Kwik Delivery for Woocommerce Security & Risk Analysis

wordpress.org/plugins/kwik-delivery-for-wcommerce

A Kwik Delivery integration for Woocommerce, including real time shipping rates, order scheduling and tracking updates.

30 active installs v2.2.6 PHP 7.2+ WP 5.6+ Updated Oct 30, 2025
deliveryecommercekwik-deliveryshipping
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Kwik Delivery for Woocommerce Safe to Use in 2026?

Generally Safe

Score 100/100

Kwik Delivery for Woocommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5mo ago
Risk Assessment

The static analysis of "kwik-delivery-for-wcommerce" v2.2.6 reveals a generally positive security posture with no identified vulnerabilities in its attack surface, code signals, or taint analysis. The absence of dangerous functions, raw SQL queries, file operations, and critical taint flows indicates a commitment to secure coding practices. The high percentage of properly escaped output also contributes to a reduced risk of cross-site scripting (XSS) vulnerabilities.

However, there are a few areas that warrant attention. The presence of external HTTP requests without further context on their purpose and security is a minor concern. While the plugin has a clean vulnerability history with zero recorded CVEs, this could be due to its relatively small scope or limited historical analysis. The complete lack of capability checks on its (currently non-existent) entry points is a potential weakness, as it means any future additions to the attack surface might be exposed without proper access controls.

Overall, the plugin appears to be well-secured based on the provided static analysis and vulnerability history. The current risk is very low. The main areas for potential improvement would involve better context for external HTTP requests and ensuring robust capability checks if the attack surface expands. The absence of any detected vulnerabilities is a strong positive indicator.

Key Concerns

  • External HTTP requests without context
  • No capability checks on entry points
Vulnerabilities
None known

Kwik Delivery for Woocommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Kwik Delivery for Woocommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
2
14 escaped
Nonce Checks
1
Capability Checks
0
File Operations
0
External Requests
2
Bundled Libraries
0

Output Escaping

88% escaped16 total outputs
Attack Surface

Kwik Delivery for Woocommerce Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 20
actionwoocommerce_order_status_processingclass-wc-kwik-delivery.php:109
actionwoocommerce_shipping_initclass-wc-kwik-delivery.php:112
actionwoocommerce_order_status_cancelledclass-wc-kwik-delivery.php:115
actionwoocommerce_order_details_after_order_tableclass-wc-kwik-delivery.php:118
actionadmin_enqueue_scriptsclass-wc-kwik-delivery.php:121
actionadmin_footerclass-wc-kwik-delivery.php:124
filterwoocommerce_cart_shipping_method_full_labelclass-wc-kwik-delivery.php:130
filterwoocommerce_checkout_fieldsclass-wc-kwik-delivery.php:132
filterwoocommerce_shipping_methodsclass-wc-kwik-delivery.php:134
filterwoocommerce_shipping_calculator_enable_cityclass-wc-kwik-delivery.php:136
filterwoocommerce_shipping_calculator_enable_postcodeclass-wc-kwik-delivery.php:138
actionadmin_footer-edit.phpincludes\class-wc-kd-orders.php:29
actionload-edit.phpincludes\class-wc-kd-orders.php:30
actionadd_meta_boxesincludes\class-wc-kd-orders.php:33
actionwoocommerce_order_action_wc_kwik_delivery_update_statusincludes\class-wc-kd-orders.php:42
filterwoocommerce_order_actionsincludes\class-wc-kd-orders.php:45
actionadmin_initkwik-delivery-for-wcommerce.php:85
actionadmin_initkwik-delivery-for-wcommerce.php:86
actionadmin_noticeskwik-delivery-for-wcommerce.php:87
actionplugins_loadedkwik-delivery-for-wcommerce.php:91
Maintenance & Trust

Kwik Delivery for Woocommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedOct 30, 2025
PHP min version7.2
Downloads4K

Community Trust

Rating46/100
Number of ratings3
Active installs30
Developer Profile

Kwik Delivery for Woocommerce Developer Profile

Romain POIROT-LELLIG

1 plugin · 30 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Kwik Delivery for Woocommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/kwik-delivery-for-wcommerce/assets/css/checkout.css/wp-content/plugins/kwik-delivery-for-wcommerce/assets/js/checkout.js
Script Paths
/wp-content/plugins/kwik-delivery-for-wcommerce/assets/js/checkout.js
Version Parameters
kwik-delivery-for-wcommerce/assets/css/checkout.css?ver=kwik-delivery-for-wcommerce/assets/js/checkout.js?ver=

HTML / DOM Fingerprints

CSS Classes
kw-delivery-checkout-wrap
Data Attributes
data-kw-delivery-input
JS Globals
kw_delivery_checkout_params
FAQ

Frequently Asked Questions about Kwik Delivery for Woocommerce