
Shatner – Name your Own Price Integration for WooCommerce Security & Risk Analysis
wordpress.org/plugins/shatner-name-your-own-price-for-woocommerceShatner lets users name their own price
Is Shatner – Name your Own Price Integration for WooCommerce Safe to Use in 2026?
Generally Safe
Score 85/100Shatner – Name your Own Price Integration for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "shatner-name-your-own-price-for-woocommerce" plugin, version 1.7, demonstrates a strong security posture in several key areas. The static analysis reveals a complete absence of dangerous functions, external HTTP requests, file operations, and SQL queries that do not utilize prepared statements. Furthermore, there are no identified CVEs or past vulnerabilities, suggesting a history of stable and secure code. The attack surface is also remarkably small, with no AJAX handlers, REST API routes, shortcodes, or cron events, which significantly limits potential entry points for attackers.
However, a significant concern arises from the complete lack of output escaping. With 6 total outputs and 0% properly escaped, this leaves the plugin highly susceptible to Cross-Site Scripting (XSS) vulnerabilities. Any user-provided data displayed on the frontend without proper sanitization could be exploited by attackers to inject malicious scripts. Additionally, the absence of nonce and capability checks across all identified entry points means that any functionality, if discovered, could potentially be invoked by unauthenticated or unauthorized users, leading to privilege escalation or unintended actions. While the plugin boasts a clean vulnerability history, this is overshadowed by the critical oversight in output sanitization and authorization checks.
Key Concerns
- 0% of outputs are properly escaped
- No nonce checks found
- No capability checks found
Shatner – Name your Own Price Integration for WooCommerce Security Vulnerabilities
Shatner – Name your Own Price Integration for WooCommerce Code Analysis
Output Escaping
Shatner – Name your Own Price Integration for WooCommerce Attack Surface
WordPress Hooks 1
Maintenance & Trust
Shatner – Name your Own Price Integration for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
Shatner – Name your Own Price Integration for WooCommerce Alternatives
Donation Platform for WooCommerce: Fundraising & Donation Management
wc-donation-platform
Open source donation system for your fundraising that supports recurring donations and more
Potent Donations for WooCommerce
donations-for-woocommerce
Easily accept donations of varying amounts through your WooCommerce store.
Order Tip for WooCommerce
order-tip-woo
Order Tip for WooCommerce adds a form to your cart and checkout pages where your customers will be able to add tips or donations
WPC Order Tip for WooCommerce
wpc-order-tip
WPC Order Tip is a plugin that enables customers to add extra amounts to their order as a tip or donation to the seller or specified recipients.
Donation or Tip For WooCommerce
donation-or-tip-for-woocommerce
Add a customizable donation or tip field to your WooCommerce cart and checkout page. Support fixed amounts, percentage tips, and custom input — no cod …
Shatner – Name your Own Price Integration for WooCommerce Developer Profile
3 plugins · 6K total installs
How We Detect Shatner – Name your Own Price Integration for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/shatner-name-your-own-price-for-woocommerce/custom_styles.css/wp-content/plugins/shatner-name-your-own-price-for-woocommerce/shatner.jsshatner-name-your-own-price-for-woocommerce/custom_styles.css?ver=1.0.1HTML / DOM Fingerprints
shatner