Receive customer payments on Woocommerce Security & Risk Analysis

wordpress.org/plugins/momo-venmo

Receive Venmo payments on your website with WooCommerce + Venmo

2K active installs v5.1.4 PHP 5.0+ WP 5.0+ Updated Jul 7, 2025
money-transferpaymentspaypalvenmowoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Receive customer payments on Woocommerce Safe to Use in 2026?

Generally Safe

Score 100/100

Receive customer payments on Woocommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 9mo ago
Risk Assessment

The 'momo-venmo' plugin version 5.1.4 exhibits a generally strong security posture based on the provided static analysis. The absence of any detected attack surface entry points without authentication, such as unprotected AJAX handlers or REST API routes, is a significant positive. Furthermore, the code's adherence to secure practices is indicated by the high percentage of properly escaped output, the exclusive use of prepared statements for SQL queries, and the presence of nonce and capability checks, suggesting a deliberate effort to prevent common web vulnerabilities. The lack of any recorded vulnerabilities or CVEs further reinforces this impression of a well-maintained and secure plugin.

However, the presence of three external HTTP requests warrants a closer look. While not inherently insecure, these requests represent potential vectors for attackers to exploit if the external services themselves are compromised or if the plugin does not handle the responses securely. The use of a bundled library, Freemius v1.0, could also be a point of concern if this library is outdated and has known vulnerabilities, though no such information is provided. Despite these minor points, the plugin demonstrates a robust foundation for security.

Key Concerns

  • External HTTP requests present
  • Bundled library could be outdated
Vulnerabilities
None known

Receive customer payments on Woocommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Receive customer payments on Woocommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
1
186 escaped
Nonce Checks
4
Capability Checks
1
File Operations
0
External Requests
3
Bundled Libraries
1

Bundled Libraries

Freemius1.0

Output Escaping

99% escaped187 total outputs
Attack Surface

Receive customer payments on Woocommerce Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 22
actionadmin_menuincludes\admin\dashboard.php:127
actionadmin_menuincludes\admin\dashboard.php:211
actionwp_enqueue_scriptsincludes\class-wc_venmo_gateway.php:255
actionwoocommerce_checkout_order_processedincludes\class-wc_venmo_gateway.php:258
actionwoocommerce_email_order_detailsincludes\class-wc_venmo_gateway.php:265
actionwoocommerce_blocks_loadedincludes\class-wc_venmo_gateway.php:272
actionwoocommerce_blocks_payment_method_type_registrationincludes\class-wc_venmo_gateway.php:278
actionwp_enqueue_scriptsincludes\class-wc_venmo_pay_gateway.php:149
actionwoocommerce_checkout_order_processedincludes\class-wc_venmo_pay_gateway.php:152
actioninitincludes\class-wc_venmo_update_order.php:8
actionrest_api_initincludes\class-wc_venmo_update_order.php:9
actionadmin_noticesincludes\notifications\sms.php:8
actionadmin_noticesincludes\notifications\woocommerce.php:4
filterconnect_urlvenmo.php:95
filterafter_skip_urlvenmo.php:96
filterafter_connect_urlvenmo.php:97
filterafter_pending_connect_urlvenmo.php:98
actioninitvenmo.php:104
actionadmin_enqueue_scriptsvenmo.php:116
filterwoocommerce_payment_gatewaysvenmo.php:131
actionbefore_woocommerce_initvenmo.php:141
actionplugins_loadedvenmo.php:146
Maintenance & Trust

Receive customer payments on Woocommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedJul 7, 2025
PHP min version5.0
Downloads43K

Community Trust

Rating100/100
Number of ratings1
Active installs2K
Developer Profile

Receive customer payments on Woocommerce Developer Profile

The African Boss

6 plugins · 8K total installs

81
trust score
Avg Security Score
90/100
Avg Patch Time
66 days
View full developer profile
Detection Fingerprints

How We Detect Receive customer payments on Woocommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/momo-venmo/assets/css/bootstrap.min.css

HTML / DOM Fingerprints

HTML Comments
<!-- Reach out to The African Boss for website and mobile app development services at the africanboss@gmail.com --><!-- or at www.TheAfricanBoss.com or download our app at www.TheAfricanBoss.com/app --><!-- If you are using this version, please send us some feedback --><!-- via email at theafricanboss@gmail.com on your thoughts and what you would like improved -->+1 more
Data Attributes
data-freemius-id="9195"data-freemius-slug="momo-venmo"data-freemius-premium-slug="wc-venmo-pro"
JS Globals
window.venmo_fs
FAQ

Frequently Asked Questions about Receive customer payments on Woocommerce