Softwear for woocommerce Security & Risk Analysis

wordpress.org/plugins/softwear-for-woocommerce

Connecting Softwear to WooCommerce to sync all your products, orders and payments.

0 active installs v2.0.0 PHP 7.4+ WP 6.3+ Updated Sep 25, 2025
e-commercesalesstorewoowoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Softwear for woocommerce Safe to Use in 2026?

Generally Safe

Score 100/100

Softwear for woocommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 6mo ago
Risk Assessment

The 'softwear-for-woocommerce' v2.0.0 plugin exhibits a mixed security posture. On the positive side, the plugin demonstrates good practices regarding SQL queries, utilizing prepared statements exclusively, and has a clean vulnerability history with no recorded CVEs. The absence of raw SQL queries and critical/high taint flows is also commendable. However, a significant concern lies in its attack surface. With 13 AJAX handlers, a concerning 12 are exposed without any authentication or capability checks, representing a substantial risk of unauthorized actions if these handlers can be triggered by unauthenticated users. While taint analysis found no unsanitized paths, the sheer number of unprotected entry points could still be exploited through various means if they accept user-controlled input that isn't properly validated or sanitized within the handler's logic. The output escaping is decent but not perfect, with 19% of outputs potentially unescaped, which could lead to XSS vulnerabilities if sensitive data is involved. The presence of Select2 as a bundled library is noted, and its version would ideally be checked for known vulnerabilities, though no direct issues are reported here.

Key Concerns

  • 12 unprotected AJAX handlers
  • 19% of outputs not properly escaped
Vulnerabilities
None known

Softwear for woocommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Softwear for woocommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
4 prepared
Unescaped Output
44
189 escaped
Nonce Checks
9
Capability Checks
0
File Operations
0
External Requests
1
Bundled Libraries
1

Bundled Libraries

Select2

SQL Query Safety

100% prepared4 total queries

Output Escaping

81% escaped233 total outputs
Data Flows
All sanitized

Data Flow Analysis

5 flows
softwearwc_attribute_table_page_content (src\pages\home-page.php:97)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
12 unprotected

Softwear for woocommerce Attack Surface

Entry Points13
Unprotected12

AJAX Handlers 13

authwp_ajax_softwearwc_send_everything_to_webshopsrc\functions\sync-functions.php:12
authwp_ajax_softwearwc_send_products_to_webshopsrc\functions\sync-functions.php:20
authwp_ajax_softwearwc_send_attributes_to_webshopsrc\functions\sync-functions.php:28
authwp_ajax_softwearwc_send_categories_to_webshopsrc\functions\sync-functions.php:36
authwp_ajax_softwearwc_send_brands_to_webshopsrc\functions\sync-functions.php:44
authwp_ajax_softwearwc_send_stock_to_webshopsrc\functions\sync-functions.php:52
authwp_ajax_softwearwc_connect_products_to_webshopsrc\functions\sync-functions.php:60
authwp_ajax_softwearwc_clean_everything_from_webshopsrc\functions\sync-functions.php:68
authwp_ajax_softwearwc_clean_products_from_webshopsrc\functions\sync-functions.php:76
authwp_ajax_softwearwc_clean_attributes_from_webshopsrc\functions\sync-functions.php:84
authwp_ajax_softwearwc_clean_categories_from_webshopsrc\functions\sync-functions.php:92
authwp_ajax_softwearwc_clean_brands_from_webshopsrc\functions\sync-functions.php:100
authwp_ajax_softwearwc_force_syncsrc\meta-boxes\order-meta-box.php:79
WordPress Hooks 20
actionadmin_noticessoftwear-for-woocommerce.php:6
actionadmin_enqueue_scriptssrc\js\initialize-js-scripts.php:206
actionadd_meta_boxessrc\meta-boxes\order-meta-box.php:5
actionadmin_headsrc\pages\load-pages.php:58
actionadmin_headsrc\pages\load-pages.php:59
actionadmin_headsrc\pages\load-pages.php:60
actionadmin_menusrc\pages\load-pages.php:107
actionadmin_initsrc\settings\initialize-settings.php:2
actionwoocommerce_attribute_deletedsrc\webhooks\attributes-webhook.php:4
actiondelete_product_catsrc\webhooks\categories-webhook.php:4
actionwoocommerce_order_status_changedsrc\webhooks\orders-webhook.php:4
actionbefore_delete_postsrc\webhooks\products-webhook.php:4
actionadd_option_softwearwc_settingssrc\webhooks\settings-webhook.php:4
actionupdate_option_softwearwc_settingssrc\webhooks\settings-webhook.php:5
actionadd_option_softwearwc_settings_retailsrc\webhooks\settings-webhook.php:29
actionupdate_option_softwearwc_settings_retailsrc\webhooks\settings-webhook.php:30
actionadd_option_softwearwc_settings_latest_collectionsrc\webhooks\settings-webhook.php:56
actionupdate_option_softwearwc_settings_latest_collectionsrc\webhooks\settings-webhook.php:57
actionadd_option_softwearwc_settings_othersrc\webhooks\settings-webhook.php:82
actionupdate_option_softwearwc_settings_othersrc\webhooks\settings-webhook.php:83
Maintenance & Trust

Softwear for woocommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedSep 25, 2025
PHP min version7.4
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Softwear for woocommerce Developer Profile

TechDog

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Softwear for woocommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
../assets/js/chart.min.js../assets/css/main.css../assets/css/settings.css
Script Paths
/wp-content/plugins/softwear-for-woocommerce/src/js/check-save-button.js/wp-content/plugins/softwear-for-woocommerce/src/js/syncs-script.js/wp-content/plugins/softwear-for-woocommerce/src/js/chart.min.js
Version Parameters
softwear-for-woocommerce/src/js/check-save-button.js?ver=softwear-for-woocommerce/src/js/syncs-script.js?ver=softwear-for-woocommerce/src/js/chart.min.js?ver=softwear-for-woocommerce/assets/css/main.css?ver=softwear-for-woocommerce/assets/css/settings.css?ver=

HTML / DOM Fingerprints

CSS Classes
softwearwc-sync-button
HTML Comments
<!-- This file is read by WordPress to generate the plugin information in the plugin * admin area. This file also includes all of the dependencies used by the plugin, * registers the activation and deactivation functions, and defines a function * that starts the plugin. --><!-- When the plugin is deactivated it calls this function and does the following things: * * It deletes all the trainsients out of the database * --><!-- Shows a notice that tells that the woocommerce plugin needs to be installed for this plugin to work. --><!-- The url to the woocommerce plugin for instalation. -->+9 more
Data Attributes
data-softwearwc-action
JS Globals
softwearwc_syncs_script_paramssoftwearwcTranslations
FAQ

Frequently Asked Questions about Softwear for woocommerce