
Rescindly for WooCommerce Security & Risk Analysis
wordpress.org/plugins/rescindly-for-woocommerceOnline withdrawal workflow for WooCommerce — connect your store to Rescindly and support Directive (EU) 2023/2673 readiness.
Is Rescindly for WooCommerce Safe to Use in 2026?
Generally Safe
Score 100/100Rescindly for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The static analysis of rescindly-for-woocommerce v1.4.2 reveals a strong security posture in several key areas. The absence of identified AJAX handlers, REST API routes, shortcodes, and cron events significantly limits the plugin's attack surface. Furthermore, the code demonstrates good practices by exclusively using prepared statements for SQL queries and properly escaping all identified output. The lack of file operations, external HTTP requests, and bundled libraries also mitigates common plugin vulnerabilities.
However, the analysis does flag a potential area of concern with the complete absence of nonce checks and capability checks. While the current static analysis indicates zero entry points, the lack of these fundamental security mechanisms means that if any new entry points were to be introduced in future versions or through interactions with other plugins, they would be inherently unprotected. The vulnerability history is also clean, showing no recorded CVEs, which is a positive sign, but it doesn't entirely compensate for the missing checks that are standard security practices.
In conclusion, rescindly-for-woocommerce v1.4.2 appears to be a secure plugin based on the current analysis, particularly concerning its handling of database interactions and output. The developers have implemented robust practices in these areas. The primary weakness lies in the absence of nonce and capability checks, which represents a missed opportunity for fundamental security hardening. While no active vulnerabilities are evident, this omission could pose a risk if the plugin's interaction surface expands.
Key Concerns
- Missing nonce checks
- Missing capability checks
Rescindly for WooCommerce Security Vulnerabilities
Rescindly for WooCommerce Release Timeline
Rescindly for WooCommerce Code Analysis
Output Escaping
Rescindly for WooCommerce Attack Surface
WordPress Hooks 11
Maintenance & Trust
Rescindly for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
Rescindly for WooCommerce Alternatives
EU Order Withdrawal Button for WooCommerce
eu-order-withdrawal-button-for-woocommerce
This plugin helps to comply with the latest EU directive 2023/2673 by embedding a withdrawal button within your WooCommerce store.
nnax Withdrawal
nnax-withdrawal
Two-step withdrawal form flow for WordPress and WooCommerce with email confirmations and backend tracking.
WooCommerce PayPal Payments
woocommerce-paypal-payments
PayPal's latest payment processing solution. Accept PayPal, Pay Later, credit/debit cards, alternative digital wallets and bank accounts.
Mollie Payments for WooCommerce
mollie-payments-for-woocommerce
Accept all major payment methods in WooCommerce today. Credit cards, iDEAL and more! Fast, safe and intuitive.
TI WooCommerce Wishlist
ti-woocommerce-wishlist
Boost your sales with a free WooCommerce Wishlist feature. Let your customers save and share their favorite products!
Rescindly for WooCommerce Developer Profile
1 plugin · 0 total installs
How We Detect Rescindly for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/rescindly-for-woocommerce/assets/css/admin.css/wp-content/plugins/rescindly-for-woocommerce/assets/js/admin.jsrescindly-for-woocommerce/assets/css/admin.css?ver=rescindly-for-woocommerce/assets/js/admin.js?ver=HTML / DOM Fingerprints
rescindly-section-titledata-rescindly-orderrescindly_admin_toggle