
TryLoom – AI Virtual Try On for WooCommerce Security & Risk Analysis
wordpress.org/plugins/tryloomThe #1 AI-Powered Virtual Dressing Room for WooCommerce. Turn customer selfies into professional fashion model shots instantly.
Is TryLoom – AI Virtual Try On for WooCommerce Safe to Use in 2026?
Generally Safe
Score 100/100TryLoom – AI Virtual Try On for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The tryloom v1.4.0 plugin exhibits a generally strong security posture based on the provided static analysis and vulnerability history. A significant strength is the absence of any critical or high-severity taint flows, and the very high percentage of SQL queries using prepared statements (76%). Furthermore, output escaping is also robust with 94% of outputs properly escaped. The plugin also demonstrates good practice by implementing nonce checks on 12 entry points, although this is not universally applied across all AJAX handlers. Its vulnerability history is clean, with no known CVEs, which suggests a history of secure development or diligent patching by the developers.
However, there are a few areas that could be improved. While the attack surface appears protected, the static analysis indicates 13 AJAX handlers with 0 explicitly noted without auth checks, leaving a potential ambiguity. The capability checks are also limited to 3, which might not cover all potential sensitive actions within the plugin. The presence of 74 total SQL queries, even with a high prepared statement rate, represents a considerable number where a single oversight could lead to an issue. The file operations and external HTTP requests, while few, should always be scrutinized for potential vulnerabilities.
In conclusion, tryloom v1.4.0 appears to be a relatively secure plugin with a positive security track record. The developers have implemented several key security best practices. The main areas for attention are ensuring comprehensive authentication/authorization across all AJAX handlers and considering a broader application of capability checks where appropriate. The absence of any historical vulnerabilities is a significant positive indicator.
Key Concerns
- AJAX handlers without explicit auth checks noted
- Limited capability checks
- Considerable number of SQL queries
TryLoom – AI Virtual Try On for WooCommerce Security Vulnerabilities
TryLoom – AI Virtual Try On for WooCommerce Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
TryLoom – AI Virtual Try On for WooCommerce Attack Surface
AJAX Handlers 13
Shortcodes 2
WordPress Hooks 30
Scheduled Events 5
Maintenance & Trust
TryLoom – AI Virtual Try On for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
TryLoom – AI Virtual Try On for WooCommerce Alternatives
Virtual Try-On for Shops
virtual-try-on-for-shops
AI-powered virtual try-on for WooCommerce. Let customers see how clothes, glasses, jewelry, and pet accessories look before buying.
AI Try-On Assistant
ai-try-on-assistant
A WooCommerce AI try-on assistant that allows customers to try on clothes, hairstyles, and makeup using Google Gemini AI.
TryMyLook Virtual Try-On
trymylook-virtual-try-on
AI-powered virtual try-on for WooCommerce. Let customers try on products before they buy.
Virtual Try-On for WooCommerce – Preview AI
preview-ai
Virtual try-on for WooCommerce that helps fashion stores increase conversions and reduce returns.
Selektable
selektable
AI virtual try-on and room visualization for WordPress and WooCommerce. Reduce returns, boost conversions, and let customers try before they buy.
TryLoom – AI Virtual Try On for WooCommerce Developer Profile
1 plugin · 10 total installs
How We Detect TryLoom – AI Virtual Try On for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/tryloom/assets/css/tryloom.css/wp-content/plugins/tryloom/assets/js/tryloom.js/wp-content/plugins/tryloom/assets/js/tryloom.jstryloom/assets/css/tryloom.css?ver=tryloom/assets/js/tryloom.js?ver=HTML / DOM Fingerprints
tryloom-wraptryloom-product-btn-container<!-- TryLoom: Inserted by TryLoom plugin -->data-tryloom-product-iddata-tryloom-variant-idTryLoomConfig/wp-json/tryloom/v1/products