
Green Receipt – Messaging App + API (Co-Existence) Plug-in Security & Risk Analysis
wordpress.org/plugins/green-receipt-buyUse WhatsApp APIs and your Business App on the same number—notify, chat, automate & grow without switching platforms! 📲💼.
Is Green Receipt – Messaging App + API (Co-Existence) Plug-in Safe to Use in 2026?
Generally Safe
Score 100/100Green Receipt – Messaging App + API (Co-Existence) Plug-in has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'green-receipt-buy' plugin v1.0.5 exhibits a generally strong security posture based on the provided static analysis. The absence of critical code signals like dangerous functions, raw SQL queries, and taint flows with unsanitized paths is a significant positive indicator. Furthermore, the plugin demonstrates good practices in output escaping, with a high percentage of outputs being properly handled. The low number of file operations and external HTTP requests also suggests a limited potential for certain types of attacks.
However, several areas raise concern. The complete lack of nonce checks and capability checks across all potential entry points (even though the attack surface is reported as zero entry points) is a notable weakness. This means that if any entry points were to be discovered or introduced in future versions, they would be vulnerable to unauthorized execution. The presence of cron events without clear indications of authorization checks also warrants attention. The vulnerability history being completely clear is a positive, but it is important to remember that a clean history does not guarantee future security, especially given the lack of authorization checks.
In conclusion, while the current version of 'green-receipt-buy' appears to be free of known critical vulnerabilities and employs good output sanitization, the absence of fundamental security checks like nonces and capability checks represents a significant risk that should be addressed. The plugin's strengths lie in its clean code regarding SQL and output sanitization, but its weaknesses lie in the critical oversight of access control mechanisms.
Key Concerns
- Missing nonce checks on all entry points
- Missing capability checks on all entry points
- Unprotected cron events present
- 91% output escaping is good, but 9% is not
Green Receipt – Messaging App + API (Co-Existence) Plug-in Security Vulnerabilities
Green Receipt – Messaging App + API (Co-Existence) Plug-in Release Timeline
Green Receipt – Messaging App + API (Co-Existence) Plug-in Code Analysis
Output Escaping
Green Receipt – Messaging App + API (Co-Existence) Plug-in Attack Surface
WordPress Hooks 27
Scheduled Events 2
Maintenance & Trust
Green Receipt – Messaging App + API (Co-Existence) Plug-in Maintenance & Trust
Maintenance Signals
Community Trust
Green Receipt – Messaging App + API (Co-Existence) Plug-in Alternatives
Jetly – Notify
jetly-notify
Deliver powerful WhatsApp order alerts, recover abandoned carts, and offer real-time chat assistance on your WooCommerce store using Jetly.
ShopNotify – Personalized Cart Recovery for WooCommerce
shopnotify
Track abandoned carts for logged-in and guest users in WooCommerce, send automated WhatsApp reminders, and gain insights into cart recovery and abando …
Pinterest for WooCommerce
pinterest-for-woocommerce
Get your products in front of Pinterest users searching for ideas and things to buy. Connect your WooCommerce store to make your catalog browsable.
Product Feed PRO for WooCommerce by AdTribes – Product Feeds for WooCommerce
woo-product-feed-pro
Most popular WooCommerce product feed plugin supporting Google shopping feed, meta/facebook feed, bing product feed & more.
Product Feed Manager for WooCommerce – CTX Feed – Support 220+ Shopping & Social Channels
webappick-product-feed-for-woocommerce
Create WooCommerce product feeds for Google Shopping, Facebook, TikTok & 220+ channels. 2026 compliant. 6 formats. Trusted by 70,000+ stores.
Green Receipt – Messaging App + API (Co-Existence) Plug-in Developer Profile
1 plugin · 0 total installs
How We Detect Green Receipt – Messaging App + API (Co-Existence) Plug-in
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/green-receipt-buy/includes/css/style.cssHTML / DOM Fingerprints
gr-wrapper<!-- #region --><!-- #endregion -->/wp-json/green-receipt-buy/v1/order