
Simple Points and Rewards for WooCommerce – Create a Loyalty Program Security & Risk Analysis
wordpress.org/plugins/simple-points-and-rewardsWooCommerce Points and Rewards plugin. Create a simple but powerful loyalty program. Reward purchases, referrals, and much more.
Is Simple Points and Rewards for WooCommerce – Create a Loyalty Program Safe to Use in 2026?
Generally Safe
Score 100/100Simple Points and Rewards for WooCommerce – Create a Loyalty Program has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "simple-points-and-rewards" plugin v1.10.0 presents a mixed security posture. On the positive side, the plugin demonstrates good practices by utilizing prepared statements for all SQL queries, a high percentage of properly escaped output, and a robust number of nonce and capability checks. The absence of known vulnerabilities and dangerous functions in its history is also a significant strength. However, a notable concern arises from the static analysis revealing 30 AJAX handlers, with one handler lacking authentication checks. Furthermore, the taint analysis identified 6 high-severity flows with unsanitized paths, which could potentially be exploited if an attacker can control the input to these flows. While the vulnerability history is clean, the presence of these specific code signals warrants attention. The plugin's overall security is reasonably good due to strong SQL and output handling, but the unprotected AJAX handler and high-severity unsanitized taint flows represent the primary areas of risk.
Key Concerns
- Unprotected AJAX handler
- High severity unsanitized taint flows
Simple Points and Rewards for WooCommerce – Create a Loyalty Program Security Vulnerabilities
Simple Points and Rewards for WooCommerce – Create a Loyalty Program Release Timeline
Simple Points and Rewards for WooCommerce – Create a Loyalty Program Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
Simple Points and Rewards for WooCommerce – Create a Loyalty Program Attack Surface
AJAX Handlers 30
Shortcodes 5
WordPress Hooks 78
Maintenance & Trust
Simple Points and Rewards for WooCommerce – Create a Loyalty Program Maintenance & Trust
Maintenance Signals
Community Trust
Simple Points and Rewards for WooCommerce – Create a Loyalty Program Alternatives
Points and Rewards for WooCommerce – LoyaltyX (Referral, Gamification & Loyalty Program)
loyaltyx-points-and-rewards-for-woocommerce
A lightweight WooCommerce points and rewards plugin to run a loyalty program where customers earn points on purchases and redeem them for discounts.
Loyalty Points and Rewards for Square
loyalty-points-and-rewards-for-square
Add a Square loyalty program to WooCommerce store. Enable customers to earn and track reward points automatically with Square loyalty integration.
Points and Rewards for WooCommerce
points-and-rewards-for-woocommerce
Points and Rewards for WooCommerce offer a reward for points to your customers for their activities & increase customer loyalty.
Easy Loyalty Points and Rewards for WooCommerce
easy-loyalty-points-and-rewards-for-woocommerce
A lightweight, easy to use customer loyalty system for WooCommerce.
XT Points & Rewards for WooCommerce
xt-woo-points-rewards
Points and Rewards for WooCommerce that lets you reward your customers for purchases and other actions with points that can be redeemed for discounts.
Simple Points and Rewards for WooCommerce – Create a Loyalty Program Developer Profile
8 plugins · 146K total installs
How We Detect Simple Points and Rewards for WooCommerce – Create a Loyalty Program
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/simple-points-and-rewards/assets/css/admin-style.css/wp-content/plugins/simple-points-and-rewards/assets/js/admin-script.js/wp-content/plugins/simple-points-and-rewards/assets/js/frontend-script.js/wp-content/plugins/simple-points-and-rewards/assets/css/frontend-style.css/wp-content/plugins/simple-points-and-rewards/assets/css/myaccount-style.css/wp-content/plugins/simple-points-and-rewards/assets/js/myaccount-script.js/wp-content/plugins/simple-points-and-rewards/assets/js/admin-script.js/wp-content/plugins/simple-points-and-rewards/assets/js/frontend-script.js/wp-content/plugins/simple-points-and-rewards/assets/js/myaccount-script.jssimple-points-and-rewards/assets/css/admin-style.css?ver=simple-points-and-rewards/assets/js/admin-script.js?ver=simple-points-and-rewards/assets/js/frontend-script.js?ver=simple-points-and-rewards/assets/css/frontend-style.css?ver=simple-points-and-rewards/assets/css/myaccount-style.css?ver=simple-points-and-rewards/assets/js/myaccount-script.js?ver=HTML / DOM Fingerprints
spar-points-balance-wrapperspar-points-log-tablespar-referral-code-wrapperCustomer detail admin pagedata-user-iddata-noncespar_varsspar_redeem_ajax_object/wp-json/spar/v1/points/redeem/wp-json/spar/v1/referral/track/wp-json/spar/v1/referral/offer/apply[spar_points_balance][spar_points_log][spar_referral_link][spar_referral_stats]