
Selfnamed: Cosmetics on demand Security & Risk Analysis
wordpress.org/plugins/selfnamed-cosmetics-on-demandCreate and sell organic & vegan skincare products trough print-on-demand dropshipping.
Is Selfnamed: Cosmetics on demand Safe to Use in 2026?
Generally Safe
Score 100/100Selfnamed: Cosmetics on demand has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "selfnamed-cosmetics-on-demand" plugin v2.0.17 exhibits a generally strong security posture, with excellent practices in output escaping, SQL query preparedness, and a lack of known vulnerabilities. The presence of nonce and capability checks on all identified entry points (AJAX and REST API) further bolsters its security by preventing unauthorized access. The plugin also demonstrates good hygiene by not bundling external libraries or performing file operations, which can often introduce vulnerabilities.
However, there are a couple of areas that warrant attention. The use of the `unserialize` function, although not directly flagged as a critical taint flow in this analysis, is inherently risky and can lead to Remote Code Execution vulnerabilities if the serialized data originates from an untrusted source. While the current taint analysis shows no critical or high-severity unsanitized paths, the potential for a vulnerability exists. The plugin also makes a significant number of external HTTP requests (6), which could be a vector for supply chain attacks if the external services become compromised or are themselves malicious.
In conclusion, the plugin is well-secured with strong defenses against common WordPress attack vectors. The primary concern lies with the `unserialize` function and the reliance on external HTTP requests. While no direct vulnerabilities are evident in the provided data, diligent monitoring and potential refactoring to avoid `unserialize` and scrutinizing external requests would further enhance its security.
Key Concerns
- Use of unserialize function
- High number of external HTTP requests
Selfnamed: Cosmetics on demand Security Vulnerabilities
Selfnamed: Cosmetics on demand Code Analysis
Dangerous Functions Found
SQL Query Safety
Output Escaping
Data Flow Analysis
Selfnamed: Cosmetics on demand Attack Surface
AJAX Handlers 2
REST API Routes 1
WordPress Hooks 10
Maintenance & Trust
Selfnamed: Cosmetics on demand Maintenance & Trust
Maintenance Signals
Community Trust
Selfnamed: Cosmetics on demand Alternatives
EPROLO-Dropshipping
eprolo-dropshipping
EPROLO dropshipping allows to import products from Aliexpress or EPROLO to wordpress, woocommerce in one click.
Spreadconnect
wc-spod
Ready to add merch to your website? Spreadconnect is a Print on Demand Dropshipping plug-in for WooCommerce that’s trusted by over 100,000 creators an …
Blanka private label beauty & skincare products app for WooCommerce
blanka
Blanka is an app that let's anyone start their own branded cosmetics and skincare line in under 5 minutes.
Hoplix Integration for WooCommerce
hoplix-print-on-demand-platform
Grow your store with the top print-on-demand dropshipping plugin
Popcustoms – Print on demand & dropshipping, Free Personalizer
popcustoms-integration-for-woocommerce
Print on demand products & embroidery provider, fulfillment & global dropshipping, customize shoes, T-shirt, hats, hoodie, jacket, blanket and more.
Selfnamed: Cosmetics on demand Developer Profile
1 plugin · 200 total installs
How We Detect Selfnamed: Cosmetics on demand
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/selfnamed-cosmetics-on-demand/assets/js/admin/admin.js/wp-content/plugins/selfnamed-cosmetics-on-demand/assets/js/admin/product.js/wp-content/plugins/selfnamed-cosmetics-on-demand/assets/css/admin/style.css/wp-content/plugins/selfnamed-cosmetics-on-demand/assets/css/admin/product-sync.css/wp-content/plugins/selfnamed-cosmetics-on-demand/assets/js/admin/admin.js/wp-content/plugins/selfnamed-cosmetics-on-demand/assets/js/admin/product.js/wp-content/plugins/selfnamed-cosmetics-on-demand/assets/js/admin/admin.js?ver=/wp-content/plugins/selfnamed-cosmetics-on-demand/assets/js/admin/product.js?ver=/wp-content/plugins/selfnamed-cosmetics-on-demand/assets/css/admin/style.css?ver=/wp-content/plugins/selfnamed-cosmetics-on-demand/assets/css/admin/product-sync.css?ver=HTML / DOM Fingerprints
sn_admin_product