Shipping Discount for WooCommerce Security & Risk Analysis

wordpress.org/plugins/wc-shipping-discount

Configurable shipping discount rules based on the amount spent for the items with a given shipping class.

200 active installs v1.0.18 PHP 7.3+ WP 5.6+ Updated Mar 4, 2026
discountshippingshipping-discountwoocommercewoocommerce-shipping-discount
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Shipping Discount for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

Shipping Discount for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The static analysis of "wc-shipping-discount" v1.0.18 reveals a generally sound security posture with no direct attack surface identified in AJAX handlers, REST API routes, shortcodes, or cron events. The plugin also demonstrates good practice by exclusively using prepared statements for its SQL queries and has no recorded vulnerability history, indicating a lack of past exploitable issues. However, the presence of the `unserialize` function is a significant concern, as it can lead to object injection vulnerabilities if the serialized data originates from untrusted sources. Furthermore, only 44% of output escaping is properly implemented, suggesting potential for cross-site scripting (XSS) vulnerabilities in areas where output is not sanitized. The lack of nonce checks and capability checks, while not directly exploitable due to the absence of defined entry points, represents a missed opportunity to implement robust access control mechanisms.

Key Concerns

  • Use of unserialize function
  • Low percentage of properly escaped output
  • Missing nonce checks
  • Missing capability checks
Vulnerabilities
None known

Shipping Discount for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Shipping Discount for WooCommerce Code Analysis

Dangerous Functions
1
Raw SQL Queries
0
0 prepared
Unescaped Output
14
11 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
2
Bundled Libraries
0

Dangerous Functions Found

unserialize$data = unserialize($response['body']);includes\Admin\OneTeamSoftware.php:180

Output Escaping

44% escaped25 total outputs
Attack Surface

Shipping Discount for WooCommerce Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 6
actionadmin_menuincludes\Admin\OneTeamSoftware.php:55
actionadmin_initincludes\Admin\OneTeamSoftware.php:56
actionwoocommerce_shipping_initincludes\ShippingDiscount.php:22
filterwoocommerce_shipping_methodsincludes\ShippingDiscount.php:23
actionadmin_menuincludes\ShippingDiscount.php:29
filterwoocommerce_package_ratesincludes\ShippingMethod.php:62
Maintenance & Trust

Shipping Discount for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 4, 2026
PHP min version7.3
Downloads12K

Community Trust

Rating74/100
Number of ratings3
Active installs200
Developer Profile

Shipping Discount for WooCommerce Developer Profile

oneteamsoftware

14 plugins · 6K total installs

79
trust score
Avg Security Score
100/100
Avg Patch Time
97 days
View full developer profile
Detection Fingerprints

How We Detect Shipping Discount for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/wc-shipping-discount/assets/css/custom.css/wp-content/plugins/wc-shipping-discount/assets/js/custom.js
Script Paths
/wp-content/plugins/wc-shipping-discount/assets/js/custom.js
Version Parameters
wc-shipping-discount/assets/css/custom.css?ver=wc-shipping-discount/assets/js/custom.js?ver=

HTML / DOM Fingerprints

CSS Classes
oneteamsoftwareoneteamsoftware-admin-cssoneteamsoftware-custom-css
HTML Comments
PROGRAM (C) 2022 FlexRC PROPERTY 604-1097 View St OF Victoria, BC, V8V 0G9 CANADA +2 more
Data Attributes
data-author="oneteamsoftware"data-mainmenuid="oneteamsoftware"
JS Globals
oneteamsoftwareoneteamsoftware_admin_css
FAQ

Frequently Asked Questions about Shipping Discount for WooCommerce