Seel Worry-Free Purchase Security & Risk Analysis

wordpress.org/plugins/seel-worry-free-purchase

Automate returns/exchanges and protect orders with real-time tracking and comprehensive coverage.

10 active installs v1.0.7 PHP + WP 2.9+ Updated Dec 30, 2025
customer-serviceorder-returnorder-trackingshipping-protectionupsell-and-cross-sell
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Seel Worry-Free Purchase Safe to Use in 2026?

Generally Safe

Score 100/100

Seel Worry-Free Purchase has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3mo ago
Risk Assessment

The "seel-worry-free-purchase" plugin version 1.0.7 exhibits a generally strong security posture with excellent practices in SQL query handling and output escaping, both of which are heavily sanitized. The absence of known vulnerabilities in its history, including no critical or high severity CVEs, further suggests a stable and well-maintained codebase.

However, a significant concern arises from the attack surface. The plugin exposes 9 entry points, with a notable 6 of these being AJAX handlers that lack authentication checks. This presents a substantial risk of unauthorized access and manipulation if these endpoints can be triggered by unauthenticated users. While taint analysis did not reveal any immediate critical or high severity vulnerabilities, the presence of unsanitized paths in taint flows can sometimes be a precursor to exploitable issues, although in this case, none were found.

Despite the robust data sanitization and output escaping, the unprotected AJAX handlers are a critical weakness that overshadows the otherwise good coding practices. The plugin's history of no vulnerabilities is a positive indicator, but it doesn't negate the immediate risks posed by the exposed AJAX endpoints. A balanced conclusion would be that the plugin has good internal code quality but suffers from a significant exposure of its functionality to unauthenticated users, requiring immediate attention.

Key Concerns

  • Unprotected AJAX handlers
  • Large attack surface (9 entry points)
Vulnerabilities
None known

Seel Worry-Free Purchase Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Seel Worry-Free Purchase Code Analysis

Dangerous Functions
0
Raw SQL Queries
1
6 prepared
Unescaped Output
1
52 escaped
Nonce Checks
6
Capability Checks
4
File Operations
0
External Requests
5
Bundled Libraries
0

SQL Query Safety

86% prepared7 total queries

Output Escaping

98% escaped53 total outputs
Data Flows
All sanitized

Data Flow Analysis

3 flows
seelwopu_handle_auth_return (admin\class-seel-worry-free-purchase-admin.php:158)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
6 unprotected

Seel Worry-Free Purchase Attack Surface

Entry Points9
Unprotected6

AJAX Handlers 8

authwp_ajax_seel_revoke_authadmin\class-seel-worry-free-purchase-admin.php:62
authwp_ajax_seel_save_authadmin\class-seel-worry-free-purchase-admin.php:63
authwp_ajax_add_worry_free_purchase_feeincludes\class-seel-worry-free-purchase.php:192
authwp_ajax_remove_worry_free_purchase_feeincludes\class-seel-worry-free-purchase.php:193
authwp_ajax_seel_get_cart_itemsincludes\class-seel-worry-free-purchase.php:196
noprivwp_ajax_seel_get_cart_itemsincludes\class-seel-worry-free-purchase.php:197
noprivwp_ajax_add_worry_free_purchase_feeincludes\class-seel-worry-free-purchase.php:198
noprivwp_ajax_remove_worry_free_purchase_feeincludes\class-seel-worry-free-purchase.php:199

REST API Routes 1

POST/wp-json/seel-worry-free-purchase/v1/refund-worryfreeincludes\class-seel-worry-free-purchase-shipping-protection.php:68
WordPress Hooks 20
actionadmin_initadmin\class-seel-worry-free-purchase-admin.php:61
actionadmin_noticesadmin\class-seel-worry-free-purchase-admin.php:194
filterupdate_order_item_metadataincludes\class-seel-worry-free-purchase-schedule.php:30
actionshutdownincludes\class-seel-worry-free-purchase-schedule.php:36
actionplugins_loadedincludes\class-seel-worry-free-purchase.php:149
actionadmin_enqueue_scriptsincludes\class-seel-worry-free-purchase.php:163
actionwp_enqueue_scriptsincludes\class-seel-worry-free-purchase.php:178
actionwp_enqueue_scriptsincludes\class-seel-worry-free-purchase.php:179
actionwoocommerce_cart_calculate_feesincludes\class-seel-worry-free-purchase.php:190
actionwoocommerce_thankyouincludes\class-seel-worry-free-purchase.php:191
actionwoocommerce_order_refundedincludes\class-seel-worry-free-purchase.php:194
actionrest_api_initincludes\class-seel-worry-free-purchase.php:195
actionwoocommerce_after_add_to_cart_buttonincludes\class-seel-worry-free-purchase.php:201
actionwoocommerce_proceed_to_checkoutincludes\class-seel-worry-free-purchase.php:202
actionwoocommerce_widget_shopping_cart_before_buttonsincludes\class-seel-worry-free-purchase.php:203
actionwoocommerce_review_order_after_order_totalincludes\class-seel-worry-free-purchase.php:204
actionupdated_order_item_metaincludes\class-seel-worry-free-purchase.php:210
actionadded_order_item_metaincludes\class-seel-worry-free-purchase.php:211
actionadmin_noticesseel-worry-free-purchase.php:171
actionadmin_menuseel-worry-free-purchase.php:202
Maintenance & Trust

Seel Worry-Free Purchase Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedDec 30, 2025
PHP min version
Downloads667

Community Trust

Rating100/100
Number of ratings1
Active installs10
Developer Profile

Seel Worry-Free Purchase Developer Profile

seelinc

1 plugin · 10 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Seel Worry-Free Purchase

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/seel-worry-free-purchase/public/css/seel-worry-free-purchase-public.css/wp-content/plugins/seel-worry-free-purchase/public/js/seel-worry-free-purchase-public.js
Script Paths
https://static.seel.com/woocommerce/worry-free-purchase/script/woocommerce.jshttps://static-test.seel.com/woocommerce/worry-free-purchase/script/woocommerce.jshttps://static-qa.seel.com/woocommerce/worry-free-purchase/script/woocommerce.js
Version Parameters
seel-worry-free-purchase/public/css/seel-worry-free-purchase-public.css?ver=seel-worry-free-purchase/public/js/seel-worry-free-purchase-public.js?ver=

HTML / DOM Fingerprints

CSS Classes
seel-worry-free-purchase-product-notice
HTML Comments
<!-- Seel: Worry-Free Purchase Offer<!-- Seel: Product page protection
Data Attributes
data-seel-product-iddata-seel-product-variant-iddata-seel-variant-pricedata-seel-variant-currencydata-seel-product-quantitydata-seel-product-name+6 more
JS Globals
seelWFP
FAQ

Frequently Asked Questions about Seel Worry-Free Purchase