
PlugStudio Installment Calculator for WooCommerce Security & Risk Analysis
wordpress.org/plugins/mz-calculate-feesDisplay an installment dropdown on WooCommerce product pages and show the monthly payment amount based on months and interest settings.
Is PlugStudio Installment Calculator for WooCommerce Safe to Use in 2026?
Generally Safe
Score 100/100PlugStudio Installment Calculator for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "mz-calculate-fees" plugin v1.0.3 exhibits a generally strong security posture based on the provided static analysis. The plugin has a small attack surface with only two AJAX handlers, and importantly, none of these appear to be unprotected by authentication checks. The code also demonstrates good practices regarding output escaping, with a high percentage of outputs properly escaped. Furthermore, the absence of any file operations or external HTTP requests reduces potential attack vectors.
However, there are a few areas that warrant attention. While the majority of SQL queries utilize prepared statements, a significant portion (40%) does not. This could represent a potential risk for SQL injection vulnerabilities if the unsanitized inputs are ever used in these queries. The plugin also includes three nonce checks, but only one capability check, suggesting that not all entry points might be adequately authorized for all users. The lack of any recorded vulnerabilities in its history is a positive indicator, suggesting the developers are either diligent or the plugin has not been a significant target.
In conclusion, the plugin is well-designed with good basic security hygiene. The primary concern lies in the non-prepared SQL queries, which should be addressed to eliminate potential injection risks. The limited number of capability checks also suggests a potential for privilege escalation if not carefully managed. Despite these minor concerns, the overall security is robust, especially given the absence of known vulnerabilities.
Key Concerns
- SQL queries not using prepared statements
- Limited capability checks for entry points
PlugStudio Installment Calculator for WooCommerce Security Vulnerabilities
PlugStudio Installment Calculator for WooCommerce Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
PlugStudio Installment Calculator for WooCommerce Attack Surface
AJAX Handlers 2
WordPress Hooks 4
Maintenance & Trust
PlugStudio Installment Calculator for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
PlugStudio Installment Calculator for WooCommerce Alternatives
Deposits & Partial Payments for WooCommerce – Deposet
deposet
Enable deposits and partial payments for WooCommerce products with flexible payment plans and installment options.
Cost of Goods: Product Cost & Profit Calculator for WooCommerce
cost-of-goods-for-woocommerce
Unlock detailed insights into products profitability, calculate COGS & profit margins, and get a better financial analytics insights with our Cost …
Deposits & Partial Payments for WooCommerce
deposits-partial-payments-for-woocommerce
WooCommerce Deposits and Partial Payments Plugin helps customers to make payments for the products they buy using a partial payment or a deposit.
Easyship WooCommerce Shipping Rates
easyship-woocommerce-shipping-rates
Easyship for WooCommerce saves you time and money with live courier rates, seamless checkout, automated taxes & duties, and shipping label creation.
WooReer
wcsdm
WooReer calculates shipping rates based on distance via Google Maps, Mapbox, DistanceMatrix.ai, Geoapify, or HERE.
PlugStudio Installment Calculator for WooCommerce Developer Profile
3 plugins · 10 total installs
How We Detect PlugStudio Installment Calculator for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/mz-calculate-fees/assets/css/icon.css/wp-content/plugins/mz-calculate-fees/assets/css/estilos.css/wp-content/plugins/mz-calculate-fees/assets/js/calculate.js/wp-content/plugins/mz-calculate-fees/assets/js/calculate.jsmz-calculate-fees/assets/css/icon.css?ver=mz-calculate-fees/assets/css/estilos.css?ver=mz-calculate-fees/assets/js/calculate.js?ver=HTML / DOM Fingerprints
plst-calculator-containerplst-installment-resultid="plst_combo"id="plst_txtMessage"plst_cf_vars