Untappd Ratings for WooCommerce Security & Risk Analysis

wordpress.org/plugins/untappd-ratings-for-woocommerce

Everything you need to show Untappd ratings on WooCommerce stores.

10 active installs v1.0.9 PHP 7.4+ WP 6.0+ Updated Dec 4, 2025
map-feedratingsreviewsuntappdwoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Untappd Ratings for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

Untappd Ratings for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5mo ago
Risk Assessment

The "untappd-ratings-for-woocommerce" plugin v1.0.9 exhibits a strong security posture based on the provided static analysis. The plugin effectively utilizes prepared statements for all SQL queries, has a high rate of properly escaped output, and implements nonce and capability checks on its entry points. The absence of dangerous functions, file operations, and known vulnerabilities in its history are positive indicators. The plugin also appears to be actively maintained and secure, with no recorded past vulnerabilities.

While the overall security is good, there are minor areas that could be improved. The presence of external HTTP requests, although not inherently insecure, represents a potential attack vector if the external service is compromised or if the data sent or received is not handled securely. The attack surface, though protected, is composed of several AJAX handlers which, if any future updates introduce vulnerabilities, could be entry points. The taint analysis showing zero flows is reassuring, suggesting no immediate data sanitization issues were detected.

In conclusion, this plugin appears to be well-secured with robust coding practices. The strengths lie in its handling of sensitive operations like database queries and output, along with a clean vulnerability history. The minor weaknesses relate to external dependencies and the breadth of the protected attack surface, which are common in many WordPress plugins. Overall, the risk is assessed as low.

Key Concerns

  • External HTTP requests detected
  • Multiple AJAX entry points
Vulnerabilities
None known

Untappd Ratings for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Untappd Ratings for WooCommerce Release Timeline

v1.0.9Current
v1.0.8
v1.0.7
v1.0.6
v1.0.5
Code Analysis
Analyzed Apr 16, 2026

Untappd Ratings for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
3 prepared
Unescaped Output
3
96 escaped
Nonce Checks
5
Capability Checks
4
File Operations
0
External Requests
2
Bundled Libraries
0

SQL Query Safety

100% prepared3 total queries

Output Escaping

97% escaped99 total outputs
Attack Surface

Untappd Ratings for WooCommerce Attack Surface

Entry Points6
Unprotected0

AJAX Handlers 5

authwp_ajax_urwc_map_feedaddons/brewery-activity-feed/class-urwc-brewery-activity-feed.php:48
noprivwp_ajax_urwc_map_feedaddons/brewery-activity-feed/class-urwc-brewery-activity-feed.php:49
authwp_ajax_urwc_brewery_searchincludes/class-urwc-ajax.php:27
authwp_ajax_urwc_beer_searchincludes/class-urwc-ajax.php:28
authwp_ajax_urwc_beer_infoincludes/class-urwc-ajax.php:29

Shortcodes 1

[urwc_untappd_map] addons/brewery-activity-feed/class-urwc-brewery-activity-feed.php:62
WordPress Hooks 24
actionupdate_option_moderation_keysaddons/brewery-activity-feed/class-urwc-brewery-activity-feed.php:55
actionupdate_option_disallowed_keysaddons/brewery-activity-feed/class-urwc-brewery-activity-feed.php:56
filterwoocommerce_product_data_tabsincludes/class-urwc-product.php:32
actionwoocommerce_process_product_metaincludes/class-urwc-product.php:33
actionwoocommerce_product_data_panelsincludes/class-urwc-product.php:34
filterwoocommerce_get_catalog_ordering_argsincludes/class-urwc-product.php:41
filterposts_clausesincludes/class-urwc-product.php:42
filterwoocommerce_structured_data_contextincludes/class-urwc-product.php:49
actioninitincludes/class-urwc-ratings.php:39
filternetwork_admin_plugin_action_links_untappd-ratings-for-woocommerce/untappd-ratings-for-woocommerce.phpincludes/class-urwc-ratings.php:45
filterplugin_action_links_untappd-ratings-for-woocommerce/untappd-ratings-for-woocommerce.phpincludes/class-urwc-ratings.php:48
actionplugins_loadedincludes/class-urwc-ratings.php:50
actioncurrent_screenincludes/class-urwc-ratings.php:51
actionadmin_noticesincludes/class-urwc-ratings.php:53
actionadmin_enqueue_scriptsincludes/class-urwc-ratings.php:119
actionadmin_noticesincludes/class-urwc-ratings.php:171
filterwc_get_templateincludes/class-urwc-ratings.php:186
filterstorefront_credit_links_outputincludes/class-urwc-ratings.php:215
actionwp_enqueue_scriptsincludes/class-urwc-ratings.php:222
filterwoocommerce_settings_tabs_arrayincludes/class-urwc-settings.php:29
actionwoocommerce_settings_tabs_untappd_settingsincludes/class-urwc-settings.php:31
actionwoocommerce_update_options_untappd_settingsincludes/class-urwc-settings.php:32
actionadmin_enqueue_scriptsincludes/class-urwc-settings.php:34
actionbefore_woocommerce_inituntappd-ratings-for-woocommerce.php:59
Maintenance & Trust

Untappd Ratings for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 4, 2025
PHP min version7.4
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Untappd Ratings for WooCommerce Developer Profile

chillcode

2 plugins · 210 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Untappd Ratings for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/untappd-ratings-for-woocommerce/assets/css/urwc-map.css/wp-content/plugins/untappd-ratings-for-woocommerce/assets/js/urwc-map.js
Script Paths
/wp-content/plugins/untappd-ratings-for-woocommerce/addons/brewery-activity-feed/js/urwc-brewery-activity-feed-map.js/wp-content/plugins/untappd-ratings-for-woocommerce/assets/js/urwc-map.js
Version Parameters
untappd-ratings-for-woocommerce/assets/css/urwc-map.css?ver=untappd-ratings-for-woocommerce/addons/brewery-activity-feed/js/urwc-brewery-activity-feed-map.js?ver=untappd-ratings-for-woocommerce/assets/js/urwc-map.js?ver=

HTML / DOM Fingerprints

CSS Classes
urwc-mapurwc-map-containerurwc-map-loading-overlayurwc-map-loading-content
Data Attributes
data-api_keydata-brewery_iddata-lat_lngdata-max_checkinsdata-classdata-container_class+11 more
JS Globals
urwc_map_data
REST Endpoints
/wp-json/urwc/v1/checkins
Shortcode Output
[urwc_untappd_map
FAQ

Frequently Asked Questions about Untappd Ratings for WooCommerce