QuantaPay Payment Security & Risk Analysis

wordpress.org/plugins/quantapay-payment

Accept Bitcoin, Ethereum, USDT and 30+ cryptocurrencies on WooCommerce or Easy Digital Downloads with non-custodial settlement.

0 active installs v1.1.1 PHP 7.4+ WP 5.8+ Updated Mar 2, 2026
btccrypto-paymentscryptocurrencypayment-gatewaywoocommerce-crypto
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is QuantaPay Payment Safe to Use in 2026?

Generally Safe

Score 100/100

QuantaPay Payment has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The quantapay-payment plugin version 1.1.1 exhibits a generally good security posture based on the provided static analysis. It demonstrates strong adherence to secure coding practices by implementing nonce checks and capability checks, indicating an effort to prevent common WordPress vulnerabilities. Furthermore, all SQL queries utilize prepared statements, and a high percentage of output is properly escaped, significantly mitigating risks of SQL injection and Cross-Site Scripting (XSS) respectively. The lack of known CVEs and historical vulnerabilities also points to a well-maintained codebase with potentially fewer exploitable flaws. However, the presence of file operations and external HTTP requests, while not inherently vulnerable, represents potential entry points for attackers if not handled with extreme care. The limited attack surface is a positive sign, but the absence of taint analysis results is a slight concern, as it means potentially complex data flow vulnerabilities might not have been detected.

Key Concerns

  • External HTTP requests present potential risks
  • File operations can be a security concern
  • No taint analysis results are concerning
Vulnerabilities
None known

QuantaPay Payment Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

QuantaPay Payment Release Timeline

v1.1.1Current
v1.1.0
v1.0.0
Code Analysis
Analyzed Mar 17, 2026

QuantaPay Payment Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
16
132 escaped
Nonce Checks
4
Capability Checks
1
File Operations
4
External Requests
2
Bundled Libraries
0

Output Escaping

89% escaped148 total outputs
Attack Surface

QuantaPay Payment Attack Surface

Entry Points1
Unprotected0

REST API Routes 1

POST/wp-json/quantapay/webhookquantapay-payment.php:1755
WordPress Hooks 14
actionwoocommerce_blocks_payment_method_type_registrationquantapay-payment.php:190
filterwoocommerce_payment_gatewaysquantapay-payment.php:368
actionwoocommerce_blocks_loadedquantapay-payment.php:370
actionplugins_loadedquantapay-payment.php:371
actionbefore_woocommerce_initquantapay-payment.php:372
actionadmin_menuquantapay-payment.php:1746
actionnetwork_admin_menuquantapay-payment.php:1747
actionadmin_enqueue_scriptsquantapay-payment.php:1748
actionedd_gateway_quantapayquantapay-payment.php:1749
actionedd_quantapay_cc_formquantapay-payment.php:1750
filteredd_payment_gatewaysquantapay-payment.php:1751
actionwp_logoutquantapay-payment.php:1752
actionwp_enqueue_scriptsquantapay-payment.php:1753
actionrest_api_initquantapay-payment.php:1754
Maintenance & Trust

QuantaPay Payment Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 2, 2026
PHP min version7.4
Downloads283

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

QuantaPay Payment Developer Profile

quantapay

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect QuantaPay Payment

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/quantapay-payment/assets/icons/btc.png/wp-content/plugins/quantapay-payment/assets/icons/eth.png/wp-content/plugins/quantapay-payment/assets/icons/usdt.png/wp-content/plugins/quantapay-payment/assets/icons/usdc.png/wp-content/plugins/quantapay-payment/assets/icons/bnb.png/wp-content/plugins/quantapay-payment/assets/icons/trx.png/wp-content/plugins/quantapay-payment/assets/icons/ltc.png/wp-content/plugins/quantapay-payment/assets/icons/doge.png+1 more
Script Paths
/wp-content/plugins/quantapay-payment/assets/checkout.js
Version Parameters
quantapay-payment/assets/checkout.js?ver=quantapay-payment/assets/logonowords.png?ver=

HTML / DOM Fingerprints

CSS Classes
qtp-icon-strip
Data Attributes
data-block="true"
JS Globals
quantapay_settingsquantapay_payment_paramsQuantaPay_Payment_Blocks
REST Endpoints
/wp-json/quantapay-payment/
FAQ

Frequently Asked Questions about QuantaPay Payment