Pending Payment Reminder for WooCommerce Security & Risk Analysis

wordpress.org/plugins/pending-payment-reminder-for-woocommerce

Get a list of orders pending payment and send out a reminder email on a button click.

100 active installs v1.0.1 PHP 5.4+ WP 4.0+ Updated Aug 19, 2021
email-reminderpayment-reminderpending-payment
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Pending Payment Reminder for WooCommerce Safe to Use in 2026?

Generally Safe

Score 85/100

Pending Payment Reminder for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4yr ago
Risk Assessment

The plugin "pending-payment-reminder-for-woocommerce" v1.0.1 exhibits a generally good security posture with several positive indicators. The absence of known CVEs and a clean vulnerability history are significant strengths, suggesting a well-maintained or less-targeted plugin. The code analysis reveals a limited attack surface, with only one AJAX handler and no REST API routes or shortcodes, reducing potential entry points for attackers. Furthermore, the plugin demonstrates good practices by using prepared statements for all SQL queries, implementing nonce checks on its single AJAX handler, and performing capability checks on all relevant operations, indicating an effort to validate user permissions. However, there is a notable concern regarding output escaping, with only 40% of outputs being properly escaped. This could leave the plugin vulnerable to Cross-Site Scripting (XSS) attacks if user-supplied data is directly reflected in the output without proper sanitization. While taint analysis shows no critical or high-severity issues, the unescaped outputs represent a potential weakness that should be addressed to ensure a more robust security posture.

Key Concerns

  • 40% of outputs properly escaped
Vulnerabilities
None known

Pending Payment Reminder for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Pending Payment Reminder for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
6 prepared
Unescaped Output
6
4 escaped
Nonce Checks
1
Capability Checks
4
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared6 total queries

Output Escaping

40% escaped10 total outputs
Attack Surface

Pending Payment Reminder for WooCommerce Attack Surface

Entry Points1
Unprotected0

AJAX Handlers 1

authwp_ajax_prfwpending-payment-reminder.php:130
WordPress Hooks 12
actionwoocommerce_email_customer_detailsclasses\handler.class.php:122
actionprfw_trigger_pending_payment_emailemails\class-wc-customer-pending-payment.php:35
actionplugins_loadedincludes\class-prfw.php:127
actionadmin_enqueue_scriptsincludes\class-prfw.php:143
actionadmin_enqueue_scriptsincludes\class-prfw.php:144
actionadmin_menuincludes\class-prfw.php:145
actionwp_enqueue_scriptsincludes\class-prfw.php:161
actionwp_enqueue_scriptsincludes\class-prfw.php:162
actionplugin_loadedpending-payment-reminder.php:115
filterwoocommerce_email_classespending-payment-reminder.php:121
actionwp_loadedpending-payment-reminder.php:145
actionadmin_noticespending-payment-reminder.php:161
Maintenance & Trust

Pending Payment Reminder for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested5.7.15
Last updatedAug 19, 2021
PHP min version5.4
Downloads2K

Community Trust

Rating60/100
Number of ratings3
Active installs100
Developer Profile

Pending Payment Reminder for WooCommerce Developer Profile

Ozgur

3 plugins · 740 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Pending Payment Reminder for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/pending-payment-reminder-for-woocommerce/admin/assets/lib/jqueryui/jquery-ui.min.css/wp-content/plugins/pending-payment-reminder-for-woocommerce/admin/assets/css/prfw_helper.css/wp-content/plugins/pending-payment-reminder-for-woocommerce/admin/assets/css/prfw.css/wp-content/plugins/pending-payment-reminder-for-woocommerce/admin/assets/css/toastr.min.css/wp-content/plugins/pending-payment-reminder-for-woocommerce/admin/assets/js/main.js
Script Paths
/wp-content/plugins/pending-payment-reminder-for-woocommerce/admin/assets/js/main.js
Version Parameters
pending-payment-reminder-for-woocommerce/admin/assets/lib/jqueryui/jquery-ui.min.css?ver=pending-payment-reminder-for-woocommerce/admin/assets/css/prfw_helper.css?ver=pending-payment-reminder-for-woocommerce/admin/assets/css/prfw.css?ver=pending-payment-reminder-for-woocommerce/admin/assets/css/toastr.min.css?ver=pending-payment-reminder-for-woocommerce/admin/assets/js/main.js?ver=

HTML / DOM Fingerprints

CSS Classes
prfw_helperprfw
JS Globals
PRFW_BASE_URLprfwmain
FAQ

Frequently Asked Questions about Pending Payment Reminder for WooCommerce