
TWISM for WooCommerce Security & Risk Analysis
wordpress.org/plugins/twismRepeat sales for online or physical businesses
Is TWISM for WooCommerce Safe to Use in 2026?
Generally Safe
Score 92/100TWISM for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'twism' plugin v1.5.2 exhibits a concerning security posture due to its exposed entry points. While the plugin demonstrates good practices by utilizing prepared statements for all SQL queries and properly escaping all output, the presence of two REST API routes that lack permission callbacks is a significant security risk. This directly contributes to an unprotected attack surface of 2 entry points, meaning unauthenticated users could potentially interact with these routes, leading to unintended consequences or information leakage. The absence of any recorded vulnerabilities in its history is a positive indicator, suggesting a lack of previously discovered security flaws or a history of prompt patching. However, this does not mitigate the immediate risks identified in the static analysis. The plugin's strengths lie in its secure handling of database operations and output, but these are overshadowed by the critical vulnerability of unprotected API routes.
Key Concerns
- REST API routes without permission callbacks
- Large attack surface without authentication
TWISM for WooCommerce Security Vulnerabilities
TWISM for WooCommerce Release Timeline
TWISM for WooCommerce Code Analysis
Bundled Libraries
Output Escaping
TWISM for WooCommerce Attack Surface
REST API Routes 2
WordPress Hooks 7
Maintenance & Trust
TWISM for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
TWISM for WooCommerce Alternatives
Easy Loyalty Points and Rewards for WooCommerce
easy-loyalty-points-and-rewards-for-woocommerce
A lightweight, easy to use customer loyalty system for WooCommerce.
Simple Points and Rewards for WooCommerce – Create a Loyalty Program
simple-points-and-rewards
WooCommerce Points and Rewards plugin. Create a simple but powerful loyalty program. Reward purchases, referrals, and much more.
RewardsWP – Loyalty Points & Referral Program for WooCommerce
rewardswp
Turn customers into brand advocates with loyalty points and referral programs for WooCommerce and Easy Digital Downloads.
XT Points & Rewards for WooCommerce
xt-woo-points-rewards
Points and Rewards for WooCommerce that lets you reward your customers for purchases and other actions with points that can be redeemed for discounts.
HostPlugin – WooCommerce Points & Rewards
hostplugin-woocommerce-points-and-rewards
Reward your loyal customers for purchases and other actions using points which can be redeemed for discounts on future purchase.
TWISM for WooCommerce Developer Profile
1 plugin · 0 total installs
How We Detect TWISM for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/twism/build/index.jshttps://assets.twism.com/widget/build/bundle.jsHTML / DOM Fingerprints
data-twism-user-iddata-twism-user-emaildata-twism-order-idtwism_data