
Monnify Official Security & Risk Analysis
wordpress.org/plugins/monnify-officialMonnify Official WooCommerce Payment Gateway plugin provides a seamless payment experience for your customers on your WordPress website.
Is Monnify Official Safe to Use in 2026?
Generally Safe
Score 100/100Monnify Official has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "monnify-official" v1.0.3 plugin exhibits a generally good security posture based on the provided static analysis. The plugin demonstrates strong adherence to secure coding practices by not exposing any AJAX handlers or REST API routes without proper authentication checks, and it avoids using shortcodes or cron events. The code also shows positive signs with 100% of SQL queries utilizing prepared statements, which is a critical defense against SQL injection. However, a notable concern arises from the taint analysis, which identified 2 flows with unsanitized paths. While no critical or high severity issues were flagged in the taint analysis, these unsanitized paths still represent potential entry points for malicious data to be processed without adequate validation, which could lead to unexpected behavior or further vulnerabilities if exploited in conjunction with other factors.
The plugin's vulnerability history is clean, with no recorded CVEs. This suggests a history of stable and relatively secure development. Despite the positive history, the presence of unsanitized paths in the taint analysis warrants attention. The plugin's strengths lie in its minimal attack surface and secure handling of database interactions. The primary weakness, as indicated by the taint analysis, is the need for better sanitization of input paths. Overall, the plugin is likely secure for general use, but the identified taint flows are a point of concern that should be addressed to further harden its security.
Key Concerns
- Unsanitized paths in taint analysis
- Low percentage of properly escaped output
- File operations detected
- External HTTP requests detected
Monnify Official Security Vulnerabilities
Monnify Official Release Timeline
Monnify Official Code Analysis
Output Escaping
Data Flow Analysis
Monnify Official Attack Surface
WordPress Hooks 10
Maintenance & Trust
Monnify Official Maintenance & Trust
Maintenance Signals
Community Trust
Monnify Official Alternatives
Up2pay e-Transactions WooCommerce Payment Gateway
e-transactions-wc
This plugin is a Up2pay e-Transactions payment gateway for WooCommerce 4.x
HyperPay Payments
hyperpay-gateways
Payments Gateways provided by Gate2Play, to make you able to add Credit Card, Mada, STCpay and more payments method.
BORICA Payments by BORICA AD
borica-payments
Simple way of receiving debit and credit card payments by virtual POS.
Paybox WooCommerce Payment Gateway
paybox-woocommerce-gateway
This plugin is a Paybox payment gateway for WooCommerce 4.x
KueskiPay Gateway
kueskipay-gateway
Add Kueski gateway to buy now and pay later on your store.
Monnify Official Developer Profile
1 plugin · 100 total installs
How We Detect Monnify Official
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/monnify-official/assets/css/style.css/wp-content/plugins/monnify-official/assets/js/main.js/wp-content/plugins/monnify-official/assets/js/checkout.js/wp-content/plugins/monnify-official/assets/js/main.js/wp-content/plugins/monnify-official/assets/js/checkout.jsmonnify-official/assets/css/style.css?ver=monnify-official/assets/js/main.js?ver=monnify-official/assets/js/checkout.js?ver=HTML / DOM Fingerprints
monnify-payment-gatewaydata-monnify-public-keydata-monnify-secret-keydata-monnify-contract-codemonnify