
Alerts via MQQT for WooCommerce Security & Risk Analysis
wordpress.org/plugins/wc-mqtt-alertsMQTT Alerts for WooCommerce
Is Alerts via MQQT for WooCommerce Safe to Use in 2026?
Generally Safe
Score 85/100Alerts via MQQT for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "wc-mqtt-alerts" v0.2.2 plugin exhibits a strong security posture based on the provided static analysis. It demonstrates excellent adherence to secure coding practices, with all identified SQL queries utilizing prepared statements and all output being properly escaped. The absence of dangerous functions, file operations, and unsanitized taint flows further reinforces this positive assessment. Furthermore, the plugin has no recorded vulnerability history, indicating a commitment to security or a lack of prior discovery of issues.
However, the analysis does reveal a single external HTTP request. While not inherently a vulnerability, it represents a potential attack vector if the target endpoint is compromised or if the request is not properly validated and sanitized on the server side. The plugin also has a single nonce check, which is positive, but the absence of capability checks on any potential entry points (even though there are none listed) is a minor area of concern, as it implies that if new entry points were added without proper security, they might not be adequately protected.
In conclusion, "wc-mqtt-alerts" v0.2.2 appears to be a very secure plugin with robust coding practices. The main area for attention is the single external HTTP request, which warrants careful monitoring and potential hardening to mitigate any unforeseen risks. The lack of known vulnerabilities and the solid static analysis results are significant strengths.
Key Concerns
- External HTTP request without specific validation details
- No capability checks on entry points (though currently zero)
Alerts via MQQT for WooCommerce Security Vulnerabilities
Alerts via MQQT for WooCommerce Release Timeline
Alerts via MQQT for WooCommerce Code Analysis
Output Escaping
Alerts via MQQT for WooCommerce Attack Surface
WordPress Hooks 6
Maintenance & Trust
Alerts via MQQT for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
Alerts via MQQT for WooCommerce Alternatives
Simple Newsletter Plugin – Noptin
newsletter-optin-box
A fast, GDPR-compliant newsletter plugin. Collect newsletter subscribers, let users subscribe to new post notifications, and send newsletters. ★★★★★
Shipway Experience – Tracking & Notification
shipway-shipment-tracking-and-notify
Shipway Experience provides shipment tracking and notification services along with features like Branded Tracking Page, Feedback collection and widget …
WP Post Notifier For All
wp-post-notifier-for-all
Notify all Wordpress users (and not only the admin) on every post publishing.
ClickSend SMS Woo Integration
clicksendsms
ClickSend SMS Woo Integration helps to send transactions & promotional sms to wooCommerce store owners.
Notify Bot for WooCommerce
notify-bot-woocommerce
Notify Bot for WooCommerce: Streamline Order Management Effortlessly
Alerts via MQQT for WooCommerce Developer Profile
3 plugins · 20 total installs
How We Detect Alerts via MQQT for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
wooshiftrmqtt_info_block