
Fidras by CatalystIQ – Your Growth Partner Security & Risk Analysis
wordpress.org/plugins/fidras-by-catalystiqAI-powered e-commerce analytics, marketing automation, and customer insights for WooCommerce.
Is Fidras by CatalystIQ – Your Growth Partner Safe to Use in 2026?
Generally Safe
Score 100/100Fidras by CatalystIQ – Your Growth Partner has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "fidras-by-catalystiq" v1.0.4 plugin exhibits a generally strong security posture based on the provided static analysis. The absence of dangerous functions, SQL injection vulnerabilities due to prepared statements, and file operation risks are significant strengths. The plugin also demonstrates good security practices with nonce and capability checks on all identified AJAX entry points, and no detected critical or high severity taint flows. Furthermore, the plugin has no recorded vulnerability history, suggesting a consistent track record of security.
However, there are minor areas for improvement. While all AJAX handlers have nonce and capability checks, the plugin does have a moderate number of external HTTP requests, which can sometimes represent a vector for certain types of attacks if not handled with extreme care regarding data validation and sanitization of responses. The output escaping is also not perfect, with one output not properly escaped, which could lead to cross-site scripting (XSS) vulnerabilities in specific scenarios. The presence of a cron event, while not inherently a risk, adds to the overall attack surface and warrants careful review.
In conclusion, the plugin is currently in a good security state with no critical immediate threats identified. The developers have implemented several key security best practices. The primary concerns are the external HTTP requests and the single instance of unescaped output, which, while not severe in this analysis, should be addressed to further harden the plugin's security.
Key Concerns
- One output not properly escaped
- Presence of external HTTP requests
- Cron event adds to attack surface
Fidras by CatalystIQ – Your Growth Partner Security Vulnerabilities
Fidras by CatalystIQ – Your Growth Partner Release Timeline
Fidras by CatalystIQ – Your Growth Partner Code Analysis
SQL Query Safety
Output Escaping
Fidras by CatalystIQ – Your Growth Partner Attack Surface
AJAX Handlers 3
WordPress Hooks 16
Scheduled Events 1
Maintenance & Trust
Fidras by CatalystIQ – Your Growth Partner Maintenance & Trust
Maintenance Signals
Community Trust
Fidras by CatalystIQ – Your Growth Partner Alternatives
MailPoet – Newsletters, Email Marketing, and Automation
mailpoet
Send beautiful newsletters from WordPress. Collect subscribers with signup forms, automate your emails for WooCommerce, blog post notifications & more
Klaviyo
klaviyo
Klaviyo for WooCommerce
MailerLite – WooCommerce integration
woo-mailerlite
Powerful e-commerce email marketing tools that are easy to use. Grow your store with automated emails, pop-ups, product blocks, sales tracking + more.
Brevo for WooCommerce
woocommerce-sendinblue-newsletter-subscription
All-in-one WooCommerce email marketing, automation, SMS, and CRM by Brevo. Grow your store with powerful marketing tools.
WebToffee eCommerce Marketing Automation – Email marketing, Popups, Email customizer
decorator-woocommerce-email-customizer
Create and send marketing emails and campaigns. Enable email automations, Popups, spin-a-wheel, sign-up forms, and more. Customize WooCommerce emails.
Fidras by CatalystIQ – Your Growth Partner Developer Profile
1 plugin · 0 total installs
How We Detect Fidras by CatalystIQ – Your Growth Partner
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/fidras-by-catalystiq/assets/css/admin.css/wp-content/plugins/fidras-by-catalystiq/assets/js/admin.js/wp-content/plugins/fidras-by-catalystiq/assets/js/admin.jsfidras-by-catalystiq/assets/css/admin.css?ver=fidras-by-catalystiq/assets/js/admin.js?ver=HTML / DOM Fingerprints
fidras_by_ciq_admin/wp-json/fidras-by-catalystiq/v1/handshake/wp-json/fidras-by-catalystiq/v1/brand/wp-json/fidras-by-catalystiq/v1/status/wp-json/fidras-by-catalystiq/v1/store-info