Gateway Payougo Checkout Security & Risk Analysis

wordpress.org/plugins/gateway-payougo-checkout

With Payougo, easyly accept secure Orange Money & MTN Mobile Money payments from Cameroon subscribers on your web store.

10 active installs v1.0.5 PHP 5.4+ WP 4.0+ Updated Nov 1, 2022
mobile-moneymtn-mobile-moneymtn-momoorange-moneypayougo
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Gateway Payougo Checkout Safe to Use in 2026?

Generally Safe

Score 85/100

Gateway Payougo Checkout has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3yr ago
Risk Assessment

The gateway-payougo-checkout plugin v1.0.5 exhibits a generally strong security posture based on the provided static analysis. It demonstrates good practices by avoiding dangerous functions, utilizing prepared statements for all SQL queries, and implementing nonce checks on its single AJAX endpoint. The low number of total flows analyzed and zero flows with unsanitized paths in taint analysis further suggest a lack of immediately apparent critical vulnerabilities. The plugin's history of zero known CVEs is also a positive indicator, implying a history of secure development or effective patching by the vendor.

Key Concerns

  • Missing capability checks on AJAX
  • Moderate percentage of unescaped output
Vulnerabilities
None known

Gateway Payougo Checkout Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Gateway Payougo Checkout Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
16
106 escaped
Nonce Checks
5
Capability Checks
0
File Operations
0
External Requests
6
Bundled Libraries
0

Output Escaping

87% escaped122 total outputs
Data Flows
All sanitized

Data Flow Analysis

1 flows
<class-wc-gateway-pyg-admin-handler> (includes\class-wc-gateway-pyg-admin-handler.php:0)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Gateway Payougo Checkout Attack Surface

Entry Points1
Unprotected0

AJAX Handlers 1

authwp_ajax_pyg_dismiss_notice_messageincludes\class-wc-gateway-pyg-plugin.php:129
WordPress Hooks 47
actionadmin_enqueue_scriptsincludes\abstracts\abstract-wc-gateway-pyg.php:55
filterwoocommerce_ajax_get_endpointincludes\abstracts\abstract-wc-gateway-pyg.php:58
actionwoocommerce_update_options_generalincludes\class-wc-gateway-pyg-admin-handler.php:31
actionadmin_noticesincludes\class-wc-gateway-pyg-admin-handler.php:33
actionwoocommerce_order_status_processingincludes\class-wc-gateway-pyg-admin-handler.php:35
actionwoocommerce_order_status_completedincludes\class-wc-gateway-pyg-admin-handler.php:37
actionwoocommerce_order_status_cancelledincludes\class-wc-gateway-pyg-admin-handler.php:39
actionwoocommerce_order_status_refundedincludes\class-wc-gateway-pyg-admin-handler.php:41
filterwoocommerce_order_actionsincludes\class-wc-gateway-pyg-admin-handler.php:43
actionwoocommerce_order_action_pyg_capture_chargeincludes\class-wc-gateway-pyg-admin-handler.php:45
actionload-woocommerce_page_wc-settingsincludes\class-wc-gateway-pyg-admin-handler.php:47
actionwoocommerce_admin_order_totals_after_totalincludes\class-wc-gateway-pyg-admin-handler.php:51
actionadmin_noticesincludes\class-wc-gateway-pyg-admin-handler.php:53
actionwoocommerce_before_cart_totalsincludes\class-wc-gateway-pyg-cart-handler.php:22
actionwoocommerce_proceed_to_checkoutincludes\class-wc-gateway-pyg-cart-handler.php:23
actionwp_enqueue_scriptsincludes\class-wc-gateway-pyg-cart-handler.php:24
actionwoocommerce_after_mini_cartincludes\class-wc-gateway-pyg-cart-handler.php:27
actionwoocommerce_widget_shopping_cart_buttonsincludes\class-wc-gateway-pyg-cart-handler.php:29
actionwidget_titleincludes\class-wc-gateway-pyg-cart-handler.php:31
actionwoocommerce_after_add_to_cart_formincludes\class-wc-gateway-pyg-cart-handler.php:34
actionwc_ajax_wc_pyg_generate_cartincludes\class-wc-gateway-pyg-cart-handler.php:35
actionwpincludes\class-wc-gateway-pyg-cart-handler.php:36
actionwc_ajax_wc_pyg_update_shipping_costsincludes\class-wc-gateway-pyg-cart-handler.php:39
actionwc_ajax_wc_pyg_start_checkoutincludes\class-wc-gateway-pyg-cart-handler.php:40
actionwoocommerce_after_checkout_validationincludes\class-wc-gateway-pyg-cart-handler.php:161
actioninitincludes\class-wc-gateway-pyg-checkout-handler.php:37
filterthe_titleincludes\class-wc-gateway-pyg-checkout-handler.php:38
actionwoocommerce_checkout_initincludes\class-wc-gateway-pyg-checkout-handler.php:39
actionwoocommerce_checkout_processincludes\class-wc-gateway-pyg-checkout-handler.php:40
actionwoocommerce_before_checkout_formincludes\class-wc-gateway-pyg-checkout-handler.php:42
actionwpincludes\class-wc-gateway-pyg-checkout-handler.php:43
actionwoocommerce_cart_emptiedincludes\class-wc-gateway-pyg-checkout-handler.php:44
actionwoocommerce_review_order_after_submitincludes\class-wc-gateway-pyg-checkout-handler.php:47
actionwoocommerce_cart_shipping_packagesincludes\class-wc-gateway-pyg-checkout-handler.php:49
filterwc_checkout_paramsincludes\class-wc-gateway-pyg-checkout-handler.php:61
filterwoocommerce_get_script_dataincludes\class-wc-gateway-pyg-checkout-handler.php:63
actionwoocommerce_checkout_billingincludes\class-wc-gateway-pyg-checkout-handler.php:105
actionwoocommerce_checkout_billingincludes\class-wc-gateway-pyg-checkout-handler.php:106
actionwoocommerce_checkout_shippingincludes\class-wc-gateway-pyg-checkout-handler.php:107
filterwoocommerce_default_address_fieldsincludes\class-wc-gateway-pyg-checkout-handler.php:110
filterwoocommerce_billing_fieldsincludes\class-wc-gateway-pyg-checkout-handler.php:111
filterwoocommerce_payment_gatewaysincludes\class-wc-gateway-pyg-gateway-loader.php:39
actionplugins_loadedincludes\class-wc-gateway-pyg-plugin.php:124
filterallowed_redirect_hostsincludes\class-wc-gateway-pyg-plugin.php:125
actioninitincludes\class-wc-gateway-pyg-plugin.php:126
actionadmin_noticesincludes\class-wc-gateway-pyg-plugin.php:157
actionadmin_noticesincludes\class-wc-gateway-pyg-plugin.php:309
Maintenance & Trust

Gateway Payougo Checkout Maintenance & Trust

Maintenance Signals

WordPress version tested6.0.11
Last updatedNov 1, 2022
PHP min version5.4
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Gateway Payougo Checkout Developer Profile

Payougo

1 plugin · 10 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Gateway Payougo Checkout

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/gateway-payougo-checkout/assets/css/wc-gateway-pyg-settings.css/wp-content/plugins/gateway-payougo-checkout/assets/js/wc-gateway-pyg-settings.js
Script Paths
includes/class-wc-gateway-pyg-plugin.phpincludes/abstracts/abstract-wc-gateway-pyg.phpincludes/gateways/class-wc-gateway-pyg.phpincludes/gateways/class-wc-gateway-pyg-payougo.phpincludes/class-wc-gateway-pyg-checkout.phpincludes/class-wc-gateway-pyg-api.php+7 more
Version Parameters
gateway-payougo-checkout/assets/js/wc-gateway-pyg-settings.js?ver=

HTML / DOM Fingerprints

CSS Classes
wc_payment_method_payougo
HTML Comments
Copyright (c) 2020 PaYouGo, Inc. The name of the PaYouGo may not be used to endorse or promote products derived from this software without specific prior written permission. THIS SOFTWARE IS PROVIDED ``AS IS'' AND WITHOUT ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, WITHOUT LIMITATION, THE IMPLIED+20 more
Data Attributes
data-gateway_id="pyg_payougo"
JS Globals
wc_gateway_pyg
FAQ

Frequently Asked Questions about Gateway Payougo Checkout