RaCar Clear Cart for WooCommerce Security & Risk Analysis

wordpress.org/plugins/racar-clear-cart-for-woocommerce

RaCar Clear Cart for WooCommerce allows you to add a customizable button to clear the shopping cart.

400 active installs v2.1.7 PHP 7.4+ WP 4.9+ Updated Mar 22, 2026
cartclear-cartempty-cartwoo-commercewoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is RaCar Clear Cart for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

RaCar Clear Cart for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The "racar-clear-cart-for-woocommerce" plugin, version 2.1.7, exhibits a strong security posture based on the provided static analysis. The absence of any identified dangerous functions, external HTTP requests, file operations, or direct SQL queries with prepared statements is highly commendable. Furthermore, the plugin demonstrates good practice by implementing nonce and capability checks on its entry points. The high percentage of properly escaped output also reduces the risk of common cross-site scripting vulnerabilities.

While the static analysis reveals no immediate vulnerabilities within the code, the complete absence of taint analysis results and a zero-day history means we cannot definitively rule out all potential issues. The small number of entry points is a positive sign, as it limits the potential attack surface. However, the zero count for AJAX handlers, REST API routes, shortcodes, and cron events is unusual for a functional plugin and might indicate a very limited scope of operation or that its functionality is entirely managed through other means. The lack of historical vulnerability data is a positive indicator, suggesting a well-maintained and secure codebase.

Overall, the plugin appears to be securely coded with adherence to best practices. The primary area for potential concern is the very limited attack surface, which, while good for security, is noteworthy. The lack of any identified flows in taint analysis, coupled with zero historical CVEs, suggests a low immediate risk. The plugin's strengths lie in its secure coding practices, particularly in function usage and output sanitization. The main weakness, if it can be called that, is the very limited observable attack surface, which warrants a closer look if the plugin is intended for more complex operations.

Vulnerabilities
None known

RaCar Clear Cart for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

RaCar Clear Cart for WooCommerce Release Timeline

v2.1.7Current
v2.1.6
v2.1.5
v2.1.4
Code Analysis
Analyzed Mar 16, 2026

RaCar Clear Cart for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
2
54 escaped
Nonce Checks
2
Capability Checks
2
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

96% escaped56 total outputs
Attack Surface

RaCar Clear Cart for WooCommerce Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 11
filterplugin_action_linksincludes\admin\class-rccwoo_Action_List.php:19
actionadmin_menuincludes\admin\class-rccwoo_Admin_Options.php:40
actionadmin_menuincludes\admin\class-rccwoo_Admin_Options.php:41
actionadmin_initincludes\admin\class-rccwoo_Admin_Options.php:42
actionadmin_initincludes\admin\class-rccwoo_Admin_Options.php:43
actionwoocommerce_cart_actionsincludes\class-rccwoo-plugin.php:27
actioninitincludes\class-rccwoo-plugin.php:28
actionadmin_enqueue_scriptsincludes\class-rccwoo-plugin.php:33
actionadmin_noticesincludes\class-rccwoo-plugin.php:36
actionplugins_loadedracar-clear-cart-for-woocommerce.php:52
actionbefore_woocommerce_initracar-clear-cart-for-woocommerce.php:55
Maintenance & Trust

RaCar Clear Cart for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 22, 2026
PHP min version7.4
Downloads6K

Community Trust

Rating100/100
Number of ratings5
Active installs400
Developer Profile

RaCar Clear Cart for WooCommerce Developer Profile

Rafa Carvalhido

3 plugins · 410 total installs

92
trust score
Avg Security Score
97/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect RaCar Clear Cart for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/racar-clear-cart-for-woocommerce/css/rccwoo-stylesheet.css/wp-content/plugins/racar-clear-cart-for-woocommerce/js/rccwoo-javascript.js/wp-content/plugins/racar-clear-cart-for-woocommerce/includes/admin/css/rccwoo-admin-style.css/wp-content/plugins/racar-clear-cart-for-woocommerce/includes/admin/js/rccwoo-admin-javascript.js
Script Paths
/wp-content/plugins/racar-clear-cart-for-woocommerce/js/rccwoo-javascript.js/wp-content/plugins/racar-clear-cart-for-woocommerce/includes/admin/js/rccwoo-admin-javascript.js
Version Parameters
racar-clear-cart-for-woocommerce/css/rccwoo-stylesheet.css?ver=racar-clear-cart-for-woocommerce/js/rccwoo-javascript.js?ver=racar-clear-cart-for-woocommerce/includes/admin/css/rccwoo-admin-style.css?ver=racar-clear-cart-for-woocommerce/includes/admin/js/rccwoo-admin-javascript.js?ver=

HTML / DOM Fingerprints

CSS Classes
rccwoo-button-clear-cart
JS Globals
rccwoo_basenamerccwoo_VERSIONRACAR_DONATE_URLrccwoo_NOME_STYLESHEETrccwoo_DIR_STYLESHEETrccwoo_EXT_STYLESHEET+8 more
FAQ

Frequently Asked Questions about RaCar Clear Cart for WooCommerce