PEI Digital – PIX Sandbox Gateway Security & Risk Analysis

wordpress.org/plugins/pei-digital-sandbox-for-pix

Gateway PIX em sandbox para WooCommerce: simule pagamentos, QR Code e status.

10 active installs v1.0.1 PHP 7.4+ WP 5.0+ Updated Dec 2, 2025
pagamentospixtaxaswoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is PEI Digital – PIX Sandbox Gateway Safe to Use in 2026?

Generally Safe

Score 100/100

PEI Digital – PIX Sandbox Gateway has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4mo ago
Risk Assessment

The "pei-digital-sandbox-for-pix" plugin v1.0.1 demonstrates a strong adherence to several WordPress security best practices, contributing to a generally positive security posture. The absence of critical or high-severity findings in taint analysis, along with proper usage of prepared statements for SQL queries and a high percentage of properly escaped output, are significant strengths. The plugin also incorporates nonces and capability checks, indicating an awareness of common WordPress security mechanisms.

However, the analysis reveals a limited attack surface, with no exposed AJAX handlers, REST API routes, or shortcodes that are unprotected. This suggests that direct unauthorized access through these common vectors is unlikely. The plugin's vulnerability history is also clean, with no recorded CVEs, which is a positive indicator of its past security.

While the static analysis and vulnerability history are largely positive, it's important to note the presence of a cron event, which, while not inherently insecure, represents a potential entry point for scheduled tasks that should be carefully monitored for unintended consequences. The limited number of nonce and capability checks compared to the total outputs and flows analyzed might indicate that some less critical actions are not being robustly protected, although the taint analysis did not reveal any critical issues stemming from this. Overall, the plugin appears to be built with security in mind, but ongoing vigilance and potential for further hardening are advisable.

Key Concerns

  • Cron event present
Vulnerabilities
None known

PEI Digital – PIX Sandbox Gateway Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

PEI Digital – PIX Sandbox Gateway Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
8
75 escaped
Nonce Checks
4
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

90% escaped83 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
pei_pix_admin_page (pei-digital-pix.php:52)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

PEI Digital – PIX Sandbox Gateway Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 7
actionwp_enqueue_scriptsincludes\class-wc-gateway-pei-pix.php:24
actionpei_pix_auto_approveincludes\class-wc-gateway-pei-pix.php:272
actionplugins_loadedpei-digital-pix.php:18
actionadmin_noticespei-digital-pix.php:20
filterwoocommerce_payment_gatewayspei-digital-pix.php:31
actionadmin_menupei-digital-pix.php:37
actionadmin_enqueue_scriptspei-digital-pix.php:474

Scheduled Events 1

pei_pix_auto_approve
Maintenance & Trust

PEI Digital – PIX Sandbox Gateway Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 2, 2025
PHP min version7.4
Downloads222

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

PEI Digital – PIX Sandbox Gateway Developer Profile

peidigital

1 plugin · 10 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect PEI Digital – PIX Sandbox Gateway

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/pei-digital-sandbox-for-pix/assets/css/admin.css/wp-content/plugins/pei-digital-sandbox-for-pix/assets/js/admin.js
Version Parameters
pei-digital-sandbox-for-pix/assets/css/admin.css?ver=pei-digital-sandbox-for-pix/assets/js/admin.js?ver=

HTML / DOM Fingerprints

CSS Classes
pei-pix-adminpei-pix-admin-headerpei-pix-contact-sectionpei-pix-contact-cardpei-digital-pix
Data Attributes
data-iddata-amountdata-descriptiondata-status
FAQ

Frequently Asked Questions about PEI Digital – PIX Sandbox Gateway