
InPost PL Security & Risk Analysis
wordpress.org/plugins/inpost-for-woocommerceInPost PL dla WooCommerce to dedykowana wtyczka do integracji, stworzona z myślą o małych i średnich firmach, które chcą w szybki i wygodny sposób zin …
Is InPost PL Safe to Use in 2026?
Generally Safe
Score 100/100InPost PL has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "inpost-for-woocommerce" plugin v1.8.4 exhibits a mixed security posture. On the positive side, it demonstrates good practices by utilizing prepared statements for all SQL queries and a high percentage of properly escaped output. The absence of known CVEs and consistently low or non-existent recorded vulnerabilities in its history suggest a generally well-maintained codebase. However, there are areas of concern that warrant attention. The presence of two AJAX handlers without authentication checks presents a potential attack vector. While the taint analysis did not reveal critical or high-severity issues, the existence of a flow with an unsanitized path, even if not classified as critical, indicates a potential for subtle vulnerabilities. The function `unserialize` is also flagged as a dangerous function, and while its usage isn't explicitly detailed as a vulnerability here, it's a function that historically has been associated with security risks if not handled with extreme care. Overall, the plugin is reasonably secure due to its good database practices and lack of historical exploits, but the unprotected AJAX endpoints and the identified unsanitized path flow represent immediate risks that should be addressed.
Key Concerns
- AJAX handlers without authentication checks
- Flows with unsanitized paths
- Presence of dangerous function: unserialize
InPost PL Security Vulnerabilities
InPost PL Code Analysis
Dangerous Functions Found
SQL Query Safety
Output Escaping
Data Flow Analysis
InPost PL Attack Surface
AJAX Handlers 8
REST API Routes 1
Shortcodes 1
WordPress Hooks 81
Scheduled Events 21
Maintenance & Trust
InPost PL Maintenance & Trust
Maintenance Signals
Community Trust
InPost PL Alternatives
Inpost International
inpost-international
InPost International is the official free InPost app for international delivery services.
Inpost Paczkomaty
inpost-paczkomaty
Umożliwia dodanie Paczkomaty Inpost jako forma dostawy produktów. Zawiera mapkę gdzie można wybrać paczkomat w którym chce się odebrać przesyłkę.
Apaczka: integracja z WooCommerce
apaczka-pl
Zarządzaj wysyłkami różnych kurierów w jednym miejscu
MultiParcels Shipping For WooCommerce
multiparcels-shipping-for-woocommerce
Easiest, fastest and the cheapest way to integrate couriers with all deliveries methods to send parcels with just a few button clicks.
BLPaczka
blpaczka
English below. BLPaczka to wtyczka WooCommerce integrująca z BLPaczka, oferująca szeroki wybór przewoźników i punktów nadawczych dla łatwego zarządzan …
InPost PL Developer Profile
7 plugins · 17K total installs
How We Detect InPost PL
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/inpost-for-woocommerce/assets/css/easypack-admin.css/wp-content/plugins/inpost-for-woocommerce/assets/css/easypack-frontend.css/wp-content/plugins/inpost-for-woocommerce/assets/js/easypack-admin.js/wp-content/plugins/inpost-for-woocommerce/assets/js/easypack-checkout.js/wp-content/plugins/inpost-for-woocommerce/assets/js/easypack-frontend.jsinpost-for-woocommerce/assets/css/easypack-admin.css?ver=inpost-for-woocommerce/assets/css/easypack-frontend.css?ver=inpost-for-woocommerce/assets/js/easypack-admin.js?ver=inpost-for-woocommerce/assets/js/easypack-checkout.js?ver=inpost-for-woocommerce/assets/js/easypack-frontend.js?ver=HTML / DOM Fingerprints
easypack-checkout-wrapeasypack-shipping-locationseasypack-map-containereasypack-parcel-machine-listeasypack-parcel-machine-itemeasypack-shipping-method-optionseasypack-admin-settings-wrapeasypack-order-meta-box+5 more<!-- EasyPack settings --><!-- EasyPack checkout settings --><!-- EasyPack order meta box --><!-- InPost shipment details -->data-easypack-map-optionsdata-easypack-selected-locationdata-inpost-api-keydata-order-iddata-shipment-ideasypack_varsEasyPackCheckout/wp-json/easypack/v1/get-parcel-machines/wp-json/easypack/v1/create-shipment/wp-json/easypack/v1/get-shipment-status[easypack_shipping_calculator][easypack_tracking_widget]