SmartSalesBoost Security & Risk Analysis

wordpress.org/plugins/smart-sales-boost

🚀 Boost your WooCommerce sales with intelligent cross-selling campaigns at multiple stages of the customer journey.

0 active installs v1.0.1 PHP 7.4+ WP 5.8+ Updated Apr 1, 2025
cross-selle-commercemarketingsaleswoocommerce
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is SmartSalesBoost Safe to Use in 2026?

Generally Safe

Score 92/100

SmartSalesBoost has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The 'smart-sales-boost' plugin v1.0.1 exhibits a generally strong security posture based on the provided static analysis. A significant majority of SQL queries utilize prepared statements, and output escaping is almost universally applied, indicating good development practices for preventing common web vulnerabilities. The plugin also implements a respectable number of nonce and capability checks, further contributing to its defensive mechanisms. The absence of known CVEs and historical vulnerabilities is a positive indicator of the plugin's current stability and the developers' attention to security.

Key Concerns

  • Taint analysis shows unsanitized paths in flows
  • 5 high severity taint flows found
  • External HTTP request observed
Vulnerabilities
None known

SmartSalesBoost Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

SmartSalesBoost Code Analysis

Dangerous Functions
0
Raw SQL Queries
1
43 prepared
Unescaped Output
2
153 escaped
Nonce Checks
15
Capability Checks
9
File Operations
0
External Requests
1
Bundled Libraries
0

SQL Query Safety

98% prepared44 total queries

Output Escaping

99% escaped155 total outputs
Data Flows
5 unsanitized

Data Flow Analysis

7 flows5 with unsanitized paths
smartsalesboost_ajax_duplicate_campaign (includes\Admin\CampaignHandler.php:408)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

SmartSalesBoost Attack Surface

Entry Points21
Unprotected0

AJAX Handlers 20

authwp_ajax_smartsalesboost_save_campaignincludes\Admin\CampaignHandler.php:23
authwp_ajax_smartsalesboost_delete_campaignincludes\Admin\CampaignHandler.php:24
authwp_ajax_smartsalesboost_toggle_campaignincludes\Admin\CampaignHandler.php:25
authwp_ajax_smartsalesboost_search_productsincludes\Admin\CampaignHandler.php:26
authwp_ajax_smartsalesboost_duplicate_campaignincludes\Admin\CampaignHandler.php:27
authwp_ajax_smartsalesboost_save_campaignincludes\Admin\class-campaign-handler.php:16
authwp_ajax_smartsalesboost_delete_campaignincludes\Admin\class-campaign-handler.php:17
authwp_ajax_smartsalesboost_toggle_campaignincludes\Admin\class-campaign-handler.php:18
authwp_ajax_smartsalesboost_search_productsincludes\Admin\class-campaign-handler.php:19
authwp_ajax_smartsalesboost_add_to_cartincludes\Frontend\AjaxHandler.php:13
noprivwp_ajax_smartsalesboost_add_to_cartincludes\Frontend\AjaxHandler.php:14
authwp_ajax_smartsalesboost_add_to_orderincludes\Frontend\AjaxHandler.php:16
noprivwp_ajax_smartsalesboost_add_to_orderincludes\Frontend\AjaxHandler.php:17
authwp_ajax_smartsalesboost_remove_from_orderincludes\Frontend\AjaxHandler.php:19
noprivwp_ajax_smartsalesboost_remove_from_orderincludes\Frontend\AjaxHandler.php:20
authwp_ajax_smartsalesboost_remove_from_cartincludes\Frontend\AjaxHandler.php:22
noprivwp_ajax_smartsalesboost_remove_from_cartincludes\Frontend\AjaxHandler.php:23
authwp_ajax_smartsalesboost_update_cart_quantityincludes\Frontend\AjaxHandler.php:25
noprivwp_ajax_smartsalesboost_update_cart_quantityincludes\Frontend\AjaxHandler.php:26
authwp_ajax_smartsalesboost_handle_tracking_consentsmart-sales-boost.php:170

Shortcodes 1

[smartsalesboost] includes\Frontend\ShortcodeRenderer.php:15
WordPress Hooks 19
actionadmin_menuincludes\Admin\class-admin-menu.php:13
actionadmin_enqueue_scriptsincludes\Admin\class-admin-menu.php:14
actionadmin_menuincludes\Admin\Menu.php:16
actionadmin_enqueue_scriptsincludes\Admin\Menu.php:17
actionadmin_noticesincludes\Admin\Menu.php:37
actionsmartsalesboost_track_eventincludes\class-ga4-tracking.php:16
actionwp_enqueue_scriptsincludes\class-smartsalesboost.php:36
actionadmin_enqueue_scriptsincludes\class-smartsalesboost.php:37
actionadmin_enqueue_scriptsincludes\class-tracking-consent-modal.php:11
actionadmin_footerincludes\class-tracking-consent-modal.php:12
filterwoocommerce_get_cart_item_from_sessionincludes\Frontend\AjaxHandler.php:28
filterwoocommerce_before_calculate_totalsincludes\Frontend\AjaxHandler.php:29
actionwoocommerce_thankyouincludes\Frontend\ThankYouHandler.php:13
actionbefore_woocommerce_initsmart-sales-boost.php:32
actionplugins_loadedsmart-sales-boost.php:123
actionadmin_noticessmart-sales-boost.php:126
actionadmin_noticessmart-sales-boost.php:135
actionactivated_pluginsmart-sales-boost.php:200
actionadmin_menusrc\Admin\AdminMenu.php:13
Maintenance & Trust

SmartSalesBoost Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedApr 1, 2025
PHP min version7.4
Downloads466

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

SmartSalesBoost Developer Profile

Logik Labs

5 plugins · 0 total installs

93
trust score
Avg Security Score
98/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect SmartSalesBoost

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/smart-sales-boost/assets/css/admin.css/wp-content/plugins/smart-sales-boost/assets/css/frontend.css/wp-content/plugins/smart-sales-boost/assets/js/admin.js/wp-content/plugins/smart-sales-boost/assets/js/frontend.js/wp-content/plugins/smart-sales-boost/assets/js/tracking-consent.js
Script Paths
/wp-content/plugins/smart-sales-boost/assets/js/admin.js/wp-content/plugins/smart-sales-boost/assets/js/frontend.js/wp-content/plugins/smart-sales-boost/assets/js/tracking-consent.js
Version Parameters
smart-sales-boost/assets/css/admin.css?ver=smart-sales-boost/assets/css/frontend.css?ver=smart-sales-boost/assets/js/admin.js?ver=smart-sales-boost/assets/js/frontend.js?ver=smart-sales-boost/assets/js/tracking-consent.js?ver=

HTML / DOM Fingerprints

CSS Classes
smartsalesboost-consent-modalsmartsalesboost-consent-modal-overlaysmartsalesboost-consent-modal-contentsmartsalesboost-consent-modal-headersmartsalesboost-consent-modal-bodysmartsalesboost-consent-modal-footersmartsalesboost-consent-button
HTML Comments
<!-- SmartSalesBoost Tracking Consent Modal --><!-- SmartSalesBoost Tracking Consent Modal Overlay --><!-- SmartSalesBoost Tracking Consent Modal Content --><!-- SmartSalesBoost Tracking Consent Modal Header -->+2 more
Data Attributes
data-smartsalesboost-tracking-urldata-smartsalesboost-ga4-iddata-smartsalesboost-ga4-events
JS Globals
smartSalesBoostAdminsmartSalesBoostFrontend
REST Endpoints
/wp-json/smartsalesboost/v1/track-event/wp-json/smartsalesboost/v1/handle-tracking-consent
FAQ

Frequently Asked Questions about SmartSalesBoost