Simple Donation For Woo Lite Security & Risk Analysis

wordpress.org/plugins/simple-donation-for-woo-lite

Accept donations for WooCommerce-powered eCommerce site. This plugin will add powerful donation functionality to your website.

0 active installs v1.0 PHP + WP 3.0+ Updated Jul 27, 2024
donationtipswoocommerce-donation
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Simple Donation For Woo Lite Safe to Use in 2026?

Generally Safe

Score 92/100

Simple Donation For Woo Lite has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The "simple-donation-for-woo-lite" v1.0 plugin exhibits a generally strong security posture, with commendable practices such as 100% prepared SQL statements and 96% properly escaped output. The absence of known vulnerabilities and critical taint analysis findings further contributes to this positive assessment. The plugin also demonstrates good use of nonces for its AJAX handlers.

However, there are notable areas of concern. The presence of 3 unprotected AJAX handlers represents a significant attack surface that could potentially be exploited if they handle user-supplied input without proper authentication or authorization. While the plugin has no recorded vulnerability history, this does not negate the inherent risk associated with these unprotected entry points. The relatively small number of entry points and absence of other common vulnerability indicators are strengths, but the unprotected AJAX handlers are the primary weakness requiring attention.

In conclusion, the plugin's code is largely well-written with good security hygiene in place for many common web vulnerabilities. The main concern lies with the unprotected AJAX endpoints, which, despite no historical exploits, present a clear risk that should be addressed by implementing appropriate authentication and authorization checks. The lack of a vulnerability history is a positive sign but should be viewed in conjunction with the identified code-level risks.

Key Concerns

  • Unprotected AJAX handlers
Vulnerabilities
None known

Simple Donation For Woo Lite Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Simple Donation For Woo Lite Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
4 prepared
Unescaped Output
10
270 escaped
Nonce Checks
8
Capability Checks
2
File Operations
1
External Requests
0
Bundled Libraries
1

Bundled Libraries

jQuery

SQL Query Safety

100% prepared4 total queries

Output Escaping

96% escaped280 total outputs
Data Flows
All sanitized

Data Flow Analysis

1 flows
<simple-donation-for-woo> (simple-donation-for-woo.php:0)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
3 unprotected

Simple Donation For Woo Lite Attack Surface

Entry Points9
Unprotected3

AJAX Handlers 8

authwp_ajax_fcf_get_cart_datasimple-donation-for-woo.php:27
noprivwp_ajax_fcf_get_cart_datasimple-donation-for-woo.php:28
authwp_ajax_sdfw_add_donationsimple-donation-for-woo.php:31
noprivwp_ajax_sdfw_add_donationsimple-donation-for-woo.php:32
authwp_ajax__ajax_donation_displaysimple-donation-for-woo.php:46
authwp_ajax__ajax_fetch_sts_historysimple-donation-for-woo.php:47
authwp_ajax_add_update_donation_amtsimple-donation-for-woo.php:49
authwp_ajax_delete_donation_amtsimple-donation-for-woo.php:50

Shortcodes 1

[i13_donation_print_form] simple-donation-for-woo.php:62
WordPress Hooks 19
actionplugins_loadedsimple-donation-for-woo.php:24
actionget_footersimple-donation-for-woo.php:25
filterwoocommerce_add_to_cart_validationsimple-donation-for-woo.php:30
actionwoocommerce_after_cart_tablesimple-donation-for-woo.php:35
actionwoocommerce_after_cartsimple-donation-for-woo.php:36
filterwidget_textsimple-donation-for-woo.php:38
actionwoocommerce_before_calculate_totalssimple-donation-for-woo.php:39
actionwoocommerce_remove_cart_itemsimple-donation-for-woo.php:40
filteruser_has_capsimple-donation-for-woo.php:41
actionadmin_menusimple-donation-for-woo.php:43
actionadmin_initsimple-donation-for-woo.php:45
actionadmin_footersimple-donation-for-woo.php:48
filterwoocommerce_add_cart_item_datasimple-donation-for-woo.php:51
filterwoocommerce_order_item_namesimple-donation-for-woo.php:53
filterwoocommerce_checkout_create_order_line_itemsimple-donation-for-woo.php:54
actionwoocommerce_review_order_before_paymentsimple-donation-for-woo.php:58
filterwoocommerce_cart_item_permalinksimple-donation-for-woo.php:60
filterwoocommerce_order_item_permalinksimple-donation-for-woo.php:61
filtermap_meta_capsimple-donation-for-woo.php:1612
Maintenance & Trust

Simple Donation For Woo Lite Maintenance & Trust

Maintenance Signals

WordPress version tested6.6.5
Last updatedJul 27, 2024
PHP min version
Downloads663

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Simple Donation For Woo Lite Developer Profile

Nks

19 plugins · 23K total installs

77
trust score
Avg Security Score
97/100
Avg Patch Time
350 days
View full developer profile
Detection Fingerprints

How We Detect Simple Donation For Woo Lite

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/simple-donation-for-woo-lite/assets/css/cart.css/wp-content/plugins/simple-donation-for-woo-lite/assets/js/cart.js/wp-content/plugins/simple-donation-for-woo-lite/assets/js/checkout.js/wp-content/plugins/simple-donation-for-woo-lite/assets/js/donation.js
Script Paths
/wp-content/plugins/simple-donation-for-woo-lite/assets/js/cart.js/wp-content/plugins/simple-donation-for-woo-lite/assets/js/checkout.js/wp-content/plugins/simple-donation-for-woo-lite/assets/js/donation.js
Version Parameters
simple-donation-for-woo-lite/assets/css/cart.css?ver=simple-donation-for-woo-lite/assets/js/cart.js?ver=simple-donation-for-woo-lite/assets/js/checkout.js?ver=simple-donation-for-woo-lite/assets/js/donation.js?ver=

HTML / DOM Fingerprints

CSS Classes
i13_donation_field
Data Attributes
data-nonce
JS Globals
i13_woo_simple_donation_frontend_obj
Shortcode Output
[i13_donation_print_form]
FAQ

Frequently Asked Questions about Simple Donation For Woo Lite