
Price Schema VAT Fixer Security & Risk Analysis
wordpress.org/plugins/price-schema-vat-fixerFixes WooCommerce JSON-LD so product schema shows the same VAT-inclusive price shoppers see.
Is Price Schema VAT Fixer Safe to Use in 2026?
Generally Safe
Score 100/100Price Schema VAT Fixer has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin 'price-schema-vat-fixer' v1.0 exhibits a generally strong security posture based on the provided static analysis. The absence of any entry points like AJAX handlers, REST API routes, shortcodes, or cron events significantly limits the attack surface. Furthermore, the code demonstrates good practices by exclusively using prepared statements for SQL queries and avoiding dangerous functions, file operations, and external HTTP requests. The presence of a capability check, although only one, is a positive indicator of access control consideration.
However, the analysis does reveal a minor area for concern: output escaping. With 10 total outputs analyzed, 80% being properly escaped leaves 20% potentially unescaped. While not flagged as critical by taint analysis, unescaped output can still lead to cross-site scripting (XSS) vulnerabilities if user-supplied data is not handled meticulously. The lack of reported vulnerabilities in its history is a positive sign, suggesting the developers have a good track record or the plugin has not been a significant target. Nevertheless, the potential for XSS due to incomplete output escaping warrants attention.
In conclusion, 'price-schema-vat-fixer' v1.0 is well-defended against common web attack vectors due to its minimal attack surface and secure handling of database operations. The primary, albeit minor, weakness lies in the potential for XSS due to incomplete output escaping. The clean vulnerability history is reassuring, but diligent attention to output sanitization remains crucial for maintaining a robust security profile.
Key Concerns
- Potentially unescaped output detected
Price Schema VAT Fixer Security Vulnerabilities
Price Schema VAT Fixer Code Analysis
Output Escaping
Price Schema VAT Fixer Attack Surface
WordPress Hooks 6
Maintenance & Trust
Price Schema VAT Fixer Maintenance & Trust
Maintenance Signals
Community Trust
Price Schema VAT Fixer Alternatives
Schema
schema
Get the next generation of Schema Structured Data to enhance your WordPress site presentation in Google search results.
Schema App Structured Data
schema-app-structured-data-for-schemaorg
Get Schema.org structured data for all pages, posts, categories and profile pages on activation. Use Schema App to customize any Schema Markup.
Structured data for Events Manager
structured-data-for-events-manager
Structured data for Events Manager plugin by JSON-LD method
Business Schema JSON-LD
business-schema-json-ld
Generate Structured Data in JSON-LD format for Product based businesses. Supports popular schema.org types that would be commonly used by a typical bu …
Microdata to JSON-LD Converter
microdata-to-json-ld-converter
A powerful tool to convert your existing Schema.org Microdata into the preferred JSON-LD format, clean up your HTML, and maintain structured data.
Price Schema VAT Fixer Developer Profile
1 plugin · 0 total installs
How We Detect Price Schema VAT Fixer
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/price-schema-vat-fixer/css/admin.css/wp-content/plugins/price-schema-vat-fixer/js/admin.jsprice-schema-vat-fixer/css/admin.css?ver=price-schema-vat-fixer/js/admin.js?ver=HTML / DOM Fingerprints
psvf-summarypsvf-headingpsvf-address-blockpsvf-address-labelpsvf-addresspsvf-address-fieldpsvf-controlspsvf-controls-group+1 more<!-- Default Tax Address --><!-- Structured-data tax location --><!-- Currently used address: --><!-- Settings -->+7 morereadonly="readonly"maxlength="2"pattern="[A-Za-z]{2}"inputmode="latin"style="text-transform:uppercase"psvf_admin