RevCent Payments for WooCommerce Security & Risk Analysis

wordpress.org/plugins/revcent-payments

Transform your WooCommerce store with RevCent's enterprise-level ecommerce management system. AI automation, advanced payment processing, and rev …

10 active installs v2.0.9 PHP 7.4+ WP 4.0+ Updated Jan 12, 2026
ai-chatai-customer-serviceai-voice-agentspayment-gatewaywoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is RevCent Payments for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

RevCent Payments for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The revcent-payments plugin v2.0.9 exhibits a strong security posture based on the provided static analysis. The absence of any identified AJAX handlers, REST API routes, shortcodes, or cron events with unprotected entry points suggests a well-contained attack surface. Furthermore, the code signals are encouraging, with no dangerous functions, all SQL queries utilizing prepared statements, and all output being properly escaped. The plugin also avoids file operations and has limited external HTTP requests, which further reduces its vulnerability footprint. The lack of any recorded vulnerabilities or CVEs in its history indicates a history of responsible development and patching.

While the static analysis reveals excellent adherence to secure coding practices, the presence of 0 nonce checks and 0 capability checks across all entry points (even though there are no identified entry points in this specific analysis) is a potential concern. If any entry points were to be introduced or overlooked in future versions, the lack of these fundamental security mechanisms could expose the plugin to cross-site request forgery (CSRF) or unauthorized action vulnerabilities. The external HTTP requests, while limited, are also a potential point of failure if the external services are compromised or introduce vulnerabilities. Overall, the plugin appears secure, but the absence of fundamental security checks on potential future entry points is a weakness to monitor.

Key Concerns

  • No nonce checks found
  • No capability checks found
Vulnerabilities
None known

RevCent Payments for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

RevCent Payments for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
16 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
2
Bundled Libraries
0

Output Escaping

100% escaped16 total outputs
Attack Surface

RevCent Payments for WooCommerce Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 12
actionplugins_loadedrevcent-payment-gateway.php:23
actionwp_enqueue_scriptsrevcent-payment-gateway.php:24
actionwoocommerce_blocks_loadedrevcent-payment-gateway.php:25
filterwoocommerce_payment_gatewaysrevcent-payment-gateway.php:40
actionwoocommerce_blocks_payment_method_type_registrationrevcent-payment-gateway.php:55
actionbefore_woocommerce_initrevcent-payment-gateway.php:107
actionbefore_woocommerce_initrevcent-payment-gateway.php:116
actionwoocommerce_rest_checkout_process_payment_with_contextrevcent-payments.php:36
filterrevcent_payload_request_argswoofunnels\class-wfocu-revcent-gateway-credit-cards.php:21
actionwfocu_front_primary_order_cancelledwoofunnels\class-wfocu-revcent-gateway-credit-cards.php:22
actionwfocu_after_normalize_order_statuswoofunnels\class-wfocu-revcent-gateway-credit-cards.php:23
filterwfocu_wc_get_supported_gatewayswoofunnels\upstroke-woocommerce-one-click-upsell-revcent.php:64
Maintenance & Trust

RevCent Payments for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedJan 12, 2026
PHP min version7.4
Downloads7K

Community Trust

Rating100/100
Number of ratings4
Active installs10
Developer Profile

RevCent Payments for WooCommerce Developer Profile

revcent_com

1 plugin · 10 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect RevCent Payments for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/revcent-payments/assets/js/revcent.js/wp-content/plugins/revcent-payments/assets/css/revcent.css
Script Paths
https://rctrk.example.com/trk.js
Version Parameters
revcent-payments/assets/js/revcent.js?ver=revcent-payments/assets/css/revcent.css?ver=

HTML / DOM Fingerprints

CSS Classes
revcent-checkout-fieldrevcent-payment-form
HTML Comments
<!-- RevCent Payment Fields --><!-- End RevCent Payment Fields -->
Data Attributes
data-revcent-api-keydata-revcent-shop-id
JS Globals
window.revcent_data
REST Endpoints
/wp-json/revcent/v1/process-payment
Shortcode Output
<div class="revcent-shortcode-payment-button">
FAQ

Frequently Asked Questions about RevCent Payments for WooCommerce