
MemberPress payment addon – Novalnet AG Security & Risk Analysis
wordpress.org/plugins/novalnet-payment-addon-memberpressNovalnet payment addon provides all popular online payment methods for your MemberPress webshop.
Is MemberPress payment addon – Novalnet AG Safe to Use in 2026?
Generally Safe
Score 85/100MemberPress payment addon – Novalnet AG has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "novalnet-payment-addon-memberpress" v1.0.1 plugin exhibits a strong security posture based on the provided static analysis. The absence of direct SQL queries, reliance on prepared statements, and 100% output escaping are excellent indicators of secure coding practices. Furthermore, the lack of any reported vulnerabilities in its history significantly bolsters confidence in its security. The plugin also demonstrates good practice by implementing nonce checks on its entry points.
However, there are a few areas that warrant attention. The absence of capability checks on the AJAX handlers, despite the presence of nonce checks, leaves a potential gap. While nonce checks prevent CSRF attacks, capability checks ensure that only authorized users can perform specific actions. The single external HTTP request, while not inherently insecure, represents an external dependency that could potentially be a vector if the external service is compromised or misconfigured. Taint analysis showing zero flows with unsanitized paths is a positive sign, indicating no immediate risks from user-supplied data manipulation.
In conclusion, this plugin appears to be well-developed with a focus on security fundamentals. The primary area for improvement lies in strengthening authentication and authorization by implementing capability checks for its AJAX handlers. Addressing this would further solidify its already robust security profile.
Key Concerns
- AJAX handlers without capability checks
MemberPress payment addon – Novalnet AG Security Vulnerabilities
MemberPress payment addon – Novalnet AG Release Timeline
MemberPress payment addon – Novalnet AG Code Analysis
Output Escaping
MemberPress payment addon – Novalnet AG Attack Surface
AJAX Handlers 2
WordPress Hooks 10
Maintenance & Trust
MemberPress payment addon – Novalnet AG Maintenance & Trust
Maintenance Signals
Community Trust
MemberPress payment addon – Novalnet AG Alternatives
Novalnet Payment Gateway for WooCommerce
woocommerce-novalnet-gateway
Novalnet payment plugin provides all popular online payment methods for your WooCommerce webshop.
Gravity Forms payment plugin – Novalnet AG
novalnet-payment-add-on-for-gravity-forms
Novalnet payment addon provides all popular online payment methods for your Gravity Forms webshop.
Pay Advantage
pay-advantage
Instantly accept Visa, Mastercard and American Express from your site with fast settlement to any Australian bank account.
Charge Anywhere Payment Gateway for WooCommerce
charge-anywhere-payment-gateway-for-woocommerce
Charge Anywhere payment gateway integration for WooCommerce to accept credit cards directly on WordPress e-commerce websites.
Easy Digital Downloads payment plugin – Novalnet AG
easy-digital-downloads-payment-gateway-by-novalnet
Novalnet payment plugin provides all popular online payment methods for your Easy Digital Downloads webshop.
MemberPress payment addon – Novalnet AG Developer Profile
4 plugins · 1K total installs
How We Detect MemberPress payment addon – Novalnet AG
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/novalnet-payment-addon-memberpress/assets/js/config.js/wp-content/plugins/novalnet-payment-addon-memberpress/assets/js/config.jsnovalnet-payment-addon-memberpress/assets/js/config.js?ver=HTML / DOM Fingerprints
data-mepr-novalnet-signaturedata-mepr-novalnet-access-keyMeprNovalnet/wp-json/wp/v2/users/wp-json/novalnet-payment-addon-memberpress/v1/webhook