Merchant Center Reviews for Woocommerce Security & Risk Analysis

wordpress.org/plugins/merchant-center-reviews-for-woocommerce

Merchant Center Reviews for WooCommerce automates the process of requesting reviews via Google Merchant Center, helping you collect valuable feedback.

300 active installs v1.0.8 PHP 7.4+ WP 5.8+ Updated Mar 20, 2025
customer-reviewsgoogle-reviewsmerchant-centerreviewswoocommerce
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Merchant Center Reviews for Woocommerce Safe to Use in 2026?

Generally Safe

Score 92/100

Merchant Center Reviews for Woocommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The "merchant-center-reviews-for-woocommerce" plugin v1.0.8 exhibits a strong security posture based on the provided static analysis and vulnerability history. The absence of dangerous functions, raw SQL queries, file operations, and external HTTP requests are excellent indicators of secure coding practices. Furthermore, the presence of nonce checks and a high percentage of properly escaped output minimize common web vulnerabilities. The complete lack of known CVEs and a clean vulnerability history suggest the developers are attentive to security and have historically maintained a secure codebase. The limited attack surface, primarily consisting of one shortcode with no readily apparent unprotected entry points, further strengthens this assessment.

Key Concerns

  • Capability checks are missing
  • Output escaping could be improved
Vulnerabilities
None known

Merchant Center Reviews for Woocommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Merchant Center Reviews for Woocommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
13
54 escaped
Nonce Checks
1
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

81% escaped67 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
brumigmcreview_settings_banner (wc-google-merchant-reviews.php:55)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Merchant Center Reviews for Woocommerce Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[gmc_review_badge] wc-google-merchant-reviews.php:489
WordPress Hooks 8
actionadmin_noticeswc-google-merchant-reviews.php:38
actionplugins_loadedwc-google-merchant-reviews.php:50
actionadmin_noticeswc-google-merchant-reviews.php:190
actionadmin_enqueue_scriptswc-google-merchant-reviews.php:207
actionadmin_initwc-google-merchant-reviews.php:372
actionadmin_menuwc-google-merchant-reviews.php:526
actionadmin_noticeswc-google-merchant-reviews.php:608
actionwp_enqueue_scriptswc-google-merchant-reviews.php:726
Maintenance & Trust

Merchant Center Reviews for Woocommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedMar 20, 2025
PHP min version7.4
Downloads1K

Community Trust

Rating100/100
Number of ratings1
Active installs300
Developer Profile

Merchant Center Reviews for Woocommerce Developer Profile

Brumisphère

1 plugin · 300 total installs

88
trust score
Avg Security Score
92/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Merchant Center Reviews for Woocommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/merchant-center-reviews-for-woocommerce/assets/icon-256x256.jpg/wp-content/plugins/merchant-center-reviews-for-woocommerce/assets/ic-brumisphere.webp

HTML / DOM Fingerprints

CSS Classes
brumi-review-bannerresponsive-blockleft-columnright-columnbrumi-plugin-imagebrumi-banner-h2brumi-banner-pbrumi-responsive-block-content+3 more
HTML Comments
<!-- Display an HTML Banner above the Plugin Settings Page --><!-- Translations --><!-- Prevent direct access to the file -->/* This program is free software; you can redistribute it and/or modify it under the terms of the GNU General Public License * as published by the Free Software Foundation; either version 2 of the License, or (at your option) any later version. * * This program is distributed in the hope that it will be useful, but WITHOUT ANY WARRANTY; without even the implied * warranty of MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU General Public License for more details. * * You should have received a copy of the GNU General Public License along with this program; if not, see * https://www.gnu.org/licenses/old-licenses/gpl-2.0.html. */+1 more
Data Attributes
altclasstitlehreftargetsrc
FAQ

Frequently Asked Questions about Merchant Center Reviews for Woocommerce