SAFFIRE AI Product Recommendations for WooCommerce Security & Risk Analysis

wordpress.org/plugins/sft-product-recommendations-for-woocommerce

Get ready to experience a truly personalized shopping experience with our all-new plugin, "AI Product Recommendations for WooCommerce.

10 active installs v2.4.2 PHP 7.2+ WP 5.0+ Updated Jan 8, 2026
productsrecentlytoolsviewedwoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is SAFFIRE AI Product Recommendations for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

SAFFIRE AI Product Recommendations for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The plugin "sft-product-recommendations-for-woocommerce" v2.4.2 exhibits a generally good security posture, with several strengths in its implementation. The extensive use of prepared statements for SQL queries (97%) and a high percentage of properly escaped outputs (73%) are positive indicators of secure coding practices. The plugin also includes a reasonable number of nonce checks (18). The absence of any recorded CVEs, critical or high-severity taint flows, and dangerous functions further contributes to a favorable security profile.

However, there are notable areas of concern. The presence of 3 AJAX handlers without authentication checks represents a significant attack surface that could be exploited by unauthenticated users. While the taint analysis did not reveal critical or high-severity issues, 3 flows with unsanitized paths warrant attention. The limited capability check (1) combined with unprotected AJAX endpoints suggests a potential for privilege escalation or unauthorized actions if these endpoints are not properly secured at the application level.

Overall, the plugin demonstrates good foundational security practices, but the unprotected AJAX endpoints are a critical weakness that significantly increases its risk profile. The lack of past vulnerabilities could indicate diligent maintenance or simply a lack of targeting, but the current findings necessitate a cautious approach.

Key Concerns

  • AJAX handlers without authentication checks
  • Flows with unsanitized paths identified
  • Low number of capability checks
Vulnerabilities
None known

SAFFIRE AI Product Recommendations for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

SAFFIRE AI Product Recommendations for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
1
32 prepared
Unescaped Output
389
1043 escaped
Nonce Checks
18
Capability Checks
1
File Operations
0
External Requests
3
Bundled Libraries
1

Bundled Libraries

Select2

SQL Query Safety

97% prepared33 total queries

Output Escaping

73% escaped1432 total outputs
Data Flows
3 unsanitized

Data Flow Analysis

9 flows3 with unsanitized paths
prwfr_recently_viewed_products_front (includes\prwfr-shortcode-slider.php:12)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
3 unprotected

SAFFIRE AI Product Recommendations for WooCommerce Attack Surface

Entry Points27
Unprotected3

AJAX Handlers 13

authwp_ajax_prwfr_ajax_sliderincludes\prwfr-all-ajax-action.php:7
noprivwp_ajax_prwfr_ajax_sliderincludes\prwfr-all-ajax-action.php:8
authwp_ajax_prwfr_gdpr_permissionincludes\prwfr-all-ajax-action.php:426
noprivwp_ajax_prwfr_gdpr_permissionincludes\prwfr-all-ajax-action.php:427
authwp_ajax_prwfr_ai_helpincludes\prwfr-all-ajax-action.php:459
noprivwp_ajax_prwfr_ai_helpincludes\prwfr-all-ajax-action.php:460
authwp_ajax_prwfr_api_key_validationincludes\prwfr-all-ajax-action.php:677
noprivwp_ajax_prwfr_api_key_validationincludes\prwfr-all-ajax-action.php:678
authwp_ajax_prwfr_update_new_sale_notice_readincludes\prwfr-setting-tabs.php:621
authwp_ajax_prwfr_updatesft-product-recommendations-for-woocommerce.php:487
noprivwp_ajax_prwfr_updatesft-product-recommendations-for-woocommerce.php:488
authwp_ajax_prwfr_update_new_feature_notice_readsft-product-recommendations-for-woocommerce.php:1191
noprivwp_ajax_prwfr_update_new_feature_notice_readsft-product-recommendations-for-woocommerce.php:1192

Shortcodes 14

[prwfr_recently_viewed_products_back] includes\prwfr-shortcode-page.php:7
[prwfr_onsale_recently_viewed_products_back] includes\prwfr-shortcode-page.php:158
[prwfr_related_recently_viewed_products_back] includes\prwfr-shortcode-page.php:339
[prwfr_all_onsale_products_back] includes\prwfr-shortcode-page.php:525
[prwfr_featured_products_back] includes\prwfr-shortcode-page.php:591
[prwfr_new_arrivals_back] includes\prwfr-shortcode-page.php:631
[prwfr_best_selling_back] includes\prwfr-shortcode-page.php:711
[prwfr_recently_viewed_products_front] includes\prwfr-shortcode-slider.php:7
[prwfr_onsale_recently_viewed_products_front] includes\prwfr-shortcode-slider.php:227
[prwfr_related_recently_viewed_products_front] includes\prwfr-shortcode-slider.php:492
[prwfr_all_onsale_products_front] includes\prwfr-shortcode-slider.php:786
[prwfr_best_selling_front] includes\prwfr-shortcode-slider.php:873
[prwfr_featured_products_front] includes\prwfr-shortcode-slider.php:962
[prwfr_new_arrivals_front] includes\prwfr-shortcode-slider.php:1032
WordPress Hooks 25
actionprwfr_ai_prompt_content_tab_1includes\prwfr-ai-popup.php:629
actionprwfr_ai_prompt_content_tab_2includes\prwfr-ai-popup.php:630
actionprwfr_ai_prompt_content_tab_3includes\prwfr-ai-popup.php:631
actiontemplate_redirectincludes\prwfr-custom-functions.php:7
actionadmin_menuincludes\prwfr-setting-tabs.php:7
actionadmin_initincludes\prwfr-setting-tabs.php:662
actionplugins_loadedsft-product-recommendations-for-woocommerce.php:41
actionadmin_noticessft-product-recommendations-for-woocommerce.php:72
actioninitsft-product-recommendations-for-woocommerce.php:89
actioninitsft-product-recommendations-for-woocommerce.php:112
actionadmin_noticessft-product-recommendations-for-woocommerce.php:306
actionadmin_initsft-product-recommendations-for-woocommerce.php:312
filterwp_mail_content_typesft-product-recommendations-for-woocommerce.php:405
actionwoocommerce_edit_account_formsft-product-recommendations-for-woocommerce.php:412
filterwoocommerce_my_account_my_orders_actionssft-product-recommendations-for-woocommerce.php:415
actionadmin_noticessft-product-recommendations-for-woocommerce.php:417
actionwoocommerce_after_checkout_billing_formsft-product-recommendations-for-woocommerce.php:542
actioninitsft-product-recommendations-for-woocommerce.php:562
actionprwfr_schedule_mails_rvpsft-product-recommendations-for-woocommerce.php:564
actioninitsft-product-recommendations-for-woocommerce.php:566
actionprwfr_api_request_promptsft-product-recommendations-for-woocommerce.php:820
actionadmin_noticessft-product-recommendations-for-woocommerce.php:1040
actionadmin_noticessft-product-recommendations-for-woocommerce.php:1156
actionwoocommerce_product_options_relatedsft-product-recommendations-for-woocommerce.php:1220
actionwoocommerce_process_product_metasft-product-recommendations-for-woocommerce.php:1221
Maintenance & Trust

SAFFIRE AI Product Recommendations for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedJan 8, 2026
PHP min version7.2
Downloads2K

Community Trust

Rating100/100
Number of ratings1
Active installs10
Developer Profile

SAFFIRE AI Product Recommendations for WooCommerce Developer Profile

SaffireTech

7 plugins · 850 total installs

93
trust score
Avg Security Score
99/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect SAFFIRE AI Product Recommendations for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/sft-product-recommendations-for-woocommerce/assets/css/all.min.css/wp-content/plugins/sft-product-recommendations-for-woocommerce/assets/css/sweetalert2.min.css/wp-content/plugins/sft-product-recommendations-for-woocommerce/assets/js/sweetalert2.all.min.js/wp-content/plugins/sft-product-recommendations-for-woocommerce/assets/css/prwfr-product-recommendations.css/wp-content/plugins/sft-product-recommendations-for-woocommerce/assets/css/select2.min.css/wp-content/plugins/sft-product-recommendations-for-woocommerce/assets/css/font-awesome.min.css/wp-content/plugins/sft-product-recommendations-for-woocommerce/assets/js/prwfr-product-recommendations.js/wp-content/plugins/sft-product-recommendations-for-woocommerce/assets/js/select2.min.js+1 more
Script Paths
wp-content/plugins/sft-product-recommendations-for-woocommerce/assets/js/color-picker.jswp-content/plugins/sft-product-recommendations-for-woocommerce/assets/js/sweetalert2.all.min.jswp-content/plugins/sft-product-recommendations-for-woocommerce/assets/js/prwfr-product-recommendations.jswp-content/plugins/sft-product-recommendations-for-woocommerce/assets/js/select2.min.jswp-content/plugins/sft-product-recommendations-for-woocommerce/assets/js/prwfr-backend.js
Version Parameters
sft-product-recommendations-for-woocommerce/assets/js/color-picker.js?ver=sft-product-recommendations-for-woocommerce/assets/css/all.min.css?ver=sft-product-recommendations-for-woocommerce/assets/css/sweetalert2.min.css?ver=sft-product-recommendations-for-woocommerce/assets/js/sweetalert2.all.min.js?ver=sft-product-recommendations-for-woocommerce/assets/css/prwfr-product-recommendations.css?ver=sft-product-recommendations-for-woocommerce/assets/css/select2.min.css?ver=sft-product-recommendations-for-woocommerce/assets/css/font-awesome.min.css?ver=sft-product-recommendations-for-woocommerce/assets/js/prwfr-product-recommendations.js?ver=sft-product-recommendations-for-woocommerce/assets/js/select2.min.js?ver=sft-product-recommendations-for-woocommerce/assets/js/prwfr-backend.js?ver=

HTML / DOM Fingerprints

CSS Classes
prwfr_admin_notice
HTML Comments
Free to Pro Upgrade alert translation.
JS Globals
prwfr_ajax_action_obj
FAQ

Frequently Asked Questions about SAFFIRE AI Product Recommendations for WooCommerce