
Foolosi Subscription for WooCommerce Security & Risk Analysis
wordpress.org/plugins/foloosi-subscriptionIt allows you to manage recurring payments for product subscription that grant you constant periodical income
Is Foolosi Subscription for WooCommerce Safe to Use in 2026?
Generally Safe
Score 85/100Foolosi Subscription for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The foloosi-subscription v1.0.4 plugin exhibits a mixed security posture. On the positive side, it demonstrates strong adherence to secure coding practices with 100% of its SQL queries using prepared statements and a high percentage (92%) of properly escaped output. The absence of any recorded vulnerabilities, including CVEs, is a significant strength, indicating a generally stable and well-maintained codebase historically. However, there are notable areas of concern. The presence of two AJAX handlers, one of which lacks proper authentication checks, presents a direct attack vector. While the taint analysis did not reveal critical or high severity unsanitized paths, the two flows with unsanitized paths, even if not critically exploitable, represent potential weaknesses that could be leveraged in conjunction with other factors. The plugin also makes external HTTP requests, which, while not inherently problematic, can introduce risks if not handled securely.
Overall, the plugin's strong foundation in secure coding for database operations and output is commendable. The primary risk stems from the unprotected AJAX endpoint, which is a common entry point for malicious activity and requires immediate attention. The taint analysis findings, though not critical, suggest that ongoing vigilance and thorough code reviews are necessary. The lack of vulnerability history is positive, but it should not lead to complacency, especially given the identified unprotected entry point.
Key Concerns
- Unprotected AJAX handler
- Flows with unsanitized paths (2 instances)
- External HTTP requests (6 instances)
Foolosi Subscription for WooCommerce Security Vulnerabilities
Foolosi Subscription for WooCommerce Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
Foolosi Subscription for WooCommerce Attack Surface
AJAX Handlers 2
WordPress Hooks 93
Scheduled Events 1
Maintenance & Trust
Foolosi Subscription for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
Foolosi Subscription for WooCommerce Alternatives
YITH WooCommerce Subscription
yith-woocommerce-subscription
It allows you to manage recurring payments for product subscription that grant you constant periodical income
Foloosi Payments
foloosi-for-woocommerce
Foloosi Payments plugin to accept credit card and debit payments.
Tubapay
tubapay-v2
Podzielenie płatności za zakupy Klientów oraz obsługa płatności abonamentowych / subskrypcji w WooCommerce. Wszyj w swoją ofertę pobieranie cyklicznyc …
WP Payment
wp-payment
Get recurring and onetime payments with PayPal, Authorize.NET and Stripe.
ProAbono – Subscription billing
proabono
ProAbono is made by WordPress experts to go further with WP sites, and help you grow your business by easily selling your services by paying subscript …
Foolosi Subscription for WooCommerce Developer Profile
2 plugins · 110 total installs
How We Detect Foolosi Subscription for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/foloosi-subscription/plugin-fw/assets/css/foloosi-plugin-fw.css/wp-content/plugins/foloosi-subscription/plugin-fw/assets/js/foloosi-plugin-fw.js/wp-content/plugins/foloosi-subscription/includes/assets/css/admin.css/wp-content/plugins/foloosi-subscription/includes/assets/js/admin.js/wp-content/plugins/foloosi-subscription/includes/assets/js/cart.js/wp-content/plugins/foloosi-subscription/plugin-fw/assets/js/foloosi-plugin-fw.js/wp-content/plugins/foloosi-subscription/includes/assets/js/admin.js/wp-content/plugins/foloosi-subscription/includes/assets/js/cart.jsfoloosi-subscription/plugin-fw/assets/css/foloosi-plugin-fw.css?ver=foloosi-subscription/plugin-fw/assets/js/foloosi-plugin-fw.js?ver=foloosi-subscription/includes/assets/css/admin.css?ver=foloosi-subscription/includes/assets/js/admin.js?ver=foloosi-subscription/includes/assets/js/cart.js?ver=HTML / DOM Fingerprints
foloosi-woocommerce-subscription<!-- Registration hook ________________________________________ --><!-- Define constants ________________________________________ --><!-- Woocommerce installation check _________________________ --><!-- Implements admin features of Foloosi Subscription for WooCommerce -->+8 moredata-page="foloosi_woocommerce_subscription"window.foloosi_fwsbs_obj