EdenPersona – Connector & Analytics Security & Risk Analysis

wordpress.org/plugins/edenpersona-connector-analytics

Advanced WooCommerce analytics with AI-powered customer insights and comprehensive customer journey tracking.

0 active installs v1.4.2 PHP 7.4+ WP 5.0+ Updated Apr 5, 2026
aianalyticscustomer-insightspersonaswoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is EdenPersona – Connector & Analytics Safe to Use in 2026?

Generally Safe

Score 100/100

EdenPersona – Connector & Analytics has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The plugin 'edenpersona-connector-analytics' v1.3.8 presents a mixed security posture. On one hand, it demonstrates good practices by largely utilizing prepared statements for SQL queries and properly escaping output, indicating a conscious effort to prevent common web vulnerabilities. The absence of known CVEs and bundled libraries is also a positive sign, suggesting a relatively stable and secure codebase.

However, significant concerns arise from the attack surface analysis. The presence of three AJAX handlers without proper authentication checks creates an exploitable pathway for unauthorized actions. Furthermore, the taint analysis reveals three high-severity flows with unsanitized paths, which could lead to various injection attacks if not carefully handled. These identified risks, particularly the unprotected AJAX endpoints and unsanitized data flows, outweigh the positive indicators and warrant immediate attention.

In conclusion, while the plugin exhibits strengths in data handling and has a clean vulnerability history, the identified vulnerabilities in its attack surface and data processing present a moderate to high security risk. Addressing the unprotected AJAX endpoints and thoroughly sanitizing the identified tainted paths are critical steps to improve its security posture.

Key Concerns

  • Unprotected AJAX handlers detected
  • High severity unsanitized taint flows
Vulnerabilities
None known

EdenPersona – Connector & Analytics Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

EdenPersona – Connector & Analytics Release Timeline

v1.4.2Current
v1.4.1
v1.4.0
v1.3.9
v1.3.8
v1.3.7
v1.3.6
v1.3.5
v1.3.3
v1.3.2
v1.3.1
v1.3.0
v1.2.9
v1.2.8
v1.2.7
v1.2.6
v1.2.5
v1.2.4
v1.2.3
v1.2.2
Code Analysis
Analyzed Mar 17, 2026

EdenPersona – Connector & Analytics Code Analysis

Dangerous Functions
0
Raw SQL Queries
23
117 prepared
Unescaped Output
70
665 escaped
Nonce Checks
15
Capability Checks
16
File Operations
9
External Requests
2
Bundled Libraries
0

SQL Query Safety

84% prepared140 total queries

Output Escaping

90% escaped735 total outputs
Data Flows · Security
3 unsanitized

Data Flow Analysis

15 flows3 with unsanitized paths
<edenpersona-connector-analytics> (edenpersona-connector-analytics.php:0)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
3 unprotected

EdenPersona – Connector & Analytics Attack Surface

Entry Points5
Unprotected3

AJAX Handlers 5

authwp_ajax_edenpersona_dismiss_reviewincludes\class-edenpersona-core.php:117
authwp_ajax_edenpersona_track_pageincludes\class-edenpersona-core.php:141
noprivwp_ajax_edenpersona_track_pageincludes\class-edenpersona-core.php:142
authwp_ajax_edenpersona_capture_personaincludes\class-edenpersona-utm_persona_tracker.php:41
noprivwp_ajax_edenpersona_capture_personaincludes\class-edenpersona-utm_persona_tracker.php:42
WordPress Hooks 41
actionadmin_noticesedenpersona-connector-analytics.php:20
filtergettext_with_contextincludes\class-edenpersona-admin.php:1534
filtergettextincludes\class-edenpersona-admin.php:1535
actionadmin_enqueue_scriptsincludes\class-edenpersona-assets.php:17
actionadmin_menuincludes\class-edenpersona-core.php:112
actionadmin_post_edenpersona_save_settingsincludes\class-edenpersona-core.php:113
actionadmin_post_edenpersona_reset_syncincludes\class-edenpersona-core.php:114
actionadmin_post_edenpersona_initial_syncincludes\class-edenpersona-core.php:115
actionadmin_post_edenpersona_test_connectionincludes\class-edenpersona-core.php:116
actionadmin_initincludes\class-edenpersona-core.php:120
actionadmin_post_export_top_customersincludes\class-edenpersona-core.php:121
actionadmin_post_export_dormant_customersincludes\class-edenpersona-core.php:122
actioninitincludes\class-edenpersona-core.php:126
actioninitincludes\class-edenpersona-core.php:127
actioninitincludes\class-edenpersona-core.php:128
actionwoocommerce_order_status_completedincludes\class-edenpersona-core.php:131
actionadmin_noticesincludes\class-edenpersona-core.php:134
actionadmin_initincludes\class-edenpersona-core.php:137
actionwp_headincludes\class-edenpersona-core.php:140
actionwoocommerce_add_to_cartincludes\class-edenpersona-core.php:144
actionwoocommerce_ajax_added_to_cartincludes\class-edenpersona-core.php:145
actionwoocommerce_checkout_order_processedincludes\class-edenpersona-core.php:148
actionwoocommerce_new_orderincludes\class-edenpersona-core.php:149
actionwoocommerce_thankyouincludes\class-edenpersona-core.php:150
actionwoocommerce_order_status_pendingincludes\class-edenpersona-core.php:151
actionwoocommerce_checkout_update_order_reviewincludes\class-edenpersona-core.php:152
actionwoocommerce_after_checkout_validationincludes\class-edenpersona-core.php:153
actionwoocommerce_payment_completeincludes\class-edenpersona-core.php:156
actionwoocommerce_order_status_failedincludes\class-edenpersona-core.php:157
actionwoocommerce_order_status_completedincludes\class-edenpersona-core.php:160
actionwoocommerce_order_status_completedincludes\class-edenpersona-core.php:163
actionwfocu_offer_accepted_and_processedincludes\class-edenpersona-core.php:170
actionwfocu_offer_loadedincludes\class-edenpersona-core.php:172
actionwfob_bump_product_added_to_cartincludes\class-edenpersona-core.php:175
actionwfacp_checkout_loadedincludes\class-edenpersona-core.php:179
actionwffn_landing_loadedincludes\class-edenpersona-core.php:182
actionadmin_initincludes\class-edenpersona-core.php:186
actionedenpersona_clear_journey_cookiesincludes\class-edenpersona-core.php:189
actioninitincludes\class-edenpersona-core.php:191
actioninitincludes\class-edenpersona-core.php:193
actionwoocommerce_checkout_order_processedincludes\class-edenpersona-utm_persona_tracker.php:45

Scheduled Events 2

edenpersona_clear_journey_cookies
edenpersona_clear_journey_cookies
Maintenance & Trust

EdenPersona – Connector & Analytics Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedApr 5, 2026
PHP min version7.4
Downloads1K

Community Trust

Rating100/100
Number of ratings1
Active installs0
Developer Profile

EdenPersona – Connector & Analytics Developer Profile

EdenPersona

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect EdenPersona – Connector & Analytics

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/edenpersona-connector-analytics/assets/css/edenpersona-admin.css/wp-content/plugins/edenpersona-connector-analytics/assets/css/edenpersona-public.css/wp-content/plugins/edenpersona-connector-analytics/assets/js/edenpersona-admin.js/wp-content/plugins/edenpersona-connector-analytics/assets/js/edenpersona-public.js/wp-content/plugins/edenpersona-connector-analytics/assets/img/edenpersona.svg
Script Paths
/wp-content/plugins/edenpersona-connector-analytics/assets/js/edenpersona-public.js
Version Parameters
edenpersona-connector-analytics/assets/css/edenpersona-admin.css?ver=edenpersona-connector-analytics/assets/css/edenpersona-public.css?ver=edenpersona-connector-analytics/assets/js/edenpersona-admin.js?ver=edenpersona-connector-analytics/assets/js/edenpersona-public.js?ver=

HTML / DOM Fingerprints

CSS Classes
edenpersona-customer-journey-promoedenpersona-admin-wrapperedenpersona-analytics-dashboard
HTML Comments
<!-- Premium Header Section --><!-- phpcs:ignore PluginCheck.CodeAnalysis.ImageFunctions.NonEnqueuedImage -- Plugin branding logo --><!-- Plugin branding logo --><!-- End Premium Header Section -->+4 more
Data Attributes
data-edenpersona-ajax-url
JS Globals
window.EdenPersonaTracker
REST Endpoints
/wp-json/edenpersona/v1/tracker
FAQ

Frequently Asked Questions about EdenPersona – Connector & Analytics