Login for Stripe Customer Portal | Create an Account Login Page for the Stripe Customer Portal Security & Risk Analysis

wordpress.org/plugins/login-stripe-customer-portal

Create a customer login page for the Stripe Customer Portal directly from your WordPress site.

10 active installs v1.0.4 PHP 7.0+ WP 5.0+ Updated Dec 16, 2025
accountcustomerloginportalstripe
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Login for Stripe Customer Portal | Create an Account Login Page for the Stripe Customer Portal Safe to Use in 2026?

Generally Safe

Score 100/100

Login for Stripe Customer Portal | Create an Account Login Page for the Stripe Customer Portal has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3mo ago
Risk Assessment

The 'login-stripe-customer-portal' plugin, version 1.0.4, exhibits a generally strong security posture based on the provided static analysis and vulnerability history. The absence of known CVEs and common vulnerability types in its history suggests a history of secure development or a lack of publicly disclosed issues, which is a positive indicator. Static analysis reveals excellent practices in several key areas. Specifically, the plugin utilizes prepared statements exclusively for all SQL queries, has no reported file operations or external HTTP requests, and properly escapes all identified output, preventing common cross-site scripting (XSS) vulnerabilities. The presence of a nonce check on its single entry point (shortcode) is also commendable. However, there are a couple of areas that slightly temper this otherwise positive assessment. The lack of capability checks on the shortcode handler is a potential concern, as it means that any user, regardless of their role or permissions, could potentially interact with the Stripe customer portal functionality. Additionally, while not explicitly flagged as a vulnerability, the plugin bundles the Freemius v1.0 and Stripe PHP libraries. The security of these bundled libraries is crucial, and if they are outdated, they could introduce vulnerabilities that are not directly attributable to the plugin's own code. Overall, the plugin demonstrates good coding hygiene, but the absence of capability checks on its entry point warrants attention.

Key Concerns

  • Missing capability checks on shortcode
  • Bundled Freemius v1.0 library may be outdated
  • Bundled Stripe PHP library may be outdated
Vulnerabilities
None known

Login for Stripe Customer Portal | Create an Account Login Page for the Stripe Customer Portal Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Login for Stripe Customer Portal | Create an Account Login Page for the Stripe Customer Portal Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
23 escaped
Nonce Checks
1
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
2

Bundled Libraries

Freemius1.0Stripe PHP

Output Escaping

100% escaped23 total outputs
Attack Surface

Login for Stripe Customer Portal | Create an Account Login Page for the Stripe Customer Portal Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[login-stripe-customer-portal] login-stripe-customer-portal.php:446
WordPress Hooks 5
actionadmin_menulogin-stripe-customer-portal.php:53
actionadmin_initlogin-stripe-customer-portal.php:54
actioninitlogin-stripe-customer-portal.php:55
actioninitlogin-stripe-customer-portal.php:58
actiontemplate_redirectlogin-stripe-customer-portal.php:59
Maintenance & Trust

Login for Stripe Customer Portal | Create an Account Login Page for the Stripe Customer Portal Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 16, 2025
PHP min version7.0
Downloads1K

Community Trust

Rating100/100
Number of ratings2
Active installs10
Developer Profile

Login for Stripe Customer Portal | Create an Account Login Page for the Stripe Customer Portal Developer Profile

Brandon Ernst

7 plugins · 11K total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
11 days
View full developer profile
Detection Fingerprints

How We Detect Login for Stripe Customer Portal | Create an Account Login Page for the Stripe Customer Portal

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/login-stripe-customer-portal/assets/css/customer-portal.css/wp-content/plugins/login-stripe-customer-portal/assets/js/customer-portal.js
Version Parameters
login-stripe-customer-portal/assets/css/customer-portal.css?ver=login-stripe-customer-portal/assets/js/customer-portal.js?ver=

HTML / DOM Fingerprints

HTML Comments
<!-- Settings page content --><!-- Input for Stripe Secret Key --><!-- Input for Redirect URL --><!-- Input for Customer Portal Slug -->+2 more
Data Attributes
name="lscp_stripe_api_key"name="lscp_stripe_api_keylscp_stripe_redirect_url"name="lscp_stripe_endpoint_slug"name="lscp_stripe_validate_existing_customers"value="1"
FAQ

Frequently Asked Questions about Login for Stripe Customer Portal | Create an Account Login Page for the Stripe Customer Portal