Peki Tripletex Integration for WooCommerce Security & Risk Analysis

wordpress.org/plugins/peki-tripletex-integration-for-woocommerce

Integrate WooCommerce with Tripletex. Automatically transfer orders and refunds to Tripletex via the Peki service. Learn more on our Tripletex plugin …

0 active installs v1.0.1 PHP 7.4+ WP 6.0+ Updated Aug 28, 2025
accountingbookkeepinginvoicestripletexwoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Peki Tripletex Integration for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

Peki Tripletex Integration for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 7mo ago
Risk Assessment

The peki-tripletex-integration-for-woocommerce plugin v1.0.1 exhibits a mixed security posture. On the positive side, it demonstrates strong practices regarding SQL query handling, exclusively using prepared statements, and has no recorded vulnerabilities in its history. This suggests a developer focus on preventing common SQL injection attacks and a generally stable codebase. However, significant concerns arise from its attack surface. The plugin exposes three AJAX handlers, two of which lack authentication checks. This is a critical oversight, as unauthenticated AJAX endpoints can be exploited by attackers to perform actions or retrieve data without proper authorization.

While taint analysis shows no critical or high-severity unsanitized flows, and the number of dangerous functions is zero, the presence of unescaped output is notable. With 37% of 51 outputs not being properly escaped, there's a potential for cross-site scripting (XSS) vulnerabilities, especially when combined with the unauthenticated AJAX handlers where user-supplied data might be involved in these outputs. The plugin's history of zero vulnerabilities is a positive indicator of its stability, but the current static analysis reveals clear areas for improvement, particularly concerning access control on AJAX endpoints and output sanitization.

Key Concerns

  • Unprotected AJAX handlers
  • Insufficient output escaping
Vulnerabilities
None known

Peki Tripletex Integration for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Peki Tripletex Integration for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
32
19 escaped
Nonce Checks
5
Capability Checks
8
File Operations
0
External Requests
6
Bundled Libraries
0

Output Escaping

37% escaped51 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
render (includes\class-tripletex-settings-page.php:14)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
2 unprotected

Peki Tripletex Integration for WooCommerce Attack Surface

Entry Points3
Unprotected2

AJAX Handlers 3

authwp_ajax_pekiwctt_dismiss_noticeincludes\class-tripletex-admin.php:12
authwp_ajax_pekiwctt_disconnecttripletex.php:178
authwp_ajax_pekiwctt_exporttripletex.php:190
WordPress Hooks 5
actionadmin_menuincludes\class-tripletex-admin.php:9
actionadmin_enqueue_scriptsincludes\class-tripletex-admin.php:10
actionadmin_noticesincludes\class-tripletex-admin.php:11
actioninittripletex.php:39
actionadmin_noticestripletex.php:117
Maintenance & Trust

Peki Tripletex Integration for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedAug 28, 2025
PHP min version7.4
Downloads199

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Peki Tripletex Integration for WooCommerce Developer Profile

PEKI AS

3 plugins · 30 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Peki Tripletex Integration for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Version Parameters
peki-tripletex-integration-for-woocommerce/style.css?ver=peki-tripletex-integration-for-woocommerce/script.js?ver=

HTML / DOM Fingerprints

CSS Classes
pekiwctt-settings-page-wrap
Data Attributes
data-pekiwctt-nonce
JS Globals
pekiwctt_ajax_object
FAQ

Frequently Asked Questions about Peki Tripletex Integration for WooCommerce