Payment Gateway for WooCommerce with Stripe – by Pay Addons Security & Risk Analysis

wordpress.org/plugins/payment-addons-for-woocommerce

The easiest and fastest way to add 30+ payment methods (Also PayPal) to your WooCommerce website powered by Stripe! Payment methods all-in-one form.

40 active installs v1.16.4 PHP 7.0+ WP 4.9+ Updated Mar 15, 2026
apple-paystripestripe-checkoutstripe-payment-gatewaywoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Payment Gateway for WooCommerce with Stripe – by Pay Addons Safe to Use in 2026?

Generally Safe

Score 100/100

Payment Gateway for WooCommerce with Stripe – by Pay Addons has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 19d ago
Risk Assessment

Based on the static analysis, the "payment-addons-for-woocommerce" plugin version 1.16.4 exhibits a generally strong security posture. The complete absence of attack surface vectors like AJAX handlers, REST API routes, shortcodes, and cron events significantly reduces the potential for external exploitation. Furthermore, the code demonstrates robust internal security practices, with 100% of SQL queries using prepared statements and a high percentage (96%) of output escaping. The presence of nonce and capability checks, albeit limited in number, also indicates an awareness of secure coding principles.

While the static analysis reveals no specific vulnerabilities in taint flows or dangerous functions, two external HTTP requests introduce a minor concern. These requests, if not properly secured or if they interact with external services that have vulnerabilities, could potentially become an indirect attack vector. The plugin's vulnerability history is exceptionally clean, with zero recorded CVEs, which is a positive indicator of past security diligence and ongoing maintenance.

In conclusion, this plugin appears to be well-developed from a security perspective, with minimal attack surface and good internal security practices. The primary area for potential scrutiny would be the security of the two external HTTP requests. The lack of any known past vulnerabilities is a significant strength.

Key Concerns

  • External HTTP requests present
  • Bundled library (Freemius) potentially outdated
Vulnerabilities
None known

Payment Gateway for WooCommerce with Stripe – by Pay Addons Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Payment Gateway for WooCommerce with Stripe – by Pay Addons Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
8 prepared
Unescaped Output
4
93 escaped
Nonce Checks
1
Capability Checks
3
File Operations
0
External Requests
2
Bundled Libraries
2

Bundled Libraries

Freemius1.0Stripe PHP

SQL Query Safety

100% prepared8 total queries

Output Escaping

96% escaped97 total outputs
Attack Surface

Payment Gateway for WooCommerce with Stripe – by Pay Addons Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 16
actionadmin_noticesbootstrap.php:23
actionwoocommerce_blocks_payment_method_type_registrationbootstrap.php:82
filterwoocommerce_save_settings_checkout_wspa_express_checkoutincludes\admin\admin-controller.php:13
filterwoocommerce_get_settings_checkoutincludes\admin\admin-controller.php:14
actionwoocommerce_settings_wspa_express_checkout_afterincludes\admin\admin-controller.php:15
actionwoocommerce_settings_wspa_express_checkout_titleincludes\admin\admin-controller.php:16
actionadmin_menuincludes\admin\dashboard.php:14
actionadmin_enqueue_scriptsincludes\admin\dashboard.php:15
filterwoocommerce_payment_gatewaysincludes\core\abstract-payment-gateway.php:22
actionwoocommerce_rest_checkout_process_payment_with_contextincludes\payment-methods\stripe-checkout-redirect-block-support.php:31
actionwspa_gateway_stripe_process_payment_errorincludes\payment-methods\stripe-checkout-redirect-block-support.php:156
actionwp_enqueue_scriptsincludes\payment-methods\stripe-checkout-redirect.php:52
actionrest_api_initincludes\rest-api\rest-api-stripe-webhooks-controller.php:20
actioninitwoo-pay-addons.php:47
actionwoocommerce_blocks_loadedwoo-pay-addons.php:58
actionafter_uninstallwoo-pay-addons.php:86
Maintenance & Trust

Payment Gateway for WooCommerce with Stripe – by Pay Addons Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 15, 2026
PHP min version7.0
Downloads3K

Community Trust

Rating100/100
Number of ratings3
Active installs40
Developer Profile

Payment Gateway for WooCommerce with Stripe – by Pay Addons Developer Profile

Payment Addons

4 plugins · 180 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Payment Gateway for WooCommerce with Stripe – by Pay Addons

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/payment-addons-for-woocommerce/assets/admin/js/admin.js/wp-content/plugins/payment-addons-for-woocommerce/assets/admin/css/admin.css/wp-content/plugins/payment-addons-for-woocommerce/assets/admin/css/wc-admin.css
Script Paths
/wp-content/plugins/payment-addons-for-woocommerce/assets/admin/js/admin.js
Version Parameters
payment-addons-for-woocommerce/assets/admin/js/admin.js?ver=payment-addons-for-woocommerce/assets/admin/css/admin.css?ver=payment-addons-for-woocommerce/assets/admin/css/wc-admin.css?ver=

HTML / DOM Fingerprints

CSS Classes
wspa-nav-barwspa-nav-itemwspa-nav-bar-heading
Data Attributes
aria-current
REST Endpoints
wspa/v1/
FAQ

Frequently Asked Questions about Payment Gateway for WooCommerce with Stripe – by Pay Addons