
Store Analytics Lite for WooCommerce (KPI Dashboard & Reports) Security & Risk Analysis
wordpress.org/plugins/store-analytics-woo-liteWooCommerce analytics dashboard with 6 core KPIs, charts & reports. 100% private—processed locally.
Is Store Analytics Lite for WooCommerce (KPI Dashboard & Reports) Safe to Use in 2026?
Generally Safe
Score 100/100Store Analytics Lite for WooCommerce (KPI Dashboard & Reports) has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "store-analytics-woo-lite" v2.2.3 plugin demonstrates a strong security posture based on the provided static analysis. The plugin has a minimal attack surface, with only one AJAX handler, and importantly, this handler includes authentication checks, indicating good practice for protecting entry points. The code also shows excellent adherence to secure coding standards, with all SQL queries utilizing prepared statements, no dangerous functions detected, and no file operations or external HTTP requests. Furthermore, the presence of both nonce and capability checks suggests a deliberate effort to implement proper authorization and validation mechanisms.
While the static analysis reveals no critical or high-severity issues in taint flows or unsanitized paths, the limited output escaping (only 67% properly escaped) is a potential concern. Although the number of outputs is small, any unescaped output could lead to cross-site scripting (XSS) vulnerabilities if user-controlled data is involved. The plugin's vulnerability history is also a positive indicator, with no recorded CVEs, suggesting a history of secure development and maintenance. Overall, this plugin appears to be well-secured, with the primary area for improvement being the complete elimination of unescaped output.
Key Concerns
- Unescaped output detected
Store Analytics Lite for WooCommerce (KPI Dashboard & Reports) Security Vulnerabilities
Store Analytics Lite for WooCommerce (KPI Dashboard & Reports) Code Analysis
Output Escaping
Store Analytics Lite for WooCommerce (KPI Dashboard & Reports) Attack Surface
AJAX Handlers 1
WordPress Hooks 3
Maintenance & Trust
Store Analytics Lite for WooCommerce (KPI Dashboard & Reports) Maintenance & Trust
Maintenance Signals
Community Trust
Store Analytics Lite for WooCommerce (KPI Dashboard & Reports) Alternatives
Dashboard and Analytics for WooCommerce
dashboard-and-analytics-for-woocommerce
The ultimate analytics dashboard for WooCommerce. See sales, orders, and reports at a glance. A simple, clean, and powerful analytics solution.
Brikpanel — WooCommerce Dashboard, Reports & Analytics
brikpanel-admin-panel-dashboard-for-woocommerce
Modern WooCommerce dashboard with sales reports, real-time analytics, conversion tracking, and advanced reporting — all free.
WP Client Reports
wp-client-reports
The best maintenance reporting tool for WordPress professionals. Display update statistics directly in the WordPress admin or send reports via email.
AWCA – The Great Analytics Insights for Your eStore
advance-wc-analytics
Provides Google Analytics Integration for WooCommerce eStore. It provides detailed insights & powerful independent reports for WooCommerce website.
GA4WP – Analytics Dashboard for the Website
ga-for-wp
Google Analytics Dashboard for WordPress Plugin by GA4WP is Lightweight, Easy to connect and comes with plenty of great features.
Store Analytics Lite for WooCommerce (KPI Dashboard & Reports) Developer Profile
1 plugin · 0 total installs
How We Detect Store Analytics Lite for WooCommerce (KPI Dashboard & Reports)
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/store-analytics-woo-lite/assets/css/admin.css/wp-content/plugins/store-analytics-woo-lite/assets/vendor/chartjs/chart.umd.js/wp-content/plugins/store-analytics-woo-lite/assets/vendor/jsvectormap/jsvectormap.min.css/wp-content/plugins/store-analytics-woo-lite/assets/vendor/jsvectormap/jsvectormap.min.js/wp-content/plugins/store-analytics-woo-lite/assets/vendor/jsvectormap/maps/world-merc.js/wp-content/plugins/store-analytics-woo-lite/assets/js/dashboard.js/wp-content/plugins/store-analytics-woo-lite/assets/js/dashboard.jsstore-analytics-woo-lite/assets/css/admin.css?ver=store-analytics-woo-lite/assets/js/dashboard.js?ver=HTML / DOM Fingerprints
spd-wrapspd-darkspd-headerspd-titlespd-controlsspd-selectspd-gridspd-settings-panel+10 moreid="spd-root"id="spd-period"id="spd-mode-toggle"id="spd-about-toggle"id="spd-settings-toggle"id="spd-grid"+8 moreSPD/wp-json/store-analytics-woo-lite/v1/metrics