TouchTry Watch Try-On Security & Risk Analysis

wordpress.org/plugins/touchtry-watch-try-on

Offer a stunning Watch AR Try-On experience directly on your WooCommerce store. Display virtual try-on button, pricing plans, and more.

0 active installs v1.0.5 PHP 7.2+ WP 5.5+ Updated Feb 28, 2026
ar-try-onaugmented-realityvirtual-try-onwatch-tryonwoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is TouchTry Watch Try-On Safe to Use in 2026?

Generally Safe

Score 100/100

TouchTry Watch Try-On has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The "touchtry-watch-try-on" plugin v1.0.5 exhibits a generally strong security posture based on the provided static analysis. The complete absence of AJAX handlers, REST API routes, shortcodes, and cron events with unprotected entry points suggests a minimal attack surface. The code's adherence to prepared statements for SQL queries and the presence of capability checks are positive indicators. However, a significant concern is the low rate of proper output escaping, with only 29% of outputs being secured. This leaves the plugin susceptible to Cross-Site Scripting (XSS) vulnerabilities, especially if user-supplied data is ever incorporated into these unescaped outputs. The lack of recorded vulnerabilities in its history is a good sign, but the potential for XSS due to poor output sanitization remains a notable weakness.

Key Concerns

  • Low output escaping rate
Vulnerabilities
None known

TouchTry Watch Try-On Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

TouchTry Watch Try-On Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
67
28 escaped
Nonce Checks
0
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

29% escaped95 total outputs
Attack Surface

TouchTry Watch Try-On Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 7
actionadmin_menutouchtry-watch-try-on.php:49
actionadmin_enqueue_scriptstouchtry-watch-try-on.php:68
actionadmin_post_ttwt_accept_privacytouchtry-watch-try-on.php:103
actionwoocommerce_product_options_general_product_datatouchtry-watch-try-on.php:115
actionwoocommerce_process_product_metatouchtry-watch-try-on.php:127
actionwoocommerce_after_add_to_cart_buttontouchtry-watch-try-on.php:140
actionwp_enqueue_scriptstouchtry-watch-try-on.php:152
Maintenance & Trust

TouchTry Watch Try-On Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedFeb 28, 2026
PHP min version7.2
Downloads302

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

TouchTry Watch Try-On Developer Profile

touchtry

4 plugins · 10 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect TouchTry Watch Try-On

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/touchtry-watch-try-on/assets/style.css/wp-content/plugins/touchtry-watch-try-on/assets/frontend.css

HTML / DOM Fingerprints

CSS Classes
ttwt-tryon-button
Data Attributes
id="ttwt-privacy-popup"
FAQ

Frequently Asked Questions about TouchTry Watch Try-On