
First Purchase Discount for WooCommerce – The Ultimate First Order Discount Promotion Solution Security & Risk Analysis
wordpress.org/plugins/first-purchase-discount-for-woocommerceFirst Purchase Discount for WooCommerce is a complete solution for running a First Purchase Discount campaign.
Is First Purchase Discount for WooCommerce – The Ultimate First Order Discount Promotion Solution Safe to Use in 2026?
Generally Safe
Score 85/100First Purchase Discount for WooCommerce – The Ultimate First Order Discount Promotion Solution has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "first-purchase-discount-for-woocommerce" plugin v1.0.0 exhibits a generally good security posture in terms of its attack surface and known vulnerability history. All identified AJAX handlers and no REST API routes, shortcodes, or cron events contribute to a relatively small and controlled entry point. The absence of any known CVEs further strengthens its perceived security. However, there are notable concerns within the static analysis results. The plugin has a significant percentage of SQL queries (33%) that do not use prepared statements, posing a potential risk of SQL injection if the data involved is user-controlled. Additionally, a substantial portion of output (35%) is not properly escaped, which could lead to Cross-Site Scripting (XSS) vulnerabilities if sensitive data is rendered without sanitization. The taint analysis revealing two high-severity flows with unsanitized paths is particularly alarming and suggests potential avenues for attackers to exploit. While the plugin appears robust against external threats due to no external HTTP requests and has some basic security measures like nonces, these specific code-level weaknesses, especially the taint flows and lack of full SQL preparation, demand attention. The plugin's strength lies in its limited attack surface and clean vulnerability history, but its weaknesses in output escaping and data sanitization for SQL queries and taint paths are significant and warrant remediation.
Key Concerns
- High severity taint flows with unsanitized paths (2)
- SQL queries not using prepared statements (33%)
- Output escaping not properly handled (35%)
First Purchase Discount for WooCommerce – The Ultimate First Order Discount Promotion Solution Security Vulnerabilities
First Purchase Discount for WooCommerce – The Ultimate First Order Discount Promotion Solution Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
First Purchase Discount for WooCommerce – The Ultimate First Order Discount Promotion Solution Attack Surface
AJAX Handlers 5
WordPress Hooks 8
Maintenance & Trust
First Purchase Discount for WooCommerce – The Ultimate First Order Discount Promotion Solution Maintenance & Trust
Maintenance Signals
Community Trust
First Purchase Discount for WooCommerce – The Ultimate First Order Discount Promotion Solution Alternatives
First Order Coupon Manager for WooCommerce
first-order-coupon-manager-for-woocommerce
Maintain the first-order discount using this plugin.
First Order Discount Woocommerce
first-order-discount-woocommerce
First Order Discount Woocommerce allows admin to offer discount to their customers on their first order with various conditions.
Conditional Discounts for WooCommerce – A simple yet complete woocommerce dynamic pricing plugin
woo-advanced-discounts
A powerful WooCommerce dynamic pricing plugin for bulk discounts, free gifts, BOGOs, customer role or groups based deals and much more.
Thankyou Coupons for WooCommerce
thankyou-coupons-for-wc
Help drive loyalty and repeat purchases whilst rewarding qualified paying customers by generating a personal dynamic coupon on the WooCommerce thankyo …
Reviewify — Review Discounts & Photo/Video Reviews for WooCommerce
review-for-discount
Reviewify helps you collect photo & video reviews, reward customers with coupons, and automate WooCommerce review emails.
First Purchase Discount for WooCommerce – The Ultimate First Order Discount Promotion Solution Developer Profile
5 plugins · 12K total installs
How We Detect First Purchase Discount for WooCommerce – The Ultimate First Order Discount Promotion Solution
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/first-purchase-discount-for-woocommerce/includes/assets/lib/semantic/semantic.min.js/wp-content/plugins/first-purchase-discount-for-woocommerce/includes/assets/lib/semantic/semantic.min.css/wp-content/plugins/first-purchase-discount-for-woocommerce/admin/assets/css/adminstyle.css/wp-content/plugins/first-purchase-discount-for-woocommerce/admin/assets/js/admin.js/wp-content/plugins/first-purchase-discount-for-woocommerce/includes/assets/css/style.css/wp-content/plugins/first-purchase-discount-for-woocommerce/includes/assets/lib/nouislider/nouislider.min.css/wp-content/plugins/first-purchase-discount-for-woocommerce/includes/assets/lib/nouislider/nouislider.min.js../includes/assets/lib/semantic/semantic.min.js../includes/assets/lib/semantic/semantic.min.cssassets/css/adminstyle.cssassets/js/admin.js../includes/assets/css/style.css../includes/assets/lib/nouislider/nouislider.min.css+1 moreHTML / DOM Fingerprints
data-prefix="fas"data-icon="gift-card"aria-hidden="true"focusable="false"role="img"class="svg-inline--fa fa-gift-card fa-w-18 fa-fw"woofirstpurchase_admin_settings