Payment Gateway for MyAmeriaPay Security & Risk Analysis

wordpress.org/plugins/payment-gateway-for-myameriapay

Secure payment gateway for MyAmeria Pay in WooCommerce.

10 active installs v1.5.3 PHP 7.4+ WP 5.8+ Updated Mar 23, 2026
ameriaarmeniapayment-gatewaywoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Payment Gateway for MyAmeriaPay Safe to Use in 2026?

Generally Safe

Score 100/100

Payment Gateway for MyAmeriaPay has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

Based on the provided static analysis and vulnerability history, the "payment-gateway-for-myameriapay" v1.5.3 plugin exhibits a generally strong security posture. The absence of known CVEs, critical taint flows, direct SQL queries, and file operations are positive indicators. Furthermore, the plugin correctly implements output escaping for all identified outputs and shows no direct use of dangerous functions.

However, there are a few areas that warrant attention. The plugin makes three external HTTP requests, which could potentially be a vector for vulnerabilities if not handled securely (e.g., if the external endpoints are compromised or if sensitive data is transmitted without proper encryption). Additionally, the complete lack of nonce checks and capability checks across all entry points is a significant concern. While the static analysis shows zero unprotected entry points, this is likely due to the absence of any identifiable entry points in the analyzed code. This suggests that either the plugin has a very minimal attack surface, or the analysis might have missed potential entry points that would normally require nonce and capability checks for security.

In conclusion, the plugin demonstrates good practices regarding data handling and output sanitization. Its lack of a vulnerability history is reassuring. However, the reliance on external HTTP requests and the complete absence of security checks like nonces and capability checks represent potential weaknesses that could be exploited if the plugin's interaction surface expands or if the current (undetected) entry points are vulnerable to unauthorized access or manipulation.

Key Concerns

  • Missing nonce checks on entry points
  • Missing capability checks on entry points
  • Presence of external HTTP requests
Vulnerabilities
None known

Payment Gateway for MyAmeriaPay Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Payment Gateway for MyAmeriaPay Release Timeline

v1.5.3Current
v1.5.2
v1.5.1
Code Analysis
Analyzed Apr 16, 2026

Payment Gateway for MyAmeriaPay Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
38 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
3
Bundled Libraries
0

Output Escaping

100% escaped38 total outputs
Attack Surface

Payment Gateway for MyAmeriaPay Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 10
actionwoocommerce_initincludes/class-paymgafo-myameria-gateway.php:66
filterwoocommerce_payment_gatewayspayment-gateway-for-myameriapay.php:22
actionwp_enqueue_scriptspayment-gateway-for-myameriapay.php:45
actionadmin_enqueue_scriptspayment-gateway-for-myameriapay.php:47
actionplugins_loadedpayment-gateway-for-myameriapay.php:82
actioninitpayment-gateway-for-myameriapay.php:83
actionwoocommerce_blocks_loadedpayment-gateway-for-myameriapay.php:85
actionwoocommerce_blocks_payment_method_type_registrationpayment-gateway-for-myameriapay.php:88
actionbefore_woocommerce_initpayment-gateway-for-myameriapay.php:97
actionadmin_noticespayment-gateway-for-myameriapay.php:101
Maintenance & Trust

Payment Gateway for MyAmeriaPay Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedMar 23, 2026
PHP min version7.4
Downloads438

Community Trust

Rating100/100
Number of ratings2
Active installs10
Developer Profile

Payment Gateway for MyAmeriaPay Developer Profile

ameria

1 plugin · 10 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Payment Gateway for MyAmeriaPay

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/payment-gateway-for-myameriapay/assets/css/paymgafo_myameria.css/wp-content/plugins/payment-gateway-for-myameriapay/assets/css/paymgafo_myameria_admin.css/wp-content/plugins/payment-gateway-for-myameriapay/assets/js/admin.js/wp-content/plugins/payment-gateway-for-myameriapay/assets/img/MyAmeriaPay.svg
Script Paths
/wp-content/plugins/payment-gateway-for-myameriapay/assets/js/admin.js
Version Parameters
payment-gateway-for-myameriapay/assets/css/paymgafo_myameria.css?ver=payment-gateway-for-myameriapay/assets/css/paymgafo_myameria_admin.css?ver=payment-gateway-for-myameriapay/assets/js/admin.js?ver=

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Payment Gateway for MyAmeriaPay