[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fs-bXqraHefiYrR-k0gwSllC35xw3NapoWjA1eCwpVOY":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":13,"last_updated":14,"tested_up_to":15,"requires_at_least":16,"requires_php":17,"tags":18,"homepage":14,"download_link":23,"security_score":24,"vuln_count":13,"unpatched_count":13,"last_vuln_date":25,"fetched_at":26,"vulnerabilities":27,"developer":28,"crawl_stats":25,"alternatives":34,"analysis":124,"fingerprints":189},"fonk-slack-notifications","Fonk – Slack Notifications for Devs","1.0.4","Fonk Cape Town","https:\u002F\u002Fprofiles.wordpress.org\u002Ffonkcapetown\u002F","\u003Cp>This plugin adds an easily customisable function to your theme, with which you can fire Slack Notifications to any workspace and channel of choice. Currently, no pre-defined triggers exist, so it is up to you (or your developer) to add the function in to whichever part of your theme\u002Fprocesses you would like.\u003C\u002Fp>\n","Send Slack notifications from anywhere in your theme to a Slack workspace and channel of your choice.",10,949,0,"","5.5.18","3.0.1","5.6",[19,20,21,22],"developers","fonk","notifications","slack","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Ffonk-slack-notifications.1.0.4.zip",100,null,"2026-03-15T10:48:56.248Z",[],{"slug":29,"display_name":7,"profile_url":8,"plugin_count":30,"total_installs":11,"avg_security_score":24,"avg_patch_time_days":31,"trust_score":32,"computed_at":33},"fonkcapetown",1,30,94,"2026-04-05T04:46:03.331Z",[35,57,73,93,107],{"slug":36,"name":37,"version":38,"author":39,"author_profile":40,"description":41,"short_description":42,"active_installs":43,"downloaded":44,"rating":24,"num_ratings":45,"last_updated":46,"tested_up_to":47,"requires_at_least":48,"requires_php":49,"tags":50,"homepage":54,"download_link":55,"security_score":24,"vuln_count":13,"unpatched_count":13,"last_vuln_date":25,"fetched_at":56},"hey-notify","Hey Notify","2.1.1","FireTree Design","https:\u002F\u002Fprofiles.wordpress.org\u002Ffiretree\u002F","\u003Cp>Get notified when things happen in WordPress.\u003C\u002Fp>\n\u003Ch4>Notifications can be sent to:\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Slack\u003C\u002Fli>\n\u003Cli>Discord\u003C\u002Fli>\n\u003Cli>Email\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Notifications for:\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Posts\n\u003Cul>\n\u003Cli>Draft\u003C\u002Fli>\n\u003Cli>Pending\u003C\u002Fli>\n\u003Cli>Scheduled\u003C\u002Fli>\n\u003Cli>Published\u003C\u002Fli>\n\u003Cli>Trashed\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>Pages\n\u003Cul>\n\u003Cli>Draft\u003C\u002Fli>\n\u003Cli>Pending\u003C\u002Fli>\n\u003Cli>Scheduled\u003C\u002Fli>\n\u003Cli>Published\u003C\u002Fli>\n\u003Cli>Trashed\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>Custom Post Types\n\u003Cul>\n\u003Cli>Draft\u003C\u002Fli>\n\u003Cli>Pending\u003C\u002Fli>\n\u003Cli>Scheduled\u003C\u002Fli>\n\u003Cli>Published\u003C\u002Fli>\n\u003Cli>Trashed\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>Comments\n\u003Cul>\n\u003Cli>New Comment\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>Users\n\u003Cul>\n\u003Cli>New User\u003C\u002Fli>\n\u003Cli>Administrator Login\u003C\u002Fli>\n\u003Cli>Failed Administrator Login\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>System Events\n\u003Cul>\n\u003Cli>WordPress Updates\u003C\u002Fli>\n\u003Cli>Plugin Updates\u003C\u002Fli>\n\u003Cli>Plugin Activation\u003C\u002Fli>\n\u003Cli>Plugin Deactivation\u003C\u002Fli>\n\u003Cli>Theme Updates\u003C\u002Fli>\n\u003Cli>Theme Change\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Hey Notify Pro\u003C\u002Fh4>\n\u003Cp>Stay in the know with \u003Ca href=\"https:\u002F\u002Fheynotifywp.com\u002Fpro\u002F\" rel=\"nofollow ugc\">Hey Notify Pro\u003C\u002Fa>. Premium features to keep you up to date with everything happening on your website.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Customize notification messages.\u003C\u002Fli>\n\u003Cli>Native integration with Gravity Forms.\u003C\u002Fli>\n\u003Cli>Native integration with Ninja Forms.\u003C\u002Fli>\n\u003Cli>Sales notifications from Easy Digital Downloads.\u003C\u002Fli>\n\u003C\u002Ful>\n","Get notified when things happen in WordPress.",200,5933,5,"2025-06-27T22:56:00.000Z","6.8.5","4.3","7.2",[51,52,53,21,22],"alert","discord","email","https:\u002F\u002Fheynotifywp.com\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fhey-notify.2.1.1.zip","2026-03-15T15:16:48.613Z",{"slug":58,"name":59,"version":60,"author":61,"author_profile":62,"description":63,"short_description":64,"active_installs":65,"downloaded":66,"rating":24,"num_ratings":67,"last_updated":68,"tested_up_to":47,"requires_at_least":69,"requires_php":70,"tags":71,"homepage":14,"download_link":72,"security_score":24,"vuln_count":13,"unpatched_count":13,"last_vuln_date":25,"fetched_at":56},"ons-order-notifications-for-slack","ONS Order Notifications for Slack","1.0","Awais Awan","https:\u002F\u002Fprofiles.wordpress.org\u002Fawaisaliawandxb\u002F","\u003Cp>Send WooCommerce Order Notifications Directly to Slack\u003C\u002Fp>\n\u003Cp>Keep your team instantly updated with new WooCommerce orders by integrating your online store with Slack. This lightweight yet powerful plugin allows you to send real-time order notifications to any Slack channel of your choice, ensuring your sales and fulfillment teams are always in the loop.\u003C\u002Fp>\n\u003Cp>With easy configuration options in the WordPress admin dashboard, you can fully customize the Slack messages to match your branding and workflow.\u003C\u002Fp>\n\u003Cp>🔧 Key Features:\u003C\u002Fp>\n\u003Cp>Real-Time Notifications\u003Cbr \u002F>\nAutomatically send WooCommerce order alerts to your Slack workspace as soon as a new order is placed.\u003C\u002Fp>\n\u003Cp>Customizable Slack Integration\u003Cbr \u002F>\nSet your Slack Incoming Webhook URL directly from the plugin settings page. No coding required.\u003C\u002Fp>\n\u003Cp>Personalized Message Content\u003Cbr \u002F>\nConfigure the notification title, message color, and other basic styling options to reflect your brand tone or urgency level.\u003C\u002Fp>\n\u003Cp>Easy-to-Use Admin Interface\u003Cbr \u002F>\nA clean and user-friendly admin panel allows store owners and managers to quickly set up and manage notification settings without technical hassle.\u003C\u002Fp>\n\u003Cp>Improve Workflow & Response Time\u003Cbr \u002F>\nBy receiving instant order alerts in Slack, your support, inventory, and fulfillment teams can take quicker action and enhance customer satisfaction.\u003C\u002Fp>\n\u003Cp>This plugin is ideal for eCommerce store owners using WooCommerce who want better communication, faster order processing, and real-time sales tracking within their Slack workspace.\u003C\u002Fp>\n","A plugin to send WooCommerce order notifications to Slack.",20,361,3,"2025-05-16T12:34:00.000Z","5.0","7.4",[21,22],"https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fons-order-notifications-for-slack.zip",{"slug":74,"name":75,"version":76,"author":77,"author_profile":78,"description":79,"short_description":80,"active_installs":11,"downloaded":81,"rating":24,"num_ratings":30,"last_updated":82,"tested_up_to":83,"requires_at_least":84,"requires_php":14,"tags":85,"homepage":89,"download_link":90,"security_score":91,"vuln_count":13,"unpatched_count":13,"last_vuln_date":25,"fetched_at":92},"newheap-integration-for-slack","Slackr","1.0.0","NewHeap","https:\u002F\u002Fprofiles.wordpress.org\u002Fnewheap\u002F","\u003Cp>Slackr allows you to easily add Slack Incomming Webhook integrations to your WordPress environment. Incomming webhooks is a plugin for your Slack environment which enables you to generate a URL which will allow 3rd party application’s to send notifications to your Slack environment.\u003C\u002Fp>\n\u003Cp>Slackr contains mulitple, easy to configure, events. When an event occurs, a personally configurable notification will be send to your Slack environment via the Incomming webhook. This plugin also allow’s you to setup custom events which you can create in your own theme or plugin.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>The following events are supported out of the box:\u003C\u002Fstrong>\u003Cbr \u002F>\n* Add custom events\u003Cbr \u002F>\n* Filter on post types\u003Cbr \u002F>\n* Post created\u003Cbr \u002F>\n* Post updated\u003Cbr \u002F>\n* Post thrashed\u003Cbr \u002F>\n* Post deleted\u003Cbr \u002F>\n* Comment created\u003Cbr \u002F>\n* Comment status change\u003Cbr \u002F>\n* User login successful\u003Cbr \u002F>\n* User login failed\u003Cbr \u002F>\n* User created\u003Cbr \u002F>\n* User updated\u003Cbr \u002F>\n* User deleted\u003Cbr \u002F>\n* User role changed\u003Cbr \u002F>\n* Plugin activated\u003Cbr \u002F>\n* Plugin deactivated\u003Cbr \u002F>\n* Plugin deleted\u003Cbr \u002F>\n* Attachment created\u003Cbr \u002F>\n* Attachment updated\u003Cbr \u002F>\n* Attachment deleted\u003C\u002Fp>\n\u003Ch3>From within WordPress\u003C\u002Fh3>\n\u003Col>\n\u003Cli>Visit ‘Plugins > Add New’\u003C\u002Fli>\n\u003Cli>Search for ‘Slackr’\u003C\u002Fli>\n\u003Cli>Activate Slackr from your Plugins page.\u003C\u002Fli>\n\u003Cli>Go to “after activation” below.\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch3>Manually\u003C\u002Fh3>\n\u003Col>\n\u003Cli>Upload the \u003Ccode>slackr\u003C\u002Fcode> folder to the \u003Ccode>\u002Fwp-content\u002Fplugins\u002F\u003C\u002Fcode> directory\u003C\u002Fli>\n\u003Cli>Activate the Slackr plugin through the ‘Plugins’ menu in WordPress\u003C\u002Fli>\n\u003Cli>Go to “after activation” below.\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch3>After activation\u003C\u002Fh3>\n\u003Col>\n\u003Cli>Slackr should now be available in the main menu\u003C\u002Fli>\n\u003Cli>Navigate to https:\u002F\u002Fyour-domain.slack.com\u002Fapps and search for “Incomming webhooks”\u003C\u002Fli>\n\u003Cli>Follow the Incomming webhooks installation, activation and configuration guide.\u003C\u002Fli>\n\u003Cli>Configure one or more Slackr integrations to communicate with your Slack environment(s)\u003C\u002Fli>\n\u003Cli>You’re done!\u003C\u002Fli>\n\u003C\u002Fol>\n","Slackr keeps you in the loop of everything that is happening on your site by sending customizable Slack notifications.",1502,"2017-08-14T14:48:00.000Z","4.8.28","4.6",[86,87,21,22,88],"events","integration","slackr","https:\u002F\u002Fwww.newheap.com\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fnewheap-integration-for-slack.zip",85,"2026-03-15T14:54:45.397Z",{"slug":94,"name":95,"version":76,"author":96,"author_profile":97,"description":98,"short_description":99,"active_installs":11,"downloaded":100,"rating":13,"num_ratings":13,"last_updated":101,"tested_up_to":47,"requires_at_least":69,"requires_php":14,"tags":102,"homepage":105,"download_link":106,"security_score":24,"vuln_count":13,"unpatched_count":13,"last_vuln_date":25,"fetched_at":56},"theitoons-notifier-for-slack-contact-form-7","Notifier for Slack and Contact Form 7 by TheIToons","TheIToons","https:\u002F\u002Fprofiles.wordpress.org\u002Fpntrivedy\u002F","\u003Cp>The Notifier plugin that sends notifications to Slack whenever a Contact Form 7 form is submitted.\u003Cbr \u002F>\nYou can customize the message and choose which forms trigger Slack notifications.\u003C\u002Fp>\n","Send Slack notifications when a Contact Form 7 form is submitted.",278,"2025-05-30T10:42:00.000Z",[103,104,21,22],"contact-form-7","form-submission","https:\u002F\u002Ftheitoons.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Ftheitoons-notifier-for-slack-contact-form-7.1.0.0.zip",{"slug":108,"name":109,"version":110,"author":111,"author_profile":112,"description":113,"short_description":114,"active_installs":13,"downloaded":115,"rating":13,"num_ratings":13,"last_updated":116,"tested_up_to":117,"requires_at_least":118,"requires_php":70,"tags":119,"homepage":122,"download_link":123,"security_score":24,"vuln_count":13,"unpatched_count":13,"last_vuln_date":25,"fetched_at":56},"got-a-sale","Got A Sale – Order Notifications for WooCommerce","1.1.2","Jack - Empyreal","https:\u002F\u002Fprofiles.wordpress.org\u002Fjackempyreal\u002F","\u003Cp>Got A Sale sends real-time WooCommerce order notifications to your Telegram chats, Discord channels, and Slack workspaces. Get notified about new orders instantly — wherever you are. Upgrade through the Got A Sale service for additional event types like status changes, low stock alerts, and refunds.\u003C\u002Fp>\n\u003Ch4>Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>New Order Notifications\u003C\u002Fstrong> — Get notified the moment a new order is placed\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Additional Event Types\u003C\u002Fstrong> — Status changes, low stock alerts, and refund notifications (Pro\u002FAgency via the Got A Sale service)\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Telegram, Discord & Slack\u003C\u002Fstrong> — Connect to any Telegram chat, Discord channel, or Slack workspace with a simple bot command\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Multi-Destination Routing\u003C\u002Fstrong> — Send notifications to up to 10 destinations (Pro) or unlimited (Agency)\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Per-Destination Event Filtering\u003C\u002Fstrong> — Choose which events each destination receives (Pro\u002FAgency)\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Generic Webhooks\u003C\u002Fstrong> — Add webhook URLs for Zapier, Make, n8n, or custom integrations (Pro\u002FAgency)\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Payload Customisation\u003C\u002Fstrong> — Control which data fields appear in each destination’s notifications (Pro\u002FAgency)\u003C\u002Fli>\n\u003Cli>\u003Cstrong>HPOS Compatible\u003C\u002Fstrong> — Fully compatible with WooCommerce High-Performance Order Storage\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Lightweight\u003C\u002Fstrong> — No order data stored locally; notifications are sent in real time\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>How It Works\u003C\u002Fh4>\n\u003Col>\n\u003Cli>Install and activate the plugin\u003C\u002Fli>\n\u003Cli>Copy your unique Site Token from Settings > Got A Sale\u003C\u002Fli>\n\u003Cli>Send the token to @gotasale_bot on Telegram, use \u002Flink in Discord, or use \u002Fgotasale link in Slack\u003C\u002Fli>\n\u003Cli>Approve the connection in your WordPress admin\u003C\u002Fli>\n\u003Cli>Start receiving order notifications!\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch4>External Service Usage\u003C\u002Fh4>\n\u003Cp>This plugin relies on the Got A Sale notification service to deliver messages to your Telegram, Discord, Slack, and webhook destinations. The plugin communicates with the Got A Sale API server at \u003Cstrong>api.gotasale.io\u003C\u002Fstrong>.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Data transmitted to the service:\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>On activation:\u003C\u002Fstrong> Your site token, store URL, and store name (for registration)\u003C\u002Fli>\n\u003Cli>\u003Cstrong>On order events:\u003C\u002Fstrong> Order details (ID, status, total, currency, items, customer name, email, phone, addresses) are sent to the Got A Sale server, which routes them to your connected destinations\u003C\u002Fli>\n\u003Cli>\u003Cstrong>On WC API setup:\u003C\u002Fstrong> Read-write WooCommerce REST API credentials are encrypted (AES-256-GCM) and sent to the server to enable order viewing from the Got A Sale app\u003C\u002Fli>\n\u003Cli>\u003Cstrong>On upgrade\u002Fbilling:\u003C\u002Fstrong> You are redirected to Stripe for payment processing. Stripe handles all payment data.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Cstrong>No order data is stored on Got A Sale servers.\u003C\u002Fstrong> Orders are fetched live from your store via the WooCommerce REST API when viewed in the Got A Sale app.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fgotasale.io\u002Fprivacy\" rel=\"nofollow ugc\">Privacy Policy\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fgotasale.io\u002Fterms\" rel=\"nofollow ugc\">Terms of Service\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fgotasale.io\" rel=\"nofollow ugc\">Got A Sale Website\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n","Send WooCommerce order notifications to Telegram, Discord, and Slack instantly.",164,"2026-03-02T16:31:00.000Z","6.9.4","5.8",[52,21,22,120,121],"telegram","woocommerce","https:\u002F\u002Fgotasale.io","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fgot-a-sale.1.1.2.zip",{"attackSurface":125,"codeSignals":160,"taintFlows":175,"riskAssessment":176,"analyzedAt":188},{"hooks":126,"ajaxHandlers":156,"restRoutes":157,"shortcodes":158,"cronEvents":159,"entryPointCount":13,"unprotectedCount":13},[127,134,138,142,146,149,151,154],{"type":128,"name":129,"callback":130,"priority":131,"file":132,"line":133},"action","admin_menu","addPluginAdminMenu",9,"admin\\class-fonk-slack-notification-admin.php",54,{"type":128,"name":135,"callback":136,"file":132,"line":137},"admin_init","registerAndBuildFields",55,{"type":128,"name":139,"callback":140,"file":132,"line":141},"admin_notices","pluginNameSettingsMessages",142,{"type":128,"name":143,"callback":144,"file":145,"line":141},"plugins_loaded","anonymous","includes\\class-fonk-slack-notification.php",{"type":128,"name":147,"callback":144,"file":145,"line":148},"admin_enqueue_scripts",157,{"type":128,"name":147,"callback":144,"file":145,"line":150},158,{"type":128,"name":152,"callback":144,"file":145,"line":153},"wp_enqueue_scripts",173,{"type":128,"name":152,"callback":144,"file":145,"line":155},174,[],[],[],[],{"dangerousFunctions":161,"sqlUsage":162,"outputEscaping":164,"fileOperations":13,"externalRequests":30,"nonceChecks":13,"capabilityChecks":13,"bundledLibraries":174},[],{"prepared":13,"raw":13,"locations":163},[],{"escaped":165,"rawEcho":67,"locations":166},7,[167,170,172],{"file":132,"line":168,"context":169},419,"raw output",{"file":132,"line":171,"context":169},421,{"file":132,"line":173,"context":169},428,[],[],{"summary":177,"deductions":178},"The \"fonk-slack-notifications\" plugin, in version 1.0.4, presents a generally good security posture based on the static analysis provided. The absence of any identified entry points such as AJAX handlers, REST API routes, shortcodes, or cron events is a significant strength, as it drastically limits the plugin's attack surface. Furthermore, the lack of dangerous functions, file operations, and the 100% usage of prepared statements for SQL queries are excellent security practices.\n\nHowever, a few areas warrant attention. While the taint analysis shows no critical or high severity issues, the fact that only 70% of output is properly escaped suggests a potential for Cross-Site Scripting (XSS) vulnerabilities if the unescaped outputs are triggered by user-supplied data. The single external HTTP request, while not inherently a vulnerability, represents an external dependency that could be a vector for attack or a source of denial-of-service if the external service is compromised or unavailable. The complete absence of nonce and capability checks on any (hypothetical) entry points is also a concern, as it implies that if any such points were introduced in the future, they would be immediately unprotected.\n\nThe plugin's vulnerability history is entirely clean, with zero recorded CVEs. This indicates a history of responsible development or a lack of prior exploitation, which is positive. However, the absence of any vulnerability history does not guarantee future security. The strengths lie in the minimal attack surface and secure data handling for SQL. The weaknesses, though not severe in this snapshot, are the potential for unescaped output and the lack of built-in authorization checks which would be critical if new entry points were added.",[179,181,184,186],{"reason":180,"points":45},"Output escaping is not fully implemented (70%)",{"reason":182,"points":183},"External HTTP requests present",2,{"reason":185,"points":45},"No nonce checks on entry points",{"reason":187,"points":45},"No capability checks on entry points","2026-03-16T23:18:01.946Z",{"wat":190,"direct":197},{"assetPaths":191,"generatorPatterns":193,"scriptPaths":194,"versionParams":195},[192],"\u002Fwp-content\u002Fplugins\u002Ffonk-slack-notifications\u002Fadmin\u002Fcss\u002Ffonk-slack-notification-admin.css",[],[],[196],"fonk-slack-notification-admin.css?ver=",{"cssClasses":198,"htmlComments":199,"htmlAttributes":200,"restEndpoints":201,"jsGlobals":202,"shortcodeOutput":203},[],[],[],[],[],[]]