
Email Domain Checker for WP e-Commerce Security & Risk Analysis
wordpress.org/plugins/email-domain-checkerThis plugin validates the existence of the domain name that is entered in the email address while checkout for WP e-Commerce store owners.
Is Email Domain Checker for WP e-Commerce Safe to Use in 2026?
Generally Safe
Score 85/100Email Domain Checker for WP e-Commerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "email-domain-checker" plugin v1.0 exhibits a mixed security posture. While it demonstrates good practices by not using dangerous functions, avoiding raw SQL queries, and having no recorded vulnerability history, there are significant concerns regarding its attack surface and output sanitization. The plugin exposes two AJAX handlers without any authentication or capability checks. This is a critical weakness as it allows any authenticated user, regardless of their role or permissions, to trigger these handlers, potentially leading to unauthorized actions. Furthermore, none of the output operations are properly escaped, which opens the door for cross-site scripting (XSS) vulnerabilities if user-provided data is ever incorporated into the plugin's output without sanitization. The absence of any vulnerability history is a positive indicator, suggesting the developers have maintained a relatively secure codebase thus far. However, the identified flaws in authentication and output handling represent immediate risks that need to be addressed.
Key Concerns
- AJAX handlers without auth checks
- Unescaped output in AJAX handlers
Email Domain Checker for WP e-Commerce Security Vulnerabilities
Email Domain Checker for WP e-Commerce Release Timeline
Email Domain Checker for WP e-Commerce Code Analysis
Output Escaping
Email Domain Checker for WP e-Commerce Attack Surface
AJAX Handlers 2
WordPress Hooks 2
Maintenance & Trust
Email Domain Checker for WP e-Commerce Maintenance & Trust
Maintenance Signals
Community Trust
Email Domain Checker for WP e-Commerce Alternatives
Dilli Email Validator
dilli-email-validator
Validates email addresses in real-time and blocks form submissions with invalid or fake emails. Reduce spam, fix typos, and capture quality leads.
AutoPostcode
autopostcode
This plugin adds UK address postcode lookup functionality on the checkout page of your website and is exclusively designed for WooCommerce.
Expert Email Validator
expert-email-validator
Adds advanced email address validation to forms using Expert Email Validator API. Prevents typos in email address field and eliminates spam submissio …
Checkout Field Editor (Checkout Manager) for WooCommerce
woo-checkout-field-editor-pro
Checkout Field Editor (Checkout Manager) for WooCommerce – The best WooCommerce checkout manager plugin to manage WooCommerce checkout fields.
Checkout Field Manager (Checkout Manager) for WooCommerce
woocommerce-checkout-manager
Checkout Field Manager (Checkout Manager) for WooCommerce is the most advanced plugin to customize checkout fields on your WooCommerce checkout page.
Email Domain Checker for WP e-Commerce Developer Profile
2 plugins · 20 total installs
How We Detect Email Domain Checker for WP e-Commerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/email-domain-checker/js/jquery.js/wp-content/plugins/email-domain-checker/js/email_domain_checker.js/wp-content/plugins/email-domain-checker/js/jquery.js/wp-content/plugins/email-domain-checker/js/email_domain_checker.jsHTML / DOM Fingerprints
site/wp-json/wp/v2/email