Notifications on Discord for Easy Digital Downloads Security & Risk Analysis

wordpress.org/plugins/edd-discord-notifications

Notifications on Discord for Easy Digital Downloads will send a notification to your chosen Discord channel, notifying you of a new order or order sta …

10 active installs v1.0.0 PHP 7.1+ WP 5.4+ Updated Unknown
discordeasy-digital-downloadsecommerceeddnotifications
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Notifications on Discord for Easy Digital Downloads Safe to Use in 2026?

Generally Safe

Score 100/100

Notifications on Discord for Easy Digital Downloads has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs
Risk Assessment

The "edd-discord-notifications" plugin v1.0.0 exhibits a strong security posture based on the provided static analysis. The absence of any AJAX handlers, REST API routes, shortcodes, or cron events significantly limits the plugin's attack surface. Furthermore, the code signals indicate a responsible approach to security, with no dangerous functions, all SQL queries using prepared statements, and a single external HTTP request handled with what appears to be a nonce check. The lack of taint analysis findings suggests that the plugin does not introduce any obvious vulnerabilities related to data flow and sanitization.

However, there are minor concerns that prevent a perfect score. A notable weakness is the low percentage of properly escaped output (40%), indicating potential for cross-site scripting (XSS) vulnerabilities if the unescaped outputs are user-controllable. Additionally, the absence of capability checks on any potential entry points, though currently zero, means that if any were introduced in the future, they might lack proper authorization. The plugin's vulnerability history is excellent, showing no past CVEs, which is a positive indicator of developer diligence. Overall, the plugin is in good standing, but the unescaped output is a point of attention.

Key Concerns

  • Low percentage of properly escaped output
  • No capability checks on entry points
Vulnerabilities
None known

Notifications on Discord for Easy Digital Downloads Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Notifications on Discord for Easy Digital Downloads Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
3
2 escaped
Nonce Checks
1
Capability Checks
0
File Operations
0
External Requests
1
Bundled Libraries
0

Output Escaping

40% escaped5 total outputs
Attack Surface

Notifications on Discord for Easy Digital Downloads Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 3
actionadmin_menuedd-discord-notifications.php:24
actionadmin_initedd-discord-notifications.php:25
actionedd_update_payment_statusincludes\easy-digital-downloads.php:45
Maintenance & Trust

Notifications on Discord for Easy Digital Downloads Maintenance & Trust

Maintenance Signals

WordPress version tested6.0.11
Last updatedUnknown
PHP min version7.1
Downloads1K

Community Trust

Rating100/100
Number of ratings1
Active installs10
Developer Profile

Notifications on Discord for Easy Digital Downloads Developer Profile

Jarryd Long

3 plugins · 270 total installs

87
trust score
Avg Security Score
90/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Notifications on Discord for Easy Digital Downloads

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

Data Attributes
name="ppsndw_edd_enable_publish"name="ppsndw_edd_webhook_publish"name="ppsndw_edd_enable_pending"name="ppsndw_edd_webhook_pending"name="ppsndw_edd_enable_processing"name="ppsndw_edd_webhook_processing"+26 more
FAQ

Frequently Asked Questions about Notifications on Discord for Easy Digital Downloads