Customize My Account for WooCommerce – Dashboard, Endpoints & Design Security & Risk Analysis

wordpress.org/plugins/my-account-customize-for-wp

Easily customize the WooCommerce My Account page. Edit custom endpoints, redesign the WooCommerce dashboard, manage menus, and apply premium styles.

500 active installs v1.1.5 PHP 7.0+ WP 5.0+ Updated Apr 8, 2026
customizedashboardendpointsmy-accountwoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Customize My Account for WooCommerce – Dashboard, Endpoints & Design Safe to Use in 2026?

Generally Safe

Score 100/100

Customize My Account for WooCommerce – Dashboard, Endpoints & Design has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The plugin "my-account-customize-for-wp" v1.1.2 exhibits a generally strong security posture based on the provided static analysis. The absence of any identified AJAX handlers, REST API routes, shortcodes, or cron events with unprotected entry points is a significant strength, indicating a very limited attack surface. Furthermore, the code demonstrates good development practices by having 100% of its outputs properly escaped and 67% of its SQL queries utilizing prepared statements, mitigating common injection vulnerabilities.

However, the static analysis does reveal some areas that warrant attention. The fact that there are 3 SQL queries in total, even with a majority using prepared statements, suggests that not all database interactions are being handled with the highest level of security. More importantly, the presence of only one nonce check across the entire codebase is a concern, especially given the lack of capability checks. This leaves potential entry points vulnerable to CSRF attacks if any unauthenticated actions were to be introduced in future updates or if an unforeseen vulnerability exists that bypasses the current lack of exposed entry points.

The plugin's vulnerability history is completely clean, with no recorded CVEs. This is a very positive indicator of a well-maintained and secure codebase. The lack of common vulnerability types further reinforces this. In conclusion, while the plugin is currently very secure due to its limited attack surface and good output escaping, the minimal nonce checks and the presence of raw SQL queries, even if in the minority, represent minor weaknesses that could be exploited in conjunction with other factors or future modifications. The overall risk is low.

Key Concerns

  • 3 SQL queries, only 67% prepared
  • Only 1 nonce check
  • 0 capability checks
Vulnerabilities
None known

Customize My Account for WooCommerce – Dashboard, Endpoints & Design Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Customize My Account for WooCommerce – Dashboard, Endpoints & Design Release Timeline

v1.1.5Current
v1.1.4
v1.1.3
v1.1.2
v1.1.1
Code Analysis
Analyzed Mar 16, 2026

Customize My Account for WooCommerce – Dashboard, Endpoints & Design Code Analysis

Dangerous Functions
0
Raw SQL Queries
1
2 prepared
Unescaped Output
0
138 escaped
Nonce Checks
1
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

67% prepared3 total queries

Output Escaping

100% escaped138 total outputs
Attack Surface

Customize My Account for WooCommerce – Dashboard, Endpoints & Design Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 7
actionplugins_loadedincludes\class-cits-customize-woocommerce-my-account-page.php:142
actionadmin_enqueue_scriptsincludes\class-cits-customize-woocommerce-my-account-page.php:157
actionadmin_enqueue_scriptsincludes\class-cits-customize-woocommerce-my-account-page.php:158
actionadmin_menuincludes\class-cits-customize-woocommerce-my-account-page.php:160
actionwp_enqueue_scriptsincludes\class-cits-customize-woocommerce-my-account-page.php:175
actionwp_enqueue_scriptsincludes\class-cits-customize-woocommerce-my-account-page.php:176
filterwoocommerce_locate_templatemy-account-customize-for-wp.php:90
Maintenance & Trust

Customize My Account for WooCommerce – Dashboard, Endpoints & Design Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedApr 8, 2026
PHP min version7.0
Downloads5K

Community Trust

Rating100/100
Number of ratings3
Active installs500
Developer Profile

Customize My Account for WooCommerce – Dashboard, Endpoints & Design Developer Profile

Coder IT Solution

2 plugins · 530 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Customize My Account for WooCommerce – Dashboard, Endpoints & Design

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/my-account-customize-for-wp/admin/css/cits-customize-woocommerce-my-account-page-admin.css/wp-content/plugins/my-account-customize-for-wp/admin/js/cits-customize-woocommerce-my-account-page-admin.js
Script Paths
/wp-content/plugins/my-account-customize-for-wp/admin/js/cits-customize-woocommerce-my-account-page-admin.js
Version Parameters
cits-customize-woocommerce-my-account-page-admin.css?ver=cits-customize-woocommerce-my-account-page-admin.js?ver=

HTML / DOM Fingerprints

CSS Classes
cits_custom_woo_my_account_table_funccits_customize_woocommerce_my_account_page_activatorcits_my_account_customize_action_linkscits_custom_woo_dashboardcits_customize_woocommerce_my_account_page_deactivatecits_customize_woocommerce_my_account_page_runCits_Customize_Woocommerce_My_Account_Page_Admincits_customize_woocommerce_my_account_page_admin
Data Attributes
cits_woocommerce_options
FAQ

Frequently Asked Questions about Customize My Account for WooCommerce – Dashboard, Endpoints & Design