JCWT Order Timeline for WooCommerce Security & Risk Analysis

wordpress.org/plugins/jcwt-order-timeline-for-woocommerce

A lightweight, HPOS-compatible order tracking timeline for WooCommerce with caching and mobile-responsive design.

0 active installs v1.0.0 PHP 7.4+ WP 5.8+ Updated Jan 10, 2026
delivery-trackingorder-statusorder-trackingtimelinewoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is JCWT Order Timeline for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

JCWT Order Timeline for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The "jcwt-order-timeline-for-woocommerce" v1.0.0 plugin exhibits a strong security posture based on the provided static analysis results. It demonstrates excellent adherence to secure coding practices, with a very high percentage of SQL queries using prepared statements and nearly all output being properly escaped. The plugin also incorporates nonce and capability checks, and crucially, its sole AJAX handler is protected. The absence of file operations and external HTTP requests further reduces potential attack vectors.

The taint analysis reveals no critical or high-severity flows with unsanitized paths, and the vulnerability history is entirely clean, with zero known CVEs. This indicates a well-developed and secure plugin that has likely undergone thorough security review or has been maintained with security in mind.

Overall, this plugin presents a very low security risk. Its strengths lie in its diligent use of security best practices in its code, particularly regarding input sanitization and authorization for its entry points. The lack of past vulnerabilities reinforces this positive assessment. There are no discernible weaknesses or concerns arising from the provided data.

Vulnerabilities
None known

JCWT Order Timeline for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

JCWT Order Timeline for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
2
20 prepared
Unescaped Output
1
108 escaped
Nonce Checks
2
Capability Checks
5
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

91% prepared22 total queries

Output Escaping

99% escaped109 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
save_settings (includes\class-jcwtot-settings.php:55)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

JCWT Order Timeline for WooCommerce Attack Surface

Entry Points1
Unprotected0

AJAX Handlers 1

authwp_ajax_jcwtot_save_settingsincludes\class-jcwtot-settings.php:22
WordPress Hooks 14
actionadmin_menuincludes\class-jcwtot-admin.php:22
actionadmin_enqueue_scriptsincludes\class-jcwtot-admin.php:23
actionadmin_post_JCWTOT_clear_cacheincludes\class-jcwtot-admin.php:24
actionwoocommerce_order_status_changedincludes\class-jcwtot-cache.php:22
actionwp_enqueue_scriptsincludes\class-jcwtot-timeline.php:30
actionwoocommerce_order_tracking_resultincludes\class-jcwtot-timeline.php:33
actionwoocommerce_after_order_tracking_formincludes\class-jcwtot-timeline.php:34
filterwoocommerce_shortcode_track_order_outputincludes\class-jcwtot-timeline.php:35
actionwoocommerce_view_orderincludes\class-jcwtot-timeline.php:36
actionadmin_noticesjcwt-order-timeline-for-woocommerce.php:82
actionadmin_noticesjcwt-order-timeline-for-woocommerce.php:97
actionplugins_loadedjcwt-order-timeline-for-woocommerce.php:116
actionadmin_initjcwt-order-timeline-for-woocommerce.php:133
actionbefore_woocommerce_initjcwt-order-timeline-for-woocommerce.php:143
Maintenance & Trust

JCWT Order Timeline for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedJan 10, 2026
PHP min version7.4
Downloads117

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

JCWT Order Timeline for WooCommerce Developer Profile

JC Web Technologies

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect JCWT Order Timeline for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/jcwt-order-timeline-for-woocommerce/assets/css/jcwt-order-timeline-admin.css/wp-content/plugins/jcwt-order-timeline-for-woocommerce/assets/js/jcwt-order-timeline-admin.js/wp-content/plugins/jcwt-order-timeline-for-woocommerce/assets/css/jcwt-order-timeline-frontend.css/wp-content/plugins/jcwt-order-timeline-for-woocommerce/assets/js/jcwt-order-timeline-frontend.js
Script Paths
/wp-content/plugins/jcwt-order-timeline-for-woocommerce/assets/js/jcwt-order-timeline-admin.js/wp-content/plugins/jcwt-order-timeline-for-woocommerce/assets/js/jcwt-order-timeline-frontend.js
Version Parameters
jcwt-order-timeline-for-woocommerce/assets/css/jcwt-order-timeline-admin.css?ver=jcwt-order-timeline-for-woocommerce/assets/js/jcwt-order-timeline-admin.js?ver=jcwt-order-timeline-for-woocommerce/assets/css/jcwt-order-timeline-frontend.css?ver=jcwt-order-timeline-for-woocommerce/assets/js/jcwt-order-timeline-frontend.js?ver=

HTML / DOM Fingerprints

CSS Classes
jcwt-order-timeline-admin-wrapjcwt-order-timeline-frontendjcwt-order-timeline-item
HTML Comments
<!-- JCWT Order Timeline Admin Menu --><!-- JCWT Order Timeline Frontend Wrapper --><!-- JCWT Order Timeline Item -->
Data Attributes
data-jcwtot-admin-pagedata-jcwtot-order-id
JS Globals
JCWTOT_AdminJCWTOT_Frontend
FAQ

Frequently Asked Questions about JCWT Order Timeline for WooCommerce