
MyPayKit – Payment Forms for Square Security & Risk Analysis
wordpress.org/plugins/mypaykit-payment-forms-for-squareCreate professional payment forms and accept Square payments in minutes. Simple setup, secure processing.
Is MyPayKit – Payment Forms for Square Safe to Use in 2026?
Generally Safe
Score 100/100MyPayKit – Payment Forms for Square has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The mypaykit-payment-forms-for-square plugin version 1.0.8 exhibits a generally strong security posture based on the provided static analysis. The absence of any known vulnerabilities (CVEs) and no critical or high-severity findings in the taint analysis are significant positive indicators. Furthermore, the plugin demonstrates good practices with 100% of SQL queries using prepared statements, a high rate of output escaping (89%), and the presence of nonce and capability checks on several entry points. The limited attack surface, with only 2 total entry points and none identified as unprotected, further contributes to its good standing.
However, there are minor areas for improvement. While the number of AJAX handlers is low and none are reported as unprotected, the existence of one AJAX handler without an explicit mention of an authorization check in the 'Unprotected' count, coupled with only 3 capability checks across all entry points, suggests a potential for privilege escalation if specific endpoints are not adequately protected. The 8 external HTTP requests, while not inherently a vulnerability, represent a potential attack vector if the remote endpoints are compromised or if the data sent to them is not properly sanitized. Overall, the plugin appears to be well-developed with a focus on secure coding, but a deeper review of the access controls on its entry points could further enhance its security.
Key Concerns
- Potential for inadequate auth on AJAX entry points
- External HTTP requests present potential vector
MyPayKit – Payment Forms for Square Security Vulnerabilities
MyPayKit – Payment Forms for Square Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
MyPayKit – Payment Forms for Square Attack Surface
AJAX Handlers 1
Shortcodes 1
WordPress Hooks 12
Maintenance & Trust
MyPayKit – Payment Forms for Square Maintenance & Trust
Maintenance Signals
Community Trust
MyPayKit – Payment Forms for Square Alternatives
WooCommerce PayPal Payments
woocommerce-paypal-payments
PayPal's latest payment processing solution. Accept PayPal, Pay Later, credit/debit cards, alternative digital wallets and bank accounts.
Mollie Payments for WooCommerce
mollie-payments-for-woocommerce
Accept all major payment methods in WooCommerce today. Credit cards, iDEAL and more! Fast, safe and intuitive.
iyzico for WooCommerce
iyzico-woocommerce
iyzico latest payment processing solution. Accept credit/debit cards, alternative digital wallets and bank accounts.
Contact Form 7 – PayPal & Stripe Add-on
contact-form-7-paypal-add-on
Easily add PayPal and Stripe to Contact Form 7. Accept credit card payments with Stripe & PayPal on your site today. Offical PayPal & Stripe Partner.
Paytium: Mollie payment forms & donations
paytium
Mollie forms for payments and donations. With iDEAL | WERO , PayPal, Credit/Debet cards, subscriptions and recurring payments!
MyPayKit – Payment Forms for Square Developer Profile
5 plugins · 701K total installs
How We Detect MyPayKit – Payment Forms for Square
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/mypaykit-payment-forms-for-square/assets/css/mypaykit-admin.css/wp-content/plugins/mypaykit-payment-forms-for-square/assets/js/mypaykit-admin.js/wp-content/plugins/mypaykit-payment-forms-for-square/assets/js/mypaykit-admin.jsmypaykit-payment-forms-for-square/assets/css/mypaykit-admin.css?ver=mypaykit-payment-forms-for-square/assets/js/mypaykit-admin.js?ver=HTML / DOM Fingerprints
mypaykitAdminData