Subscription Gifts for WooCommerce Security & Risk Analysis

wordpress.org/plugins/subscription-gifts-for-woocommerce

Reward your loyal subscribers by effortlessly adding free gifts to their WooCommerce Subscriptions.

0 active installs v1.0.1 PHP + WP 5.0+ Updated Mar 18, 2026
lottery-subscriptionsubscription-giftssubscriptionswoocommercewpgenie
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Subscription Gifts for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

Subscription Gifts for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The "subscription-gifts-for-woocommerce" plugin v1.0.1 exhibits a strong security posture based on the provided static analysis. The complete absence of dangerous functions, SQL queries without prepared statements, and unescaped output indicates adherence to core WordPress security best practices. Furthermore, the plugin demonstrates diligent use of nonces and capability checks, limiting potential unauthorized access to its functionalities. The lack of any recorded vulnerabilities in its history further reinforces this positive security outlook.

However, the most significant area for potential concern is the complete absence of any analyzed taint flows. While this could mean no vulnerabilities were found, it might also indicate that the static analysis tools were not configured or capable of performing thorough taint analysis on this particular plugin, leaving potential vulnerabilities undiscovered. Similarly, the zero attack surface reported could be an artifact of how the analysis was performed, or it could truly reflect a minimal plugin footprint.

In conclusion, the plugin demonstrates excellent coding practices in the areas that were thoroughly analyzed, with no immediate critical flaws identified. The limited attack surface, robust use of security checks, and clean vulnerability history are all positive indicators. The primary remaining uncertainty lies in the limited scope of the taint analysis, which warrants caution and suggests that further, more comprehensive security reviews might be beneficial to ensure no latent issues exist.

Key Concerns

  • Potentially limited taint analysis scope
  • Zero attack surface may require further investigation
Vulnerabilities
None known

Subscription Gifts for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Subscription Gifts for WooCommerce Release Timeline

v1.0.1Current
v1.0.0
Code Analysis
Analyzed Mar 17, 2026

Subscription Gifts for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
19 escaped
Nonce Checks
1
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
1

Bundled Libraries

Freemius1.0

Output Escaping

100% escaped19 total outputs
Attack Surface

Subscription Gifts for WooCommerce Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 11
actionadmin_enqueue_scriptsincludes\class-subscription-gifts-for-woocommerce.php:110
actionadmin_enqueue_scriptsincludes\class-subscription-gifts-for-woocommerce.php:111
actionadd_meta_boxesincludes\class-subscription-gifts-for-woocommerce.php:112
actionwoocommerce_process_product_metaincludes\class-subscription-gifts-for-woocommerce.php:113
actionwcs_renewal_order_createdincludes\class-subscription-gifts-for-woocommerce.php:114
actionwoocommerce_checkout_create_orderincludes\class-subscription-gifts-for-woocommerce.php:115
actionwoocommerce_store_api_checkout_order_processedincludes\class-subscription-gifts-for-woocommerce.php:116
actionwoocommerce_hidden_order_itemmetaincludes\class-subscription-gifts-for-woocommerce.php:117
actionwoocommerce_initsubscription-gifts-for-woocommerce.php:77
actionadmin_initsubscription-gifts-for-woocommerce.php:78
actionadmin_noticessubscription-gifts-for-woocommerce.php:81
Maintenance & Trust

Subscription Gifts for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 18, 2026
PHP min version
Downloads401

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Subscription Gifts for WooCommerce Developer Profile

wpgenie2

10 plugins · 3K total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Subscription Gifts for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/subscription-gifts-for-woocommerce/admin/css/subscription-gifts-for-woocommerce-admin.css/wp-content/plugins/subscription-gifts-for-woocommerce/admin/js/subscription-gifts-for-woocommerce-admin.js
Version Parameters
subscription-gifts-for-woocommerce/admin/css/subscription-gifts-for-woocommerce-admin.css?ver=subscription-gifts-for-woocommerce/admin/js/subscription-gifts-for-woocommerce-admin.js?ver=

HTML / DOM Fingerprints

CSS Classes
woocommerce_options_panelwc_input_table
HTML Comments
<!-- Add products that will be associated with this subscription, defining the quantity and application time (On Start / On Renewal)... -->
Data Attributes
custom_linked_products_nonce
JS Globals
window.sgfwAdmin
FAQ

Frequently Asked Questions about Subscription Gifts for WooCommerce