Touchtry JwelAR Security & Risk Analysis

wordpress.org/plugins/touchtry-jwelar

Augmented Reality (AR) Try-On Plugin for WooCommerce by Touchtry. Empower your customers to virtually try on jewelry before they buy.

0 active installs v1.1.4 PHP 7.0+ WP 5.0+ Updated Feb 19, 2026
araugmented-realityjewelrytry-onvirtual-try-on
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Touchtry JwelAR Safe to Use in 2026?

Generally Safe

Score 100/100

Touchtry JwelAR has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

Based on the provided static analysis and vulnerability history, the 'touchtry-jwelar' v1.1.4 plugin exhibits a strong security posture. The static analysis reveals no identifiable attack surface through common entry points like AJAX handlers, REST API routes, shortcodes, or cron events that lack authentication or permission checks. Furthermore, the code demonstrates good development practices by avoiding dangerous functions, utilizing prepared statements exclusively for all SQL queries, properly escaping all output, and not performing file operations or making external HTTP requests. The absence of taint analysis findings also suggests that data is being handled securely within the plugin.

The plugin's vulnerability history is also exceptionally clean, with zero recorded CVEs of any severity. This indicates a history of responsible development and a lack of publicly disclosed security weaknesses. While the lack of explicit nonce and capability checks on entry points is noted, the fact that there are no entry points at all significantly mitigates this concern. In conclusion, this plugin appears to be very secure based on the data provided, with no significant immediate risks identified. Its strengths lie in its lack of attack surface and adherence to secure coding practices. The primary area for potential concern, though currently not an issue due to the lack of entry points, would be the absence of explicit security checks if entry points were to be introduced in the future.

Key Concerns

  • No explicit capability checks on entry points
  • No explicit nonce checks on entry points
Vulnerabilities
None known

Touchtry JwelAR Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Touchtry JwelAR Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
3 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped3 total outputs
Attack Surface

Touchtry JwelAR Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 7
actionadmin_menutouchtry-jwelar.php:17
actionadmin_enqueue_scriptstouchtry-jwelar.php:158
actionwoocommerce_product_options_general_product_datatouchtry-jwelar.php:178
actionwoocommerce_process_product_metatouchtry-jwelar.php:179
actionwoocommerce_before_shop_loop_item_titletouchtry-jwelar.php:198
actionwoocommerce_single_product_summarytouchtry-jwelar.php:210
actionwp_enqueue_scriptstouchtry-jwelar.php:220
Maintenance & Trust

Touchtry JwelAR Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedFeb 19, 2026
PHP min version7.0
Downloads583

Community Trust

Rating100/100
Number of ratings1
Active installs0
Developer Profile

Touchtry JwelAR Developer Profile

touchtry

4 plugins · 10 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Touchtry JwelAR

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/touchtry-jwelar/assets/css/style.css/wp-content/plugins/touchtry-jwelar/assets/js/main.js
Script Paths
/wp-content/plugins/touchtry-jwelar/assets/js/main.js
Version Parameters
touchtry-jwelar/assets/css/style.css?ver=touchtry-jwelar/assets/js/main.js?ver=

HTML / DOM Fingerprints

CSS Classes
jwlear-dashboardtab-buttonupload-sectionupload-videoupload-textapi-modernmethod-boxstep+7 more
Data Attributes
data-targetonclick="showSection('upload')"onclick="showSection('api')"onclick="showSection('pricing')"onclick="showSection('contact')"
JS Globals
showSection
FAQ

Frequently Asked Questions about Touchtry JwelAR