
Instant Crypto Payments Security & Risk Analysis
wordpress.org/plugins/icpay-paymentsAccept crypto payments (ICP, Bitcoin, stablecoins) with Instant Crypto Payments. Charity, donations, paywall, tips, webhooks, sync, reports.
Is Instant Crypto Payments Safe to Use in 2026?
Generally Safe
Score 100/100Instant Crypto Payments has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'icpay-payments' plugin v1.3.8 exhibits a generally good security posture based on the provided static analysis. The absence of dangerous functions, file operations, and critical or high severity taint flows indicates a strong adherence to secure coding practices. The plugin also demonstrates a commendable use of prepared statements for SQL queries (69%) and proper output escaping (84%). The lack of any recorded CVEs further bolsters confidence in its current security standing, suggesting a history of responsible development and patching.
However, there are areas for improvement. The presence of one REST API route without a permission callback represents a significant attack vector, as it is directly exposed and can be accessed without proper authentication. While the total number of entry points is relatively low, this single unprotected endpoint warrants immediate attention. The relatively low number of nonce and capability checks (5 and 4 respectively) across the identified entry points, especially given the plugin's purpose, could also indicate potential weaknesses if these checks are not consistently applied to all sensitive operations.
In conclusion, the 'icpay-payments' plugin v1.3.8 is strong in its general secure coding practices and has a clean vulnerability history. The primary concern is the single unprotected REST API endpoint, which introduces a tangible risk. Addressing this specific vulnerability and potentially increasing the rigor of authentication and authorization checks across other entry points would further enhance its security.
Key Concerns
- Unprotected REST API route
- SQL queries not using prepared statements (31%)
- Outputs not properly escaped (16%)
Instant Crypto Payments Security Vulnerabilities
Instant Crypto Payments Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Instant Crypto Payments Attack Surface
REST API Routes 1
Shortcodes 7
WordPress Hooks 12
Maintenance & Trust
Instant Crypto Payments Maintenance & Trust
Maintenance Signals
Community Trust
Instant Crypto Payments Alternatives
elegro Crypto Payment
elegro-payment
Increase your customers base by accepting cryptocurrencies.
NOWPayments for WooCommerce – Crypto Payment Gateway
nowpayments-for-woocommerce
Accept Bitcoin, Ethereum, and 300+ cryptocurrencies in WooCommerce using the official NOWPayments crypto payment gateway.
Cryptocurrency Widgets For Elementor
cryptocurrency-widgets-for-elementor
Easily display cryptocurrency prices and generate customizable widgets for 250+ coins, including Bitcoin, Ethereum, and more in Elementor.
BinancePay Checkout for WooCommerce
binance-pay
Binance Pay Checkout for WooCommerce.
Cryptocurrency Payment Gateway
cryptocurrency-payment-gateway
Digital Currency Payment Gateway for WooCommerce. Easily accept Bitcoin, Bitcoin Cash, Litecoin, Dogecoin, and more in your store.
Instant Crypto Payments Developer Profile
2 plugins · 0 total installs
How We Detect Instant Crypto Payments
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/icpay-payments/assets/css/icpay-frontend.css/wp-content/plugins/icpay-payments/assets/js/icpay-frontend.min.js/wp-content/plugins/icpay-payments/assets/js/icpay-embed.min.js/wp-content/plugins/icpay-payments/assets/js/icpay-frontend.min.js/wp-content/plugins/icpay-payments/assets/js/icpay-embed.min.jsicpay-payments/assets/css/icpay-frontend.css?ver=icpay-payments/assets/js/icpay-frontend.min.js?ver=icpay-payments/assets/js/icpay-embed.min.js?ver=HTML / DOM Fingerprints
icpay-widget-wrappericpay-button-wrappericpay-pay-button<!-- ICPay Widget --><!-- ICPay Pay Button --><!-- ICPay Tip Jar --><!-- ICPay Paywall -->+1 moredata-icpay-tabICPayFrontendicpay_frontend_params[icpay_pay_button][icpay_tip_jar][icpay_paywall][icpay_ecommerce_widget]