Tomanify – Smart Toman & Rial Currency Manager Security & Risk Analysis

wordpress.org/plugins/tomanify

Smart currency conversion and Toman/Rial pricing for WooCommerce with configurable live rates, safe fallbacks, and multilingual support.

0 active installs v1.0.3 PHP 7.4+ WP 5.2+ Updated Mar 26, 2026
currencyiranrialtomanwoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Tomanify – Smart Toman & Rial Currency Manager Safe to Use in 2026?

Generally Safe

Score 100/100

Tomanify – Smart Toman & Rial Currency Manager has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The "tomanify" plugin v1.0.3 demonstrates a generally good security posture, with a strong emphasis on secure coding practices. The plugin exclusively uses prepared statements for all SQL queries and boasts a very high percentage of properly escaped output, significantly mitigating risks of SQL injection and cross-site scripting vulnerabilities. The presence of numerous nonce and capability checks further strengthens its defenses against common WordPress attacks. The absence of any recorded vulnerabilities or CVEs in its history is a positive indicator of past security diligence.

Key Concerns

  • Unprotected AJAX handler
Vulnerabilities
None known

Tomanify – Smart Toman & Rial Currency Manager Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Tomanify – Smart Toman & Rial Currency Manager Release Timeline

v1.0.3Current
v1.0.2
Code Analysis
Analyzed Apr 16, 2026

Tomanify – Smart Toman & Rial Currency Manager Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
4 prepared
Unescaped Output
17
380 escaped
Nonce Checks
14
Capability Checks
10
File Operations
1
External Requests
3
Bundled Libraries
0

SQL Query Safety

100% prepared4 total queries

Output Escaping

96% escaped397 total outputs
Data Flows · Security
All sanitized

Data Flow Analysis

5 flows
tab_general (admin/class-tomanify-admin.php:728)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
1 unprotected

Tomanify – Smart Toman & Rial Currency Manager Attack Surface

Entry Points2
Unprotected1

AJAX Handlers 1

authwp_ajax_tomanify_tour_seentomanify.php:317

Shortcodes 1

[tomanify_rates] includes/class-tomanify-shortcode.php:21
WordPress Hooks 19
actionadmin_menuadmin/class-tomanify-admin.php:23
actionadmin_enqueue_scriptsadmin/class-tomanify-admin.php:24
actionadmin_post_tomanify_exportincludes/class-tomanify-export.php:18
actioninitincludes/class-tomanify-product-meta.php:18
actionadd_meta_boxesincludes/class-tomanify-product-meta.php:19
actionsave_post_productincludes/class-tomanify-product-meta.php:20
actiontomanify_process_recalc_queueincludes/class-tomanify-products.php:532
actiontomanify_process_purge_queueincludes/class-tomanify-products.php:533
actiontomanify_process_unitswitch_queueincludes/class-tomanify-products.php:534
actiontomanify_update_all_ratesincludes/class-tomanify-rates.php:22
actionupdate_option_tomanify_currency_unittomanify.php:47
filterplugin_row_metatomanify.php:91
filterplugin_localetomanify.php:103
actionplugins_loadedtomanify.php:126
filtercron_schedulestomanify.php:218
actiontomanify_update_all_ratestomanify.php:256
actioninittomanify.php:264
actionplugins_loadedtomanify.php:285
actionwp_enqueue_scriptstomanify.php:288

Scheduled Events 4

tomanify_update_all_rates
tomanify_update_all_rates
tomanify_update_all_rates
tomanify_update_all_rates
Maintenance & Trust

Tomanify – Smart Toman & Rial Currency Manager Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 26, 2026
PHP min version7.4
Downloads344

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Tomanify – Smart Toman & Rial Currency Manager Developer Profile

Amin Raoufi

2 plugins · 10 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Tomanify – Smart Toman & Rial Currency Manager

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/tomanify/assets/css/tomanify-admin.css/wp-content/plugins/tomanify/assets/css/tomanify-public.css/wp-content/plugins/tomanify/assets/js/tomanify-admin.js/wp-content/plugins/tomanify/assets/js/tomanify-public.js/wp-content/plugins/tomanify/assets/js/tomanify-woo-public.js
Version Parameters
tomanify/assets/css/tomanify-admin.css?ver=tomanify/assets/css/tomanify-public.css?ver=tomanify/assets/js/tomanify-admin.js?ver=tomanify/assets/js/tomanify-public.js?ver=tomanify/assets/js/tomanify-woo-public.js?ver=

HTML / DOM Fingerprints

CSS Classes
tomanify-rate-displaytomanify-currency-switch
HTML Comments
<!-- Tomanify Currency Switcher --><!-- Tomanify Rate Display -->
Data Attributes
data-tomanify-currencydata-tomanify-rate
JS Globals
TomanifyAdminTomanifyPublic
Shortcode Output
[tomanify_rates][tomanify_currency_switcher]
FAQ

Frequently Asked Questions about Tomanify – Smart Toman & Rial Currency Manager