
EPOI – WP Points and Rewards Security & Risk Analysis
wordpress.org/plugins/epoi-wp-points-and-rewardsReward customers with points on your WordPress site. Users can join a ranking system, earn levels, share points, and receive score update emails.
Is EPOI – WP Points and Rewards Safe to Use in 2026?
Generally Safe
Score 100/100EPOI – WP Points and Rewards has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "epoi-wp-points-and-rewards" plugin, version 1.0.15, exhibits a strong security posture based on the provided static analysis and vulnerability history. The plugin demonstrates excellent adherence to secure coding practices, with all identified entry points (AJAX handlers, shortcodes) appearing to have appropriate authentication and authorization checks. Furthermore, the code analysis shows a high percentage of SQL queries using prepared statements and 100% of output being properly escaped, indicating a low risk of common vulnerabilities like SQL injection and Cross-Site Scripting. The absence of dangerous functions, file operations, and a clean taint analysis further solidify its secure design.
The plugin's vulnerability history is also a significant strength, with zero recorded CVEs. This lack of past vulnerabilities, especially critical or high severity ones, suggests a proactive and consistent approach to security by the developers. The absence of common vulnerability types and a recent history of vulnerabilities further reinforce this positive outlook. While the plugin has a moderate number of entry points and makes a few external HTTP requests, these are generally well-managed within the context of a secure implementation, and no specific risks are highlighted by the static analysis concerning these aspects.
In conclusion, "epoi-wp-points-and-rewards" v1.0.15 appears to be a secure plugin with robust security controls and a clean track record. The developers have implemented good practices across the board, minimizing the attack surface and protecting against common web vulnerabilities. The consistent lack of reported vulnerabilities further instills confidence in its security. No specific deductions are warranted based on the provided data.
EPOI – WP Points and Rewards Security Vulnerabilities
EPOI – WP Points and Rewards Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
EPOI – WP Points and Rewards Attack Surface
AJAX Handlers 3
Shortcodes 3
WordPress Hooks 45
Maintenance & Trust
EPOI – WP Points and Rewards Maintenance & Trust
Maintenance Signals
Community Trust
EPOI – WP Points and Rewards Alternatives
Points Management System For Gamification, Ranks, Badges, and Loyalty Rewards Program – myCred
mycred
A WordPress gamification plugin is also a points management system. Award ranks, loyalty points and rewards or WooCommerce rewards to your users.
Points and Rewards for WooCommerce – Create Loyalty Programs, Reward Customer Purchases, User Badges, Gamification
points-and-rewards-for-woocommerce
Points and Rewards for WooCommerce offer a reward for points to your customers for their activities & increase customer loyalty.
MyRewards
woorewards
Free top-rated points and rewards program to retain your customers, grow your sales and get new customers.
Loyalty Points Rewards and Referral for WooCommerce – WPLoyalty
wployalty
Create WooCommerce points and rewards program with WPLoyalty to increase customer loyalty and boost sales. Reward customers to drive repeat purchases.
Easy Loyalty Points and Rewards for WooCommerce
easy-loyalty-points-and-rewards-for-woocommerce
A lightweight, easy to use customer loyalty system for WooCommerce.
EPOI – WP Points and Rewards Developer Profile
58 plugins · 167K total installs
How We Detect EPOI – WP Points and Rewards
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/epoi-wp-points-and-rewards/assets/libs/button.min.css/wp-content/plugins/epoi-wp-points-and-rewards/assets/libs/tab.min.css/wp-content/plugins/epoi-wp-points-and-rewards/assets/libs/input.min.css/wp-content/plugins/epoi-wp-points-and-rewards/assets/libs/icon.min.css/wp-content/plugins/epoi-wp-points-and-rewards/assets/libs/segment.min.css/wp-content/plugins/epoi-wp-points-and-rewards/assets/libs/image.min.css/wp-content/plugins/epoi-wp-points-and-rewards/assets/libs/modal.min.css/wp-content/plugins/epoi-wp-points-and-rewards/assets/libs/dimmer.min.css+27 more/wp-content/plugins/epoi-wp-points-and-rewards/assets/dist/settings.min.js/wp-content/plugins/epoi-wp-points-and-rewards/assets/dist/manage-point.min.js/wp-content/plugins/epoi-wp-points-and-rewards/assets/dist/admin-point-manager.min.jsepoi-wp-points-and-rewards/assets/libs/button.min.css?ver=epoi-wp-points-and-rewards/assets/libs/tab.min.css?ver=epoi-wp-points-and-rewards/assets/libs/input.min.css?ver=epoi-wp-points-and-rewards/assets/libs/icon.min.css?ver=epoi-wp-points-and-rewards/assets/libs/segment.min.css?ver=epoi-wp-points-and-rewards/assets/libs/image.min.css?ver=epoi-wp-points-and-rewards/assets/libs/modal.min.css?ver=epoi-wp-points-and-rewards/assets/libs/dimmer.min.css?ver=epoi-wp-points-and-rewards/assets/libs/transition.min.css?ver=epoi-wp-points-and-rewards/assets/libs/menu.min.css?ver=epoi-wp-points-and-rewards/assets/libs/grid.min.css?ver=epoi-wp-points-and-rewards/assets/libs/search.min.css?ver=epoi-wp-points-and-rewards/assets/libs/message.min.css?ver=epoi-wp-points-and-rewards/assets/libs/loader.min.css?ver=epoi-wp-points-and-rewards/assets/libs/label.min.css?ver=epoi-wp-points-and-rewards/assets/libs/select2.min.css?ver=epoi-wp-points-and-rewards/assets/libs/header.min.css?ver=epoi-wp-points-and-rewards/assets/libs/accordion.min.css?ver=epoi-wp-points-and-rewards/assets/libs/dropdown.min.css?ver=epoi-wp-points-and-rewards/assets/libs/checkbox.min.css?ver=epoi-wp-points-and-rewards/assets/libs/form.min.css?ver=epoi-wp-points-and-rewards/assets/libs/table.min.css?ver=epoi-wp-points-and-rewards/assets/dist/settings.min.css?ver=epoi-wp-points-and-rewards/assets/dist/admin-point-manager.min.css?ver=epoi-wp-points-and-rewards/assets/libs/select2.min.js?ver=epoi-wp-points-and-rewards/assets/libs/transition.min.js?ver=epoi-wp-points-and-rewards/assets/libs/dimmer.min.js?ver=epoi-wp-points-and-rewards/assets/libs/accordion.min.js?ver=epoi-wp-points-and-rewards/assets/libs/tab.min.js?ver=epoi-wp-points-and-rewards/assets/libs/modal.min.js?ver=epoi-wp-points-and-rewards/assets/libs/dropdown.min.js?ver=epoi-wp-points-and-rewards/assets/libs/jqColorPicker.min.js?ver=epoi-wp-points-and-rewards/assets/dist/settings.min.js?ver=epoi-wp-points-and-rewards/assets/dist/manage-point.min.js?ver=epoi-wp-points-and-rewards/assets/dist/admin-point-manager.min.js?ver=HTML / DOM Fingerprints
epoi-point-managerepoi-settings-pageepoi-admin-wrapepoi-tab-content<!-- EPOI Point Manager --><!-- EPOI Settings Page -->data-epoi-pagedata-epoi-actionepoiParams