HANDMADE – Dropshipping for Etsy and WooCommerce Security & Risk Analysis

wordpress.org/plugins/handmade-dropshipping-for-etsy-and-woo

Transfer data from Etsy products to WooCommerce effortlessly.

40 active installs v1.0.7 PHP 7.0+ WP 6.2+ Updated Dec 23, 2025
dropshipdropshipping-for-etsy-and-woocommerceetsy-pluginwoocommerce-etsy
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is HANDMADE – Dropshipping for Etsy and WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

HANDMADE – Dropshipping for Etsy and WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3mo ago
Risk Assessment

The plugin "handmade-dropshipping-for-etsy-and-woo" v1.0.7 exhibits a strong security posture based on the provided static analysis. The absence of any identified dangerous functions, the exclusive use of prepared statements for all SQL queries, and 100% proper output escaping are significant strengths. Furthermore, the extensive use of nonce and capability checks (33 each) suggests a robust approach to authorization and preventing CSRF attacks. The zero known CVEs and the lack of any recorded vulnerabilities in its history are highly positive indicators.

While the static analysis reveals no critical or high-severity taint flows and a minimal attack surface with zero unprotected entry points, there are a few areas that warrant attention for completeness. The presence of file operations and external HTTP requests, while not inherently insecure, represent potential vectors if not implemented with utmost care regarding input validation and sanitization. The bundled Select2 library, if not kept up-to-date, could theoretically introduce vulnerabilities, though this is not explicitly indicated as a current risk. Overall, the plugin appears to be well-developed from a security perspective, with its strengths heavily outweighing any potential concerns.

In conclusion, this plugin demonstrates excellent security practices, particularly in its handling of SQL queries and output. The lack of historical vulnerabilities further solidifies its current security standing. The limited attack surface and thorough use of security checks are commendable. While the file operations and external requests are minor points of consideration, they do not represent immediate risks based on this data. The plugin can be considered a low-risk option.

Key Concerns

  • File operations present potential attack vector
  • External HTTP requests present potential attack vector
  • Bundled library (Select2) may require updates
Vulnerabilities
None known

HANDMADE – Dropshipping for Etsy and WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

HANDMADE – Dropshipping for Etsy and WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
92 prepared
Unescaped Output
3
951 escaped
Nonce Checks
33
Capability Checks
33
File Operations
4
External Requests
5
Bundled Libraries
1

Bundled Libraries

Select2

SQL Query Safety

100% prepared92 total queries

Output Escaping

100% escaped954 total outputs
Data Flows
All sanitized

Data Flow Analysis

10 flows
page_callback (admin\error-images.php:67)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

HANDMADE – Dropshipping for Etsy and WooCommerce Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 52
actionrest_api_initadmin\api.php:11
filterwoocommerce_rest_is_request_to_rest_apiadmin\api.php:12
actionadmin_menuadmin\auth.php:9
filterwoocommerce_api_permissions_in_scopeadmin\auth.php:10
actionadmin_enqueue_scriptsadmin\auth.php:11
actionadmin_headadmin\error-images.php:10
actionadmin_initadmin\error-images.php:11
filterhandmade_admin_ajax_eventsadmin\error-images.php:12
actioninitadmin\import-list.php:14
actionadmin_initadmin\import-list.php:15
actionadmin_initadmin\import-list.php:16
actionadmin_headadmin\import-list.php:17
actionadmin_noticesadmin\import-list.php:18
actionwc_marketplace_suggestions_products_empty_stateadmin\import-list.php:19
filterhandmade_admin_ajax_eventsadmin\import-list.php:20
actionadmin_headadmin\imported.php:10
filterhandmade_admin_ajax_eventsadmin\imported.php:11
actionadmin_initadmin\log.php:8
actionadmin_enqueue_scriptsadmin\log.php:9
filterpost_row_actionsadmin\product.php:11
actionadd_meta_boxesadmin\product.php:12
actionadmin_enqueue_scriptsadmin\product.php:13
actiontransition_post_statusadmin\product.php:14
actiondeleted_postadmin\product.php:15
actionadmin_menuadmin\recommend.php:12
actionadmin_enqueue_scriptsadmin\recommend.php:13
actionadmin_noticesadmin\recommend.php:55
actionadmin_menuadmin\settings.php:11
filterset-screen-optionadmin\settings.php:12
actionadmin_initadmin\settings.php:13
actionadmin_enqueue_scriptsadmin\settings.php:14
filterwp_admin_css_uriadmin\settings.php:16
actionadmin_menuadmin\setup-wizard.php:14
actionadmin_headadmin\setup-wizard.php:15
actionbefore_woocommerce_inithandmade-dropshipping-for-etsy-and-woo.php:47
actionactivated_pluginhandmade-dropshipping-for-etsy-and-woo.php:48
actionplugins_loadedhandmade-dropshipping-for-etsy-and-woo.php:49
actionadmin_noticeshandmade-dropshipping-for-etsy-and-woo.php:102
actioninithandmade-dropshipping-for-etsy-and-woo.php:104
filtercron_schedulesincludes\background-process\wp-background-process.php:67
filterbig_image_size_thresholdincludes\functions.php:243
actionadmin_enqueue_scriptsincludes\support.php:32
actionadmin_noticesincludes\support.php:33
actionadmin_initincludes\support.php:34
actionadmin_menuincludes\support.php:35
filterplugin_row_metaincludes\support.php:37
actionadmin_initincludes\support.php:39
actionadmin_bar_menuincludes\support.php:41
actionadmin_noticesincludes\support.php:52
actionadmin_footerincludes\support.php:669
actionadmin_bar_menuincludes\support.php:807
actionadmin_noticesincludes\support.php:953
Maintenance & Trust

HANDMADE – Dropshipping for Etsy and WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 23, 2025
PHP min version7.0
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs40
Developer Profile

HANDMADE – Dropshipping for Etsy and WooCommerce Developer Profile

VillaTheme

58 plugins · 167K total installs

78
trust score
Avg Security Score
99/100
Avg Patch Time
214 days
View full developer profile
Detection Fingerprints

How We Detect HANDMADE – Dropshipping for Etsy and WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/handmade-dropshipping-for-etsy-and-woo/assets/css/admin.css/wp-content/plugins/handmade-dropshipping-for-etsy-and-woo/assets/css/frontend.css/wp-content/plugins/handmade-dropshipping-for-etsy-and-woo/assets/js/admin.js/wp-content/plugins/handmade-dropshipping-for-etsy-and-woo/assets/js/frontend.js/wp-content/plugins/handmade-dropshipping-for-etsy-and-woo/admin/assets/css/admin-style.css/wp-content/plugins/handmade-dropshipping-for-etsy-and-woo/admin/assets/js/admin-script.js
Script Paths
//cdn.villatheme.com/libs/jquery/3.6.0/jquery.min.js
Version Parameters
handmade-dropshipping-for-etsy-and-woo/assets/css/admin.css?ver=handmade-dropshipping-for-etsy-and-woo/assets/css/frontend.css?ver=handmade-dropshipping-for-etsy-and-woo/assets/js/admin.js?ver=handmade-dropshipping-for-etsy-and-woo/assets/js/frontend.js?ver=handmade-dropshipping-for-etsy-and-woo/admin/assets/css/admin-style.css?ver=handmade-dropshipping-for-etsy-and-woo/admin/assets/js/admin-script.js?ver=

HTML / DOM Fingerprints

CSS Classes
handmade-dropshipping-for-etsy-and-woohandmade_admin_formhandmade-page-titlehandmade-admin-notice
HTML Comments
<!-- MAIN WRAPPER FOR ETSY IMPORTER --><!-- END MAIN WRAPPER FOR ETSY IMPORTER --><!-- START HANDMADE ADMIN SIDEBAR --><!-- END HANDMADE ADMIN SIDEBAR -->+2 more
Data Attributes
data-handmade-product-iddata-handmade-action
JS Globals
handmade_dataHANDMADE_AdminHANDMADE_Frontend
REST Endpoints
/wp-json/handmade/v1/settings/wp-json/handmade/v1/import/wp-json/handmade/v1/sync
Shortcode Output
[handmade_import_button][handmade_sync_status][handmade_product_list]
FAQ

Frequently Asked Questions about HANDMADE – Dropshipping for Etsy and WooCommerce