
Coupon Counter for EDD Security & Risk Analysis
wordpress.org/plugins/edd-coupon-counterEasily display the remaining or used coupon codes with Easy Digital Downloads (EDD).
Is Coupon Counter for EDD Safe to Use in 2026?
Generally Safe
Score 85/100Coupon Counter for EDD has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'edd-coupon-counter' plugin, version 1.0.3, demonstrates a generally strong security posture based on the static analysis. The absence of any dangerous functions, SQL injection vulnerabilities (all queries use prepared statements), and properly escaped output are excellent indicators. Furthermore, the plugin has no recorded vulnerability history, suggesting a diligent development approach or a low profile in terms of past security issues. The limited attack surface, with only one shortcode and no unprotected AJAX handlers or REST API routes, also contributes positively to its security.
However, the lack of any capability checks and nonce checks on its single shortcode presents a significant concern. While there are no explicitly identified vulnerabilities in the static analysis or taint flows, this omission means that the shortcode functionality is likely accessible to any logged-in user, regardless of their role or intended permissions. This could be exploited if the shortcode's functionality has any sensitive operations or if its output can be manipulated to affect other parts of the site.
In conclusion, the plugin excels in secure coding practices for SQL and output handling, and its clean vulnerability history is commendable. The primary weakness lies in the insufficient access control for its shortcode, which is a notable oversight that could lead to potential privilege escalation or unintended behavior if not addressed. A developer would do well to implement capability checks and nonce verification for the shortcode.
Key Concerns
- Missing capability checks on shortcode
- Missing nonce checks on shortcode
Coupon Counter for EDD Security Vulnerabilities
Coupon Counter for EDD Release Timeline
Coupon Counter for EDD Code Analysis
Output Escaping
Coupon Counter for EDD Attack Surface
Shortcodes 1
Maintenance & Trust
Coupon Counter for EDD Maintenance & Trust
Maintenance Signals
Community Trust
Coupon Counter for EDD Alternatives
Sale Price for EDD
edd-sale-price
Promote your downloads with a sale price!
Easy Digital Downloads Free Link
easy-digital-downloads-free-link
replace EDD add-to-cart button with download link when product is free
EDD Auto Register
edd-auto-register
Automatically creates a WP user account at checkout, based on customer's email address.
Easy Digital Downloads Featured Downloads
edd-featured-downloads
Easily feature your downloads
Counten- Sale Counter Advanced
counten-sale-counter-advanced
A Sale Counter Plugin work with the Easy Digital Download Products
Coupon Counter for EDD Developer Profile
10 plugins · 120K total installs
How We Detect Coupon Counter for EDD
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/edd-coupon-counter/assets/css/style.css/wp-content/plugins/edd-coupon-counter/assets/js/script.js/wp-content/plugins/edd-coupon-counter/assets/js/script.jsedd-coupon-counter/assets/css/style.css?ver=edd-coupon-counter/assets/js/script.js?ver=HTML / DOM Fingerprints
edd-coupon-counteredd-coupon-counter-usededd-coupon-counter-divideredd-coupon-counter-maxedd-coupon-counter-diff<span class="edd-coupon-counter"><span class="edd-coupon-counter-used"><span class="edd-coupon-counter-divider"><span class="edd-coupon-counter-max">