Hertwill – EU and US Dropshipping Security & Risk Analysis

wordpress.org/plugins/hertwill

Dropship high-quality products from European and US suppliers with the first premium dropshipping app.

100 active installs v1.1.3 PHP 7.4+ WP 6.3+ Updated Jul 1, 2025
dropshippingecommercefulfillmentwoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Hertwill – EU and US Dropshipping Safe to Use in 2026?

Generally Safe

Score 100/100

Hertwill – EU and US Dropshipping has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 9mo ago
Risk Assessment

The static analysis of the 'hertwill' plugin v1.1.3 reveals a remarkably clean codebase with no immediately identifiable vulnerabilities. The absence of dangerous functions, file operations, external HTTP requests, and a complete lack of SQL injection risks due to prepared statements are significant strengths. Furthermore, all identified output is properly escaped, mitigating cross-site scripting (XSS) risks. The plugin also demonstrates a strong adherence to security best practices by implementing nonce and capability checks where applicable, though the data indicates none are present, which in this context is good as there are no apparent entry points requiring them.

The vulnerability history for 'hertwill' is equally impressive, with zero recorded CVEs. This suggests a mature and well-maintained plugin, or one that has historically avoided critical security flaws. The lack of any recorded vulnerability patterns further reinforces this positive outlook.

However, it is crucial to acknowledge that the static analysis reports zero entry points (AJAX, REST API, shortcodes, cron events). If this is truly the case, the plugin has an extremely limited attack surface. While this is a positive finding from a security perspective, it's unusual for a plugin to have absolutely no interaction points, which warrants further investigation in a real-world scenario. Assuming the analysis is accurate, the current security posture is excellent.

Vulnerabilities
None known

Hertwill – EU and US Dropshipping Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Hertwill – EU and US Dropshipping Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
2 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped2 total outputs
Attack Surface

Hertwill – EU and US Dropshipping Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 4
actionadmin_menuoptions.php:11
actionadmin_enqueue_scriptsoptions.php:12
actionwoocommerce_product_options_inventory_product_dataoptions.php:14
actionadmin_noticesoptions.php:17
Maintenance & Trust

Hertwill – EU and US Dropshipping Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedJul 1, 2025
PHP min version7.4
Downloads5K

Community Trust

Rating98/100
Number of ratings12
Active installs100
Developer Profile

Hertwill – EU and US Dropshipping Developer Profile

Hertwill

1 plugin · 100 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Hertwill – EU and US Dropshipping

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/hertwill/admin/css/whw-admin.css
Version Parameters
hertwill/admin/css/whw-admin.css?ver=

HTML / DOM Fingerprints

CSS Classes
wc_input_price
Data Attributes
readonly
FAQ

Frequently Asked Questions about Hertwill – EU and US Dropshipping