Toggle Tax For Woocommerce Security & Risk Analysis

wordpress.org/plugins/toggle-tax-for-woocommerce

Toggle Tax For Woocommerce allows store owners to easily toggle tax display for their products in WooCommerce. This plugin allows customers to toggle …

100 active installs v1.0.3 PHP 5.0+ WP + Updated May 26, 2025
customizable-tax-displaytax-display-optionstoggle-taxwoocommerce-tax-customization
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Toggle Tax For Woocommerce Safe to Use in 2026?

Generally Safe

Score 100/100

Toggle Tax For Woocommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 10mo ago
Risk Assessment

The plugin "toggle-tax-for-woocommerce" v1.0.3 exhibits a generally strong security posture based on the provided static analysis. The absence of dangerous functions, the exclusive use of prepared statements for SQL queries, and 100% proper output escaping are significant positive indicators. The plugin also avoids file operations and external HTTP requests, further reducing potential attack vectors. However, a notable concern arises from the complete lack of nonce and capability checks across all entry points. While the current attack surface is small and no AJAX/REST API routes were found to be unprotected, this omission creates a latent risk. If future updates introduce new entry points or if the existing shortcode's functionality becomes sensitive, the lack of proper authorization checks could be exploited.

The vulnerability history for this plugin is clean, with no recorded CVEs. This suggests a responsible development process or a lack of previous targeted exploitation. The absence of critical or high-severity taint flows further reinforces the initial impression of a secure codebase. Despite the positive historical data, the lack of built-in authorization mechanisms is a weakness that warrants attention for future development to ensure continued security as the plugin evolves.

Key Concerns

  • Missing nonce checks on all entry points
  • Missing capability checks on all entry points
Vulnerabilities
None known

Toggle Tax For Woocommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Toggle Tax For Woocommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
38 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped38 total outputs
Attack Surface

Toggle Tax For Woocommerce Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[gt_toogle_tax] frontend\frontend.php:11
WordPress Hooks 7
actionadmin_menubackend\backend.php:19
actionadmin_initbackend\backend.php:113
actionwp_footerfrontend\frontend.php:8
filterwoocommerce_get_price_htmlfrontend\frontend.php:9
actionwp_headfrontend\frontend.php:10
actionadmin_noticestoggle-tax-for-woocommerce.php:17
actionwp_enqueue_scriptstoggle-tax-for-woocommerce.php:24
Maintenance & Trust

Toggle Tax For Woocommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedMay 26, 2025
PHP min version5.0
Downloads4K

Community Trust

Rating100/100
Number of ratings2
Active installs100
Alternatives

Toggle Tax For Woocommerce Alternatives

No alternatives data available yet.

Developer Profile

Toggle Tax For Woocommerce Developer Profile

mgplugin

10 plugins · 850 total installs

97
trust score
Avg Security Score
95/100
Avg Patch Time
5 days
View full developer profile
Detection Fingerprints

How We Detect Toggle Tax For Woocommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/toggle-tax-for-woocommerce/frontend/css/style.css/wp-content/plugins/toggle-tax-for-woocommerce/frontend/js/script.js
Script Paths
/wp-content/plugins/toggle-tax-for-woocommerce/frontend/js/script.js
Version Parameters
toggle-tax-for-woocommerce/frontend/js/script.jstoggle-tax-for-woocommerce/frontend/css/style.css

HTML / DOM Fingerprints

CSS Classes
gt-sticky-slidertax-toggle-pricesgt-toggle-buttonprice-including-taxprice-excluding-taxprice-tax-inclprice-tax-exclwoocommerce-price-suffix
Data Attributes
data-toggle-tax-display
JS Globals
ajax_url
Shortcode Output
[gt_toogle_tax]
FAQ

Frequently Asked Questions about Toggle Tax For Woocommerce