GoUrl Paid Memberships Pro – Bitcoin Payment Gateway Addon Security & Risk Analysis

wordpress.org/plugins/gourl-bitcoin-paid-memberships-pro

Provides Bitcoin Payment Gateway for Paid Memberships Pro 1.8+ or higher. Accept Bitcoin, Bitcoin Cash, Litecoin, Dogecoin, Dash, etc Payments on Your …

70 active installs v1.1.8 PHP + WP 3.5+ Updated Jul 13, 2021
bitcoinmembershippaid-membershippaidmembershipspropmpro
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is GoUrl Paid Memberships Pro – Bitcoin Payment Gateway Addon Safe to Use in 2026?

Generally Safe

Score 85/100

GoUrl Paid Memberships Pro – Bitcoin Payment Gateway Addon has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4yr ago
Risk Assessment

The static analysis of gourl-bitcoin-paid-memberships-pro v1.1.8 reveals a generally strong security posture with no identified entry points that are not properly authenticated or authorized. The absence of AJAX handlers, REST API routes, shortcodes, and cron events with unprotected access is a significant positive indicator. The code also shows no signs of dangerous function usage, file operations, or external HTTP requests, further contributing to a reduced attack surface.

However, there are notable areas for concern. The analysis indicates that 100% of SQL queries are executed without prepared statements, posing a significant risk of SQL injection vulnerabilities, especially if any of the query inputs are user-controlled. While the taint analysis shows no critical or high-severity unsanitized paths, the lack of prepared statements means potential injection vectors could exist. The limited number of capability checks (only 1) suggests that authorization for certain actions might not be robustly implemented across the plugin.

Furthermore, the plugin has no recorded vulnerability history, which is excellent. This suggests a history of secure development or diligent patching. Despite the positive vulnerability history, the lack of prepared statements in all SQL queries and the limited capability checks present tangible risks that require attention. The overall security is good due to the limited attack surface and lack of known vulnerabilities, but the identified code-level weaknesses, particularly in SQL query handling, lower its score.

Key Concerns

  • 100% of SQL queries are not using prepared statements
  • Low number of capability checks (1 total)
  • Significant percentage of output not properly escaped (39%)
Vulnerabilities
None known

GoUrl Paid Memberships Pro – Bitcoin Payment Gateway Addon Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

GoUrl Paid Memberships Pro – Bitcoin Payment Gateway Addon Code Analysis

Dangerous Functions
0
Raw SQL Queries
4
0 prepared
Unescaped Output
9
14 escaped
Nonce Checks
0
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

0% prepared4 total queries

Output Escaping

61% escaped23 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
gourl_pmp_gateway_load (gourl_paidmembershipspro.php:41)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

GoUrl Paid Memberships Pro – Bitcoin Payment Gateway Addon Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 21
actionplugins_loadedgourl_paidmembershipspro.php:20
actionplugins_loadedgourl_paidmembershipspro.php:23
actionpmpro_invoice_bullets_topgourl_paidmembershipspro.php:28
actioninitgourl_paidmembershipspro.php:48
filterpmpro_currenciesgourl_paidmembershipspro.php:51
actionpmpro_after_order_settingsgourl_paidmembershipspro.php:54
filterpmpro_pages_shortcode_confirmationgourl_paidmembershipspro.php:57
filterpmpro_invoice_bullets_bottomgourl_paidmembershipspro.php:60
filterplugin_action_linksgourl_paidmembershipspro.php:63
filterpmpro_get_gatewaygourl_paidmembershipspro.php:67
filterpmpro_valid_gatewaysgourl_paidmembershipspro.php:68
actionadmin_noticesgourl_paidmembershipspro.php:69
actionpmpro_checkout_boxesgourl_paidmembershipspro.php:70
actionpmpro_membership_level_after_other_settingsgourl_paidmembershipspro.php:73
filterpmpro_gatewaysgourl_paidmembershipspro.php:99
filterpmpro_payment_optionsgourl_paidmembershipspro.php:102
filterpmpro_payment_option_fieldsgourl_paidmembershipspro.php:103
filterpmpro_include_billing_address_fieldsgourl_paidmembershipspro.php:109
filterpmpro_include_payment_information_fieldsgourl_paidmembershipspro.php:110
filterpmpro_required_billing_fieldsgourl_paidmembershipspro.php:111
filterpmpro_checkout_before_change_membership_levelgourl_paidmembershipspro.php:112
Maintenance & Trust

GoUrl Paid Memberships Pro – Bitcoin Payment Gateway Addon Maintenance & Trust

Maintenance Signals

WordPress version tested5.8.13
Last updatedJul 13, 2021
PHP min version
Downloads109K

Community Trust

Rating100/100
Number of ratings4
Active installs70
Developer Profile

GoUrl Paid Memberships Pro – Bitcoin Payment Gateway Addon Developer Profile

gourl

11 plugins · 2K total installs

67
trust score
Avg Security Score
83/100
Avg Patch Time
1910 days
View full developer profile
Detection Fingerprints

How We Detect GoUrl Paid Memberships Pro – Bitcoin Payment Gateway Addon

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/gourl-bitcoin-paid-memberships-pro/js/gourl_bitcoin_paid_memberships_pro.js
Script Paths
/wp-content/plugins/gourl-bitcoin-paid-memberships-pro/js/gourl_bitcoin_paid_memberships_pro.js

HTML / DOM Fingerprints

CSS Classes
gourl-bitcoin-payment-widgetgourl-qr-codegourl-payment-detailsgourl-payment-instructionsgourl-payment-status
HTML Comments
<!-- GOURL Bitcoin/Altcoins Gateway Settings --><!-- GOURL Bitcoin/Altcoins Payment --><!-- GOURL Payment Details -->
Data Attributes
data-gourl-payment-iddata-gourl-currencydata-gourl-amountdata-gourl-destinationdata-gourl-payment-target
JS Globals
gourl_bitcoin_paid_memberships_pro
Shortcode Output
[gourl_bitcoin_payment][gourl_payment_details][gourl_payment_instructions]
FAQ

Frequently Asked Questions about GoUrl Paid Memberships Pro – Bitcoin Payment Gateway Addon