Remarkety – eCommerce Marketing Automation Platform for WooCommerce Security & Risk Analysis

wordpress.org/plugins/remarkety-for-woocommerce

Send intelligent emails based on customer purchase history. Recover abandoned carts, send targeted newsletters and more. Free Trial!

80 active installs v1.7.0 PHP + WP 3.0+ Updated Jul 16, 2025
abandoned-cartemail-automationemail-marketingnewsletterssms-marketing
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Remarkety – eCommerce Marketing Automation Platform for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

Remarkety – eCommerce Marketing Automation Platform for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 8mo ago
Risk Assessment

The "remarkety-for-woocommerce" plugin v1.7.0 presents a mixed security posture. While it boasts no known historical vulnerabilities and generally utilizes prepared statements for its SQL queries, several significant concerns arise from the static analysis. The presence of an unprotected AJAX handler represents a critical entry point that could be exploited without authentication. Furthermore, the analysis reveals a high number of flows with unsanitized paths, with three identified as high severity, indicating potential for data manipulation or code execution. The use of the `unserialize` function, especially without sufficient input validation, is a known risk for object injection vulnerabilities. The lack of nonce checks on the identified AJAX handler is another serious oversight, making it susceptible to Cross-Site Request Forgery (CSRF) attacks. The low percentage of properly escaped output also suggests a risk of Cross-Site Scripting (XSS) vulnerabilities. Despite the positive aspect of no historical CVEs, these code-level findings highlight significant weaknesses that require immediate attention to improve the plugin's overall security.

Key Concerns

  • Unprotected AJAX handler
  • High severity unsanitized taint flows (3)
  • Use of dangerous unserialize function
  • Missing nonce checks
  • Low percentage of properly escaped output
Vulnerabilities
None known

Remarkety – eCommerce Marketing Automation Platform for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Remarkety – eCommerce Marketing Automation Platform for WooCommerce Code Analysis

Dangerous Functions
2
Raw SQL Queries
5
55 prepared
Unescaped Output
25
4 escaped
Nonce Checks
0
Capability Checks
2
File Operations
3
External Requests
0
Bundled Libraries
0

Dangerous Functions Found

unserialize$oldCartData = unserialize($oldCartDataRes->cart_data);remarkety-for-woocommerce.php:772
unserialize$cartData = @unserialize($result->cart_data);remarkety-for-woocommerce.php:1275

SQL Query Safety

92% prepared60 total queries

Output Escaping

14% escaped29 total outputs
Data Flows
5 unsanitized

Data Flow Analysis

6 flows5 with unsanitized paths
include_template (classes\remarkety_cart_recover.php:12)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
1 unprotected

Remarkety – eCommerce Marketing Automation Platform for WooCommerce Attack Surface

Entry Points1
Unprotected1

AJAX Handlers 1

noprivwp_ajax_rm_guest_checkoutremarkety-for-woocommerce.php:109
WordPress Hooks 26
actiontemplate_redirectclasses\remarkety_cart_recover.php:7
filterinitclasses\remarkety_cart_recover.php:8
actionbefore_woocommerce_initremarkety-for-woocommerce.php:40
actionadmin_initremarkety-for-woocommerce.php:83
actionadmin_menuremarkety-for-woocommerce.php:84
actionadmin_enqueue_scriptsremarkety-for-woocommerce.php:85
actionwoocommerce_cart_updatedremarkety-for-woocommerce.php:86
actionwoocommerce_cart_emptiedremarkety-for-woocommerce.php:87
filterxmlrpc_methodsremarkety-for-woocommerce.php:88
actionwp_footerremarkety-for-woocommerce.php:104
actionwoocommerce_after_single_productremarkety-for-woocommerce.php:105
actionwp_footerremarkety-for-woocommerce.php:108
actionplugins_loadedremarkety-for-woocommerce.php:111
actionwoocommerce_after_cartremarkety-for-woocommerce.php:114
actionwoocommerce_after_checkout_formremarkety-for-woocommerce.php:115
actionwc_ajax_get_cart_contentremarkety-for-woocommerce.php:116
actionwp_enqueue_scriptsremarkety-for-woocommerce.php:119
actionwp_headremarkety-for-woocommerce.php:120
actionwp_footerremarkety-for-woocommerce.php:121
actionwoocommerce_after_checkout_billing_formremarkety-for-woocommerce.php:124
actionwoocommerce_checkout_update_order_metaremarkety-for-woocommerce.php:125
actionplugins_loadedremarkety-for-woocommerce.php:1985
filterwoocommerce_rest_api_get_rest_namespacesremarkety-for-woocommerce.php:1990
filterwoocommerce_rest_orders_prepare_object_queryremarkety-for-woocommerce.php:2011
filterwoocommerce_rest_product_object_queryremarkety-for-woocommerce.php:2031
filterwoocommerce_rest_customer_queryremarkety-for-woocommerce.php:2051
Maintenance & Trust

Remarkety – eCommerce Marketing Automation Platform for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedJul 16, 2025
PHP min version
Downloads15K

Community Trust

Rating20/100
Number of ratings4
Active installs80
Developer Profile

Remarkety – eCommerce Marketing Automation Platform for WooCommerce Developer Profile

remarkety

1 plugin · 80 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Remarkety – eCommerce Marketing Automation Platform for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/remarkety-for-woocommerce/css/remarkety_admin.css/wp-content/plugins/remarkety-for-woocommerce/js/remarkety_admin.js/wp-content/plugins/remarkety-for-woocommerce/js/remarkety_public.js
Script Paths
https://d3ryumxhbd2uw7.cloudfront.net/webtracking/track.js
Version Parameters
remarkety-for-woocommerce/css/remarkety_admin.css?ver=remarkety-for-woocommerce/js/remarkety_admin.js?ver=remarkety-for-woocommerce/js/remarkety_public.js?ver=

HTML / DOM Fingerprints

CSS Classes
remarkety-email-popup-container
Data Attributes
data-rm-iddata-rm-store-key
JS Globals
remarkety_public_rmDataremarkety_cart_recover_paramsremarkety_guest_checkout_params
REST Endpoints
/wp-json/remarkety-for-woocommerce/v1/cart/wp-json/remarkety-for-woocommerce/v1/checkout/wp-json/remarkety-for-woocommerce/v1/guest-checkout
FAQ

Frequently Asked Questions about Remarkety – eCommerce Marketing Automation Platform for WooCommerce