RIACO Autocomplete Orders for WooCommerce Security & Risk Analysis

wordpress.org/plugins/riaco-autocomplete-orders-for-woocommerce

Automatically complete WooCommerce orders based on product types and order statuses. Save time and streamline your order fulfillment process.

10 active installs v1.0.1 PHP 7.4+ WP 5.6+ Updated Sep 4, 2025
autocompleteautocomplete-ordersdownloadableorderswoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is RIACO Autocomplete Orders for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

RIACO Autocomplete Orders for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 8mo ago
Risk Assessment

The riaco-autocomplete-orders-for-woocommerce v1.0.1 plugin exhibits a strong security posture based on the provided static analysis. The absence of any identified dangerous functions, SQL queries not using prepared statements, file operations, or external HTTP requests is a positive indicator. Furthermore, the 100% proper output escaping suggests a good practice for preventing cross-site scripting vulnerabilities. The plugin also demonstrates a well-defined attack surface with zero identified entry points lacking authentication checks. The vulnerability history showing no known CVEs further reinforces this positive outlook.

While the code analysis reveals no immediate critical vulnerabilities, the total of zero flows analyzed in the taint analysis is a point of caution. This might suggest a limited scope of analysis or a very simple plugin, but it means potential complex vulnerabilities might have been missed. The complete lack of nonce checks, though mitigated by the absence of unprotected AJAX handlers, is a general best practice that is not implemented here. The single capability check indicates some form of access control, but its effectiveness in preventing privilege escalation cannot be fully assessed without more context.

In conclusion, the plugin appears to be built with security in mind, following many good coding practices. The absence of known vulnerabilities and the clean static analysis are strong points. However, the limited taint analysis and the absence of nonce checks, while not currently exploitable due to the limited attack surface, represent areas where future improvements could be made to further harden the plugin against potential threats.

Key Concerns

  • No nonce checks implemented
Vulnerabilities
None known

RIACO Autocomplete Orders for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

RIACO Autocomplete Orders for WooCommerce Release Timeline

v1.0.1Current
v1.0.0
Code Analysis
Analyzed Mar 17, 2026

RIACO Autocomplete Orders for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
25 escaped
Nonce Checks
0
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped25 total outputs
Attack Surface

RIACO Autocomplete Orders for WooCommerce Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 9
filterwoocommerce_settings_tabs_arrayincludes\class-riaco-ao-admin-settings.php:27
actionwoocommerce_settings_tabs_riaco_autocomplete_ordersincludes\class-riaco-ao-admin-settings.php:28
actionwoocommerce_update_options_riaco_autocomplete_ordersincludes\class-riaco-ao-admin-settings.php:29
actioninitincludes\class-riaco-ao-cpt.php:26
filtermanage_riaco_ao_log_posts_columnsincludes\class-riaco-ao-cpt.php:27
actionmanage_riaco_ao_log_posts_custom_columnincludes\class-riaco-ao-cpt.php:28
actionwoocommerce_order_status_changedincludes\class-riaco-autocomplete-orders.php:101
actionbefore_woocommerce_initriaco-autocomplete-orders-for-woocommerce.php:46
actionplugins_loadedriaco-autocomplete-orders-for-woocommerce.php:73
Maintenance & Trust

RIACO Autocomplete Orders for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedSep 4, 2025
PHP min version7.4
Downloads302

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

RIACO Autocomplete Orders for WooCommerce Developer Profile

robertoiacono

12 plugins · 100 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect RIACO Autocomplete Orders for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/riaco-autocomplete-orders-for-woocommerce/assets/css/riaco-autocomplete-orders-admin.css/wp-content/plugins/riaco-autocomplete-orders-for-woocommerce/assets/js/riaco-autocomplete-orders-admin.js/wp-content/plugins/riaco-autocomplete-orders-for-woocommerce/assets/js/riaco-autocomplete-orders-frontend.js
Script Paths
/wp-content/plugins/riaco-autocomplete-orders-for-woocommerce/assets/js/riaco-autocomplete-orders-admin.js/wp-content/plugins/riaco-autocomplete-orders-for-woocommerce/assets/js/riaco-autocomplete-orders-frontend.js
Version Parameters
riaco-autocomplete-orders-for-woocommerce/assets/css/riaco-autocomplete-orders-admin.css?ver=riaco-autocomplete-orders-for-woocommerce/assets/js/riaco-autocomplete-orders-admin.js?ver=riaco-autocomplete-orders-for-woocommerce/assets/js/riaco-autocomplete-orders-frontend.js?ver=

HTML / DOM Fingerprints

CSS Classes
riaco-autocomplete-orders-admin-wrapriaco-autocomplete-orders-settings-section
HTML Comments
<!-- Start RIACO Autocomplete Orders Settings --><!-- End RIACO Autocomplete Orders Settings --><!-- Custom Post Type: riaco_ao_log --><!-- Labels for Custom Post Type: riaco_ao_log -->
Data Attributes
data-autocompleter-noncedata-autocompleter-urldata-autocompleter-action
JS Globals
riacoAutocompleteOrdersAdmin
FAQ

Frequently Asked Questions about RIACO Autocomplete Orders for WooCommerce