
PEI Digital – PIX Sandbox Gateway Security & Risk Analysis
wordpress.org/plugins/pei-digital-sandbox-for-pixGateway PIX em sandbox para WooCommerce: simule pagamentos, QR Code e status.
Is PEI Digital – PIX Sandbox Gateway Safe to Use in 2026?
Generally Safe
Score 100/100PEI Digital – PIX Sandbox Gateway has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "pei-digital-sandbox-for-pix" plugin v1.0.1 demonstrates a strong adherence to several WordPress security best practices, contributing to a generally positive security posture. The absence of critical or high-severity findings in taint analysis, along with proper usage of prepared statements for SQL queries and a high percentage of properly escaped output, are significant strengths. The plugin also incorporates nonces and capability checks, indicating an awareness of common WordPress security mechanisms.
However, the analysis reveals a limited attack surface, with no exposed AJAX handlers, REST API routes, or shortcodes that are unprotected. This suggests that direct unauthorized access through these common vectors is unlikely. The plugin's vulnerability history is also clean, with no recorded CVEs, which is a positive indicator of its past security.
While the static analysis and vulnerability history are largely positive, it's important to note the presence of a cron event, which, while not inherently insecure, represents a potential entry point for scheduled tasks that should be carefully monitored for unintended consequences. The limited number of nonce and capability checks compared to the total outputs and flows analyzed might indicate that some less critical actions are not being robustly protected, although the taint analysis did not reveal any critical issues stemming from this. Overall, the plugin appears to be built with security in mind, but ongoing vigilance and potential for further hardening are advisable.
Key Concerns
- Cron event present
PEI Digital – PIX Sandbox Gateway Security Vulnerabilities
PEI Digital – PIX Sandbox Gateway Code Analysis
Output Escaping
Data Flow Analysis
PEI Digital – PIX Sandbox Gateway Attack Surface
WordPress Hooks 7
Scheduled Events 1
Maintenance & Trust
PEI Digital – PIX Sandbox Gateway Maintenance & Trust
Maintenance Signals
Community Trust
PEI Digital – PIX Sandbox Gateway Alternatives
Pagou – Payments for WooCommerce
pagou-payments-for-woocommerce
Pagamentos via PIX e boletos bancários no WooCommerce.
Global Pays – Payments for WooCommerce
global-pays-payments-for-woocommerce
PIX, Boleto and credit card payments in WooCommerce.
Pinterest for WooCommerce
pinterest-for-woocommerce
Get your products in front of Pinterest users searching for ideas and things to buy. Connect your WooCommerce store to make your catalog browsable.
Kliken: Ads + Pixel for Meta
kliken-ads-pixel-for-meta
Drive Sales on Facebook and Instagram in 5 minutes—upload your catalog, implement the Meta Pixel & Conversions API, and grow via Meta Advantage+ now.
Pixel Manager for WooCommerce – Conversion Tracking, Google Ads, GA4, TikTok, Dynamic Remarketing
woocommerce-google-adwords-conversion-tracking-tag
Conversion tracking for WooCommerce. Google Ads, GA4, Meta/Facebook Pixel, TikTok & more. Recover 30% more conversions with server-side tracking!
PEI Digital – PIX Sandbox Gateway Developer Profile
1 plugin · 10 total installs
How We Detect PEI Digital – PIX Sandbox Gateway
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/pei-digital-sandbox-for-pix/assets/css/admin.css/wp-content/plugins/pei-digital-sandbox-for-pix/assets/js/admin.jspei-digital-sandbox-for-pix/assets/css/admin.css?ver=pei-digital-sandbox-for-pix/assets/js/admin.js?ver=HTML / DOM Fingerprints
pei-pix-adminpei-pix-admin-headerpei-pix-contact-sectionpei-pix-contact-cardpei-digital-pixdata-iddata-amountdata-descriptiondata-status