
Toggle Tax For Woocommerce Security & Risk Analysis
wordpress.org/plugins/toggle-tax-for-woocommerceToggle Tax For Woocommerce allows store owners to easily toggle tax display for their products in WooCommerce. This plugin allows customers to toggle …
Is Toggle Tax For Woocommerce Safe to Use in 2026?
Generally Safe
Score 100/100Toggle Tax For Woocommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "toggle-tax-for-woocommerce" v1.0.3 exhibits a generally strong security posture based on the provided static analysis. The absence of dangerous functions, the exclusive use of prepared statements for SQL queries, and 100% proper output escaping are significant positive indicators. The plugin also avoids file operations and external HTTP requests, further reducing potential attack vectors. However, a notable concern arises from the complete lack of nonce and capability checks across all entry points. While the current attack surface is small and no AJAX/REST API routes were found to be unprotected, this omission creates a latent risk. If future updates introduce new entry points or if the existing shortcode's functionality becomes sensitive, the lack of proper authorization checks could be exploited.
The vulnerability history for this plugin is clean, with no recorded CVEs. This suggests a responsible development process or a lack of previous targeted exploitation. The absence of critical or high-severity taint flows further reinforces the initial impression of a secure codebase. Despite the positive historical data, the lack of built-in authorization mechanisms is a weakness that warrants attention for future development to ensure continued security as the plugin evolves.
Key Concerns
- Missing nonce checks on all entry points
- Missing capability checks on all entry points
Toggle Tax For Woocommerce Security Vulnerabilities
Toggle Tax For Woocommerce Code Analysis
Output Escaping
Toggle Tax For Woocommerce Attack Surface
Shortcodes 1
WordPress Hooks 7
Maintenance & Trust
Toggle Tax For Woocommerce Maintenance & Trust
Maintenance Signals
Community Trust
Toggle Tax For Woocommerce Alternatives
No alternatives data available yet.
Toggle Tax For Woocommerce Developer Profile
10 plugins · 850 total installs
How We Detect Toggle Tax For Woocommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/toggle-tax-for-woocommerce/frontend/css/style.css/wp-content/plugins/toggle-tax-for-woocommerce/frontend/js/script.js/wp-content/plugins/toggle-tax-for-woocommerce/frontend/js/script.jstoggle-tax-for-woocommerce/frontend/js/script.jstoggle-tax-for-woocommerce/frontend/css/style.cssHTML / DOM Fingerprints
gt-sticky-slidertax-toggle-pricesgt-toggle-buttonprice-including-taxprice-excluding-taxprice-tax-inclprice-tax-exclwoocommerce-price-suffixdata-toggle-tax-displayajax_url[gt_toogle_tax]