
Geargag Advanced Shipping for WooCommerce Security & Risk Analysis
wordpress.org/plugins/geargag-advanced-shipping-for-woocommerceGeargag Advanced Shipping is an plugin which allows you to set up advanced shipping conditions.
Is Geargag Advanced Shipping for WooCommerce Safe to Use in 2026?
Generally Safe
Score 85/100Geargag Advanced Shipping for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The static analysis of "geargag-advanced-shipping-for-woocommerce" v1.0.0 indicates a generally strong security posture with no identified critical code signals or taint flows. The absence of dangerous functions, raw SQL queries, file operations, and external HTTP requests are positive indicators. The plugin also demonstrates good practices in output escaping, with a high percentage of outputs properly handled.
However, there are significant concerns stemming from the complete lack of any form of authentication or authorization checks. With zero entry points being protected by nonces or capability checks, and no AJAX handlers or REST API routes having authentication, the plugin presents a substantial risk if any functionality were to be exposed through these common vectors. The vulnerability history is clean, which is positive, but this could be due to the lack of discovered vulnerabilities rather than inherent robust security against potential future threats, especially given the identified gaps in authentication.
In conclusion, while the current code analysis doesn't reveal immediate exploitable flaws like SQL injection or cross-site scripting, the absence of any authentication and authorization mechanisms creates a broad and significant attack surface. This is the primary weakness, and any feature added to this plugin in the future, without proper security checks, could become a critical vulnerability. The plugin's strength lies in its current limited scope and clean code for existing functions, but its weakness lies in its lack of foundational security controls.
Key Concerns
- 0 Unprotected Entry Points - Missing auth checks
- 0 AJAX handlers without auth checks
- 0 REST API routes without permission callbacks
- 0 Nonce checks
- 0 Capability checks
- 28% improperly escaped output
Geargag Advanced Shipping for WooCommerce Security Vulnerabilities
Geargag Advanced Shipping for WooCommerce Code Analysis
Output Escaping
Geargag Advanced Shipping for WooCommerce Attack Surface
WordPress Hooks 15
Maintenance & Trust
Geargag Advanced Shipping for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
Geargag Advanced Shipping for WooCommerce Alternatives
Weight Based Shipping for WooCommerce
weight-based-shipping-for-woocommerce
Weight Based Shipping is a flexible and widely-used solution to calculate shipping costs based on the total cart weight and value.
WC Hide Shipping Methods
wc-hide-shipping-methods
This plugin automatically hides all other shipping methods when "Free Shipping" is available, while allowing you to retain "Local Picku …
Free Shipping Bar for WooCommerce
woo-free-shipping-bar
Motivate customers to reach the free shipping threshold with a visual free shipping bar, dynamic messages and progress tracker.
Free Shipping Kit
free-shipping-kit
Display a per product FREE Shipping badge on WooCommerce product category and detail pages.
Weight Based Shipping Table Rate for WooCommerce – Flexible Shipping
flexible-shipping
Weight based shipping methods for WooCommerce. Flexible shipping with table rate rules by cart weight and order value. Accurate rates at checkout.
Geargag Advanced Shipping for WooCommerce Developer Profile
3 plugins · 10 total installs
How We Detect Geargag Advanced Shipping for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/geargag-advanced-shipping-for-woocommerce/assets/css/settings_page.css/wp-content/plugins/geargag-advanced-shipping-for-woocommerce/assets/js/dist/settings_page.jsassets/js/dist/settings_page.jsgeargag-advanced-shipping-for-woocommerce/assets/css/settings_page.css?ver=geargag-advanced-shipping-for-woocommerce/assets/js/dist/settings_page.js?ver=HTML / DOM Fingerprints
settingsPage