
AutifyDigital Lloyds® Pay Now for payment Security & Risk Analysis
wordpress.org/plugins/pay-by-linkConnect your WordPress site to Lloyds acquiring with Pay Now with this secure payment gateway plugin. Offer your customers a reliable and seamless way …
Is AutifyDigital Lloyds® Pay Now for payment Safe to Use in 2026?
Generally Safe
Score 100/100AutifyDigital Lloyds® Pay Now for payment has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'pay-by-link' plugin v2.0.7 demonstrates a generally strong security posture with several positive indicators. The absence of known CVEs and a clean vulnerability history are significant strengths, suggesting a well-maintained and robust codebase in terms of past security issues. The static analysis also highlights good practices such as 100% prepared statements for SQL queries and a very high percentage of properly escaped output, mitigating common web vulnerabilities. Furthermore, all identified AJAX handlers, REST API routes, and other entry points appear to have authorization checks in place, which is crucial for preventing unauthorized access and actions.
However, the analysis does reveal areas for improvement. The presence of 14 taint flows with unsanitized paths, including 10 of high severity, is a notable concern. While the output escaping is generally good, these unsanitized paths indicate potential vulnerabilities where user-supplied data might be processed without adequate cleaning, potentially leading to cross-site scripting (XSS) or other injection attacks, especially if these flows interact with external HTTP requests or file operations. The plugin also performs 9 external HTTP requests, which can be a vector for attack if not handled securely, and a single file operation, which always carries inherent risk.
In conclusion, the 'pay-by-link' plugin v2.0.7 is built on a solid foundation with strong protection against common web vulnerabilities like SQL injection and XSS through diligent output escaping and prepared statements. The lack of historical vulnerabilities is a testament to this. Nevertheless, the high number of unsanitized taint flows is a critical area that requires immediate attention and remediation to ensure the plugin's overall security is not compromised by potentially exploitable data handling practices. Addressing these specific taint issues will elevate its security posture from good to excellent.
Key Concerns
- High severity taint flows with unsanitized paths
- Unsanitized paths in taint flows
- External HTTP requests present
- File operations present
AutifyDigital Lloyds® Pay Now for payment Security Vulnerabilities
AutifyDigital Lloyds® Pay Now for payment Release Timeline
AutifyDigital Lloyds® Pay Now for payment Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
AutifyDigital Lloyds® Pay Now for payment Attack Surface
AJAX Handlers 13
Shortcodes 3
WordPress Hooks 55
Maintenance & Trust
AutifyDigital Lloyds® Pay Now for payment Maintenance & Trust
Maintenance Signals
Community Trust
AutifyDigital Lloyds® Pay Now for payment Alternatives
Paysera Payment Gateway for WooCommerce
woo-payment-gateway-paysera
Paysera payments + delivery
Accept PayPal Payments using Contact Form 7
contact-form-7-paypal-extension
Integrate PayPal Submit button in Contact Form 7 to Enjoy Quick Online Payments.
Fygaro WC Plugin
fygaro
The WooCommerce Fygaro Plugin gets online payments with your Local Bank, PayPal, Yappy and Credix up and running within minutes and at the best rates!
KKiapay WooCommerce Plugin
kkiapay-woocommerce
Accept Mobile money, direct bank and credit card payments with KKiapay
Zoho Billing – Embed Payment Form
zoho-subscriptions
Embed payment forms on your WordPress pages/posts without any coding.
AutifyDigital Lloyds® Pay Now for payment Developer Profile
2 plugins · 90 total installs
How We Detect AutifyDigital Lloyds® Pay Now for payment
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/pay-by-link/admin/assets/css/refund-form.css/wp-content/plugins/pay-by-link/admin/assets/js/refund-form.js/wp-content/plugins/pay-by-link/includes/class-pay-by-link.php/wp-content/plugins/pay-by-link/admin/class-pbl-admin-refund-page.php/wp-content/plugins/pay-by-link/admin/class-pbl-admin-settings.php/wp-content/plugins/pay-by-link/admin/templates/refund-form.phppay-by-link/admin/assets/css/refund-form.css?ver=pay-by-link/admin/assets/js/refund-form.js?ver=HTML / DOM Fingerprints
paynow-lbop-refund-form-wrapper<!-- Pay Now LBOP Refund Form --><!-- Field wrapper --><!-- Label --><!-- Input field -->+6 moredata-transaction-iddata-remaining-amountdata-noncepaynow_lbop_refund_vars