Easy Digital Downloads – CoinPayments Gateway has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3mo ago
Risk Assessment

The static analysis of the easy-digital-downloads-coinpayments-gateway plugin version 1.0.1 reveals a strong adherence to secure coding practices. The absence of any detected dangerous functions, raw SQL queries, file operations, external HTTP requests, or unsanitized taint flows is a significant positive indicator. Furthermore, the plugin demonstrates robust output escaping and utilizes prepared statements for all SQL queries, minimizing the risk of injection vulnerabilities. The lack of any recorded CVEs, past or present, also suggests a history of secure development or effective vulnerability management.

However, the analysis does highlight a notable absence of security checks in key areas. The complete lack of nonce checks and capability checks across all entry points is a significant concern. While the current analysis shows zero unprotected entry points, this suggests that the plugin relies on external mechanisms or the core WordPress framework for all authentication and authorization, which may not always be sufficient or consistently applied. A zero-day vulnerability or a misconfiguration in the hosting environment could expose these entry points.

In conclusion, while the internal code quality and security practices are commendable, the reliance on the absence of exposed entry points and the lack of explicit internal security checks represent a potential weakness. The plugin's security posture is currently strong due to good coding standards and a clean vulnerability history, but it is not inherently hardened against potential future threats or misconfigurations.

Key Concerns

  • Missing nonce checks on all entry points
  • Missing capability checks on all entry points
Vulnerabilities
None known

Easy Digital Downloads – CoinPayments Gateway Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Easy Digital Downloads – CoinPayments Gateway Release Timeline

v1.0.1Current
Code Analysis
Analyzed Apr 16, 2026

Easy Digital Downloads – CoinPayments Gateway Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
2 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped2 total outputs
Attack Surface

Easy Digital Downloads – CoinPayments Gateway Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 9
actioninitedd-coinpayments-gateway.php:75
filteredd_settings_gatewaysedd-coinpayments-gateway.php:78
filteredd_payment_gatewaysedd-coinpayments-gateway.php:81
actionedd_coinpayments_cc_formedd-coinpayments-gateway.php:84
actionedd_gateway_coinpaymentsedd-coinpayments-gateway.php:87
actioninitedd-coinpayments-gateway.php:88
actionedd_verify_coinpayments_ipnedd-coinpayments-gateway.php:89
actionedd_after_cc_fieldsedd-coinpayments-gateway.php:92
actionplugins_loadededd-coinpayments-gateway.php:433
Maintenance & Trust

Easy Digital Downloads – CoinPayments Gateway Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedFeb 3, 2026
PHP min version
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Easy Digital Downloads – CoinPayments Gateway Developer Profile

DigitalME

25 plugins · 150K total installs

79
trust score
Avg Security Score
100/100
Avg Patch Time
689 days
View full developer profile
Detection Fingerprints

How We Detect Easy Digital Downloads – CoinPayments Gateway

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Easy Digital Downloads – CoinPayments Gateway