eCommerce Shipping Dashboard by UPS for WooCommerce Security & Risk Analysis

wordpress.org/plugins/ecommerce-shipping-dashboard-by-ups-for-woocommerce

Connect your WooCommerce Store to all the UPS Services you require and manage your orders, shipments and labels in your Shipping Dashboard.

1K active installs v1.0.6 PHP 7.4+ WP 4.7+ Updated Jan 27, 2025
bulk-labelfulfillmentpaperless-invoiceupswoocommerce
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is eCommerce Shipping Dashboard by UPS for WooCommerce Safe to Use in 2026?

Generally Safe

Score 92/100

eCommerce Shipping Dashboard by UPS for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The "ecommerce-shipping-dashboard-by-ups-for-woocommerce" plugin version 1.0.6 exhibits a strong security posture based on the provided static analysis. The complete absence of AJAX handlers, REST API routes, shortcodes, and cron events with unprotected entry points is a significant strength, indicating a minimal attack surface. Furthermore, the code signals reveal a prudent approach to dangerous functions, file operations, and output escaping, with nearly all outputs properly escaped. The plugin also avoids bundled libraries, which can often be a source of vulnerabilities. However, the lack of nonce checks and capability checks, despite the absence of exposed entry points, could be a concern if the plugin's functionality were to expand or if new entry points were inadvertently introduced in future versions.

The vulnerability history is also remarkably clean, with no recorded CVEs of any severity. This suggests a history of secure development practices and prompt patching of any issues that may have arisen. The taint analysis showing zero unsanitized paths further reinforces the idea that sensitive data is likely being handled securely within the plugin.

In conclusion, this plugin appears to be well-secured with no readily identifiable vulnerabilities from the provided data. The minimal attack surface and strong code practices are commendable. The only minor area for potential improvement, albeit not a current risk based on the data, would be the inclusion of nonce and capability checks as a proactive security measure against future expansion or unforeseen vulnerabilities.

Key Concerns

  • No nonce checks
  • No capability checks
Vulnerabilities
None known

eCommerce Shipping Dashboard by UPS for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

eCommerce Shipping Dashboard by UPS for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
1
2 prepared
Unescaped Output
1
43 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
1
Bundled Libraries
0

SQL Query Safety

67% prepared3 total queries

Output Escaping

98% escaped44 total outputs
Attack Surface

eCommerce Shipping Dashboard by UPS for WooCommerce Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 10
actionbefore_woocommerce_initecommerce-shipping-dashboard-by-ups-for-woocommerce.php:88
actionplugins_loadedincludes\class-ups.php:84
actionplugins_loadedincludes\class-ups.php:86
filterwoocommerce_integrationsincludes\class-ups.php:88
actionplugins_loadedincludes\class-ups.php:148
actionadmin_initincludes\class-ups.php:162
actionadmin_enqueue_scriptsincludes\class-ups.php:163
actionadmin_enqueue_scriptsincludes\class-ups.php:164
actionadmin_menuincludes\class-ups.php:165
actionadmin_initincludes\class-ups.php:166
Maintenance & Trust

eCommerce Shipping Dashboard by UPS for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedJan 27, 2025
PHP min version7.4
Downloads10K

Community Trust

Rating70/100
Number of ratings6
Active installs1K
Developer Profile

eCommerce Shipping Dashboard by UPS for WooCommerce Developer Profile

UPS

1 plugin · 1K total installs

88
trust score
Avg Security Score
92/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect eCommerce Shipping Dashboard by UPS for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/ecommerce-shipping-dashboard-by-ups-for-woocommerce/admin/css/ups-admin.css/wp-content/plugins/ecommerce-shipping-dashboard-by-ups-for-woocommerce/admin/js/ups-admin.js/wp-content/plugins/ecommerce-shipping-dashboard-by-ups-for-woocommerce/public/css/ups-public.css/wp-content/plugins/ecommerce-shipping-dashboard-by-ups-for-woocommerce/public/js/ups-public.js
Script Paths
/wp-content/plugins/ecommerce-shipping-dashboard-by-ups-for-woocommerce/admin/js/ups-admin.js/wp-content/plugins/ecommerce-shipping-dashboard-by-ups-for-woocommerce/public/js/ups-public.js
Version Parameters
ecommerce-shipping-dashboard-by-ups-for-woocommerce/admin/css/ups-admin.css?ver=ecommerce-shipping-dashboard-by-ups-for-woocommerce/admin/js/ups-admin.js?ver=ecommerce-shipping-dashboard-by-ups-for-woocommerce/public/css/ups-public.css?ver=ecommerce-shipping-dashboard-by-ups-for-woocommerce/public/js/ups-public.js?ver=

HTML / DOM Fingerprints

JS Globals
UPS_ITEMBASE_INSTANCE_IDUPS_ITEMBASE_WEB_HOOK_URL_DOMAINUPS_ITEMBASE_WEB_HOOK_URLUPS_ITEMBASE_SIGN_UP_URLUPS_VERSIONUPS_TEXTDOMAIN+2 more
FAQ

Frequently Asked Questions about eCommerce Shipping Dashboard by UPS for WooCommerce