TouchTry Eye Fit Security & Risk Analysis

wordpress.org/plugins/touchtry-eye-fit

Bring immersive Augmented Reality (AR) try-on experiences for eyewear products directly to your WooCommerce store.

10 active installs v1.0.1 PHP 7.2+ WP 5.5+ Updated Feb 26, 2026
3d-try-onar-eyewear-try-onaugmented-realityvirtual-glasses-try-onwoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is TouchTry Eye Fit Safe to Use in 2026?

Generally Safe

Score 100/100

TouchTry Eye Fit has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

Based on the provided static analysis and vulnerability history, the 'touchtry-eye-fit' plugin v1.0.1 exhibits a strong security posture. The absence of any identified dangerous functions, unsanitized taint flows, raw SQL queries, or file operations is highly commendable. Furthermore, all identified output is properly escaped, and there are no external HTTP requests, which limits potential attack vectors.

The plugin's attack surface is also minimal, with zero AJAX handlers, REST API routes, shortcodes, or cron events. This lack of entry points, especially unprotected ones, significantly reduces the likelihood of exploitation. The vulnerability history being entirely clear, with no recorded CVEs, reinforces the impression of a well-developed and secure plugin.

While the current analysis shows no immediate security concerns, it's important to note that the analysis might be limited by the scope of the static analysis tools used or the specific inputs provided. The complete absence of nonce and capability checks across all components (even though there are no exposed components) is a potential area for concern if the plugin were to evolve and expose more functionalities in the future. However, given the current state, the plugin appears to be very secure.

Key Concerns

  • No nonce checks on any entry points
  • No capability checks on any entry points
Vulnerabilities
None known

TouchTry Eye Fit Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

TouchTry Eye Fit Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
1 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped1 total outputs
Attack Surface

TouchTry Eye Fit Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 6
actionadmin_menutouchtry-eyewear-tryon.php:48
actionadmin_enqueue_scriptstouchtry-eyewear-tryon.php:60
actionwoocommerce_product_options_general_product_datatouchtry-eyewear-tryon.php:76
actionwoocommerce_process_product_metatouchtry-eyewear-tryon.php:86
actionwoocommerce_after_add_to_cart_formtouchtry-eyewear-tryon.php:93
actionwp_enqueue_scriptstouchtry-eyewear-tryon.php:107
Maintenance & Trust

TouchTry Eye Fit Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedFeb 26, 2026
PHP min version7.2
Downloads381

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

TouchTry Eye Fit Developer Profile

touchtry

4 plugins · 10 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect TouchTry Eye Fit

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/touchtry-eye-fit/assets/style.css

HTML / DOM Fingerprints

CSS Classes
eyefit-tryon-button
Data Attributes
id="_eyefit_ar_link"label="Eye Fit AR Try-On Link"
FAQ

Frequently Asked Questions about TouchTry Eye Fit