Total Price in Words for WooCommerce Security & Risk Analysis

wordpress.org/plugins/total-price-in-words-for-woocommerce

Enhance WooCommerce by displaying total prices in words, improving clarity and accessibility for customers.

10 active installs v1.2.4 PHP 7.4+ WP 5.2+ Updated May 6, 2025
currency-conversionecommerce-accessibilityprice-to-wordswoocommerce-enhancementswoocommerce-price-words
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Total Price in Words for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

Total Price in Words for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 11mo ago
Risk Assessment

Based on the provided static analysis and vulnerability history, the "total-price-in-words-for-woocommerce" plugin version 1.2.4 exhibits a strong security posture. The absence of any registered attack surface, such as AJAX handlers, REST API routes, or shortcodes, significantly limits potential entry points for attackers. Furthermore, the code analysis reveals excellent security practices, including 100% proper output escaping and 100% usage of prepared statements for SQL queries, alongside the absence of dangerous functions and file operations. The presence of nonce checks and the lack of critical or high-severity taint flows further bolster its security.

While the plugin demonstrates robust internal security, the absence of any recorded CVEs and a clean vulnerability history is notable. This could indicate either a history of secure development and proactive patching, or it could mean the plugin has not been a target of significant security research or attacks. The lack of capability checks on the identified entry points, though there are zero entry points, is a theoretical concern that doesn't translate to a practical risk in this specific version due to the zero attack surface.

In conclusion, this plugin, as analyzed, presents a very low security risk. Its strengths lie in its minimal attack surface and strong adherence to secure coding practices. The absence of known vulnerabilities and potential attack vectors suggests a well-developed and maintained plugin. The only minor point of consideration is the theoretical absence of capability checks, but this is nullified by the absence of any entry points.

Vulnerabilities
None known

Total Price in Words for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Total Price in Words for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
27 escaped
Nonce Checks
1
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped27 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
saveSettings (src\Admin\Settings.php:32)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Total Price in Words for WooCommerce Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 14
filterwoocommerce_settings_tabs_arraysrc\Admin\Settings.php:10
actionwoocommerce_settings_tabs_total-in-wordssrc\Admin\Settings.php:11
actionwoocommerce_settings_save_total-in-wordssrc\Admin\Settings.php:12
filterplugin_action_links_total-price-in-words-for-woocommerce/total-price-in-words-for-woocommerce.phpsrc\Admin\Settings.php:13
actionwoocommerce_admin_order_totals_after_totalsrc\Core\TPIW_Total_Price_In_Words.php:28
actionwoocommerce_cart_totals_after_order_totalsrc\Core\TPIW_Total_Price_In_Words.php:30
actionwoocommerce_review_order_after_order_totalsrc\Core\TPIW_Total_Price_In_Words.php:32
actionwoocommerce_order_details_after_order_tablesrc\Core\TPIW_Total_Price_In_Words.php:34
actionwoocommerce_email_after_order_tablesrc\Core\TPIW_Total_Price_In_Words.php:36
filterwpifw_before_last_trsrc\Core\TPIW_Total_Price_In_Words.php:38
actionwpo_wcpdf_after_order_detailssrc\Core\TPIW_Total_Price_In_Words.php:40
actionplugins_loadedsrc\Core\TPIW_Total_Price_In_Words.php:43
actionbefore_woocommerce_inittotal-price-in-words-for-woocommerce.php:37
actionplugins_loadedtotal-price-in-words-for-woocommerce.php:47
Maintenance & Trust

Total Price in Words for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedMay 6, 2025
PHP min version7.4
Downloads3K

Community Trust

Rating100/100
Number of ratings1
Active installs10
Developer Profile

Total Price in Words for WooCommerce Developer Profile

Ahmed Imran

2 plugins · 10 total installs

91
trust score
Avg Security Score
96/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Total Price in Words for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/total-price-in-words-for-woocommerce/assets/css/backend.css/wp-content/plugins/total-price-in-words-for-woocommerce/assets/js/backend.js
Version Parameters
total-price-in-words-for-woocommerce/assets/css/backend.css?ver=total-price-in-words-for-woocommerce/assets/js/backend.js?ver=

HTML / DOM Fingerprints

CSS Classes
tpiw-settings-sectiontpiw-section-titletpiw-input-fieldtpiw-checkboxtpiw-select-fieldtpiw-number-field
Data Attributes
data-tpiw-setting-iddata-tpiw-setting-type
JS Globals
TPIW_Admin_Ajax
FAQ

Frequently Asked Questions about Total Price in Words for WooCommerce