Payment Gateway Groups for WooCommerce Security & Risk Analysis

wordpress.org/plugins/payment-gateway-groups-for-woocommerce

Allows you to create groups for payment gateways on the checkout page.

20 active installs v1.1.3 PHP + WP 5.0.1+ Updated Unknown
checkoutcommerceecommercepayment-gatewaywoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Payment Gateway Groups for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

Payment Gateway Groups for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs
Risk Assessment

The "payment-gateway-groups-for-woocommerce" plugin version 1.1.3 exhibits a generally strong security posture based on the provided static analysis. There are no identified entry points with exposed attack surfaces, no dangerous functions utilized, and all SQL queries are protected by prepared statements. The high percentage of properly escaped output also suggests good development practices for preventing cross-site scripting vulnerabilities. The absence of any recorded historical vulnerabilities further strengthens this positive assessment.

However, the static analysis does reveal a few areas for attention. The lack of nonce checks and capability checks on any potential entry points, although currently reported as zero, is a significant concern. If any entry points were to be introduced or become apparent in future versions, their unprotected nature would present an immediate risk. The bundled Freemius library at version 1.0 is also a potential concern if it contains known vulnerabilities, though none are explicitly reported here. The complete absence of taint analysis results is unusual and could indicate limitations in the analysis tool or very simple code that doesn't trigger taint flows.

In conclusion, the plugin currently appears to be secure due to a lack of exploitable entry points and adherence to secure coding practices for database interactions and output handling. The primary weakness lies in the absence of robust authorization checks that would be crucial if any new entry points were to emerge. The plugin's clean vulnerability history is a significant strength, indicating a generally well-maintained codebase.

Key Concerns

  • No nonce checks identified
  • No capability checks identified
  • Bundled library (Freemius v1.0) may be outdated
  • No taint flows analyzed
Vulnerabilities
None known

Payment Gateway Groups for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Payment Gateway Groups for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
4
36 escaped
Nonce Checks
0
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
1

Bundled Libraries

Freemius1.0

Output Escaping

90% escaped40 total outputs
Attack Surface

Payment Gateway Groups for WooCommerce Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 14
actionadmin_noticesadmin\class-woo-pgg-admin.php:120
actionplugins_loadedincludes\class-woo-pgg.php:130
actionadmin_enqueue_scriptsincludes\class-woo-pgg.php:143
actionadmin_enqueue_scriptsincludes\class-woo-pgg.php:144
filterwoocommerce_get_settings_pagesincludes\class-woo-pgg.php:146
actionadmin_initincludes\class-woo-pgg.php:148
actionwp_enqueue_scriptsincludes\class-woo-pgg.php:161
actionwp_enqueue_scriptsincludes\class-woo-pgg.php:162
filterwoocommerce_locate_templateincludes\class-woo-pgg.php:164
filterwoocommerce_locate_templateincludes\class-woo-pgg.php:171
filterconnect_urlwoo-pgg.php:80
filterafter_skip_urlwoo-pgg.php:81
filterafter_connect_urlwoo-pgg.php:82
filterafter_pending_connect_urlwoo-pgg.php:83
Maintenance & Trust

Payment Gateway Groups for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested5.9.13
Last updatedUnknown
PHP min version
Downloads2K

Community Trust

Rating100/100
Number of ratings1
Active installs20
Developer Profile

Payment Gateway Groups for WooCommerce Developer Profile

ivanchernyakov

5 plugins · 840 total installs

90
trust score
Avg Security Score
94/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Payment Gateway Groups for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/payment-gateway-groups-for-woocommerce/admin/css/woo-pgg-admin.css/wp-content/plugins/payment-gateway-groups-for-woocommerce/admin/js/woo-pgg-admin.js
Version Parameters
/payment-gateway-groups-for-woocommerce/admin/css/woo-pgg-admin.css?ver=/payment-gateway-groups-for-woocommerce/admin/js/woo-pgg-admin.js?ver=

HTML / DOM Fingerprints

JS Globals
wp_fs
FAQ

Frequently Asked Questions about Payment Gateway Groups for WooCommerce