Store Notifier – Notifications System for WooCommerce Security & Risk Analysis

wordpress.org/plugins/store-notifier

Enhanced your WooCommerce experience by using StoreNotifier. 🚀

10 active installs v1.0.4 PHP 7.4+ WP 6.5+ Updated Unknown
boost-salesfomoorder-notificationwoocommerce-notification
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Store Notifier – Notifications System for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

Store Notifier – Notifications System for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs
Risk Assessment

The "store-notifier" plugin v1.0.4 presents a mixed security posture. On the positive side, it demonstrates good practices in areas like SQL query handling, where 100% of queries utilize prepared statements, and there are no file operations or bundled libraries that could introduce vulnerabilities. The plugin also correctly implements nonce and capability checks for all its AJAX handlers, which is a crucial security measure. However, a significant concern arises from the "ATTACK SURFACE" analysis, which reveals 4 AJAX handlers, all of which lack authentication checks. This means any unauthenticated user could potentially interact with these endpoints, creating a considerable risk if these handlers perform sensitive operations or are susceptible to other forms of attack.

The "CODE SIGNALS" are generally positive, with a high percentage of output being properly escaped, and no dangerous functions or critical taint flows identified. This suggests a level of developer diligence in preventing common web vulnerabilities. The "Vulnerability History" is completely clean, with no recorded CVEs. This is a strong indicator of a well-maintained and likely secure plugin, or at least one that has not been targeted or discovered to be vulnerable in the past. Despite the absence of known vulnerabilities, the presence of unprotected AJAX endpoints represents a latent risk that should not be overlooked. The plugin's strengths lie in its secure coding practices for data handling and its clean vulnerability history, but the lack of authorization on its primary entry points is a notable weakness that lowers its overall security score.

Key Concerns

  • Unprotected AJAX handlers
Vulnerabilities
None known

Store Notifier – Notifications System for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Store Notifier – Notifications System for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
2 prepared
Unescaped Output
40
202 escaped
Nonce Checks
4
Capability Checks
4
File Operations
0
External Requests
3
Bundled Libraries
0

SQL Query Safety

100% prepared2 total queries

Output Escaping

83% escaped242 total outputs
Attack Surface
4 unprotected

Store Notifier – Notifications System for WooCommerce Attack Surface

Entry Points4
Unprotected4

AJAX Handlers 4

authwp_ajax_new_order_toast_notificationinc\Hooks.php:23
noprivwp_ajax_new_order_toast_notificationinc\Hooks.php:24
authwp_ajax_abandoned_cart_push_actioninc\Hooks.php:27
noprivwp_ajax_abandoned_cart_push_actioninc\Hooks.php:28
WordPress Hooks 27
actionadmin_menuadmin\Admin.php:33
actionadmin_initadmin\Admin.php:34
actionadmin_enqueue_scriptsadmin\Admin_Hooks.php:16
actionswitch_themeappsero\src\Insights.php:140
actionswitch_themeappsero\src\Insights.php:141
actionadmin_footerappsero\src\Insights.php:158
actionadmin_noticesappsero\src\Insights.php:175
actionadmin_initappsero\src\Insights.php:178
filtercron_schedulesappsero\src\Insights.php:184
actionadmin_menuappsero\src\License.php:219
actionafter_switch_themeappsero\src\License.php:781
actionswitch_themeappsero\src\License.php:782
actionwp_enqueue_scriptsinc\Hooks.php:20
actionadmin_enqueue_scriptsinc\Woo_Hooks.php:22
actionall_admin_noticesinc\Woo_Hooks.php:25
filterwoocommerce_order_data_store_cpt_get_orders_queryinc\Woo_Hooks.php:29
actionwoocommerce_store_api_checkout_order_processedinc\Woo_Hooks.php:34
actionwoocommerce_checkout_update_order_metainc\Woo_Hooks.php:37
actionwoocommerce_checkout_order_processedinc\Woo_Hooks.php:40
actionadmin_initinc\Woo_Hooks.php:44
actionwoocommerce_order_status_completedinc\Woo_Hooks.php:48
actionwoocommerce_order_status_cancelledinc\Woo_Hooks.php:49
filterrest_woocommerce_order_object_queryinc\Woo_Hooks.php:51
actionwoocommerce_account_contentinc\Woo_Hooks.php:53
actioninitstore-notifier.php:55
actioninitstore-notifier.php:61
actionadmin_noticesstore-notifier.php:78
Maintenance & Trust

Store Notifier – Notifications System for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedUnknown
PHP min version7.4
Downloads797

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Store Notifier – Notifications System for WooCommerce Developer Profile

wpmobo

4 plugins · 60 total installs

93
trust score
Avg Security Score
98/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Store Notifier – Notifications System for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/store-notifier/admin/assets/css/jquery-ui.css/wp-content/plugins/store-notifier/admin/assets/css/storenotifier-admin.css/wp-content/plugins/store-notifier/admin/assets/js/storenotifier-admin.js/wp-content/plugins/store-notifier/assets/css/jquery.toast.css/wp-content/plugins/store-notifier/assets/css/owl.carousel.min.css/wp-content/plugins/store-notifier/assets/css/front-end.css/wp-content/plugins/store-notifier/assets/js/jquery.toast.js/wp-content/plugins/store-notifier/assets/js/owl.carousel.min.js+1 more
Script Paths
appsero/src/Client.php
Version Parameters
storenotifier-admin?ver=jquery-toast?ver=owl-carousel?ver=storenotifier-front-end?ver=jquery-ui.css?ver=storenotifier-admin.css?ver=storenotifier-admin.js?ver=jquery.toast.css?ver=owl.carousel.min.css?ver=front-end.css?ver=jquery.toast.js?ver=owl.carousel.min.js?ver=front-end.js?ver=

HTML / DOM Fingerprints

CSS Classes
storenotifier-innercart-abn-notification-contentnotification-titlenotifi-link
JS Globals
storenotifier_adminobjstorenotifier_jsobj
REST Endpoints
/wp-json/store-notifier/v1/settings/wp-json/store-notifier/v1/save-settings
FAQ

Frequently Asked Questions about Store Notifier – Notifications System for WooCommerce