WhatsOrder – Instant Checkout for WooCommerce Security & Risk Analysis

wordpress.org/plugins/whatsorder-instant-checkout-for-woocommerce

Enable instant WooCommerce checkout via WhatsApp with auto-generated invoices for seamless order processing.

400 active installs v1.0.0 PHP 7.2+ WP 5.0+ Updated May 4, 2025
quick-checkoutwhatsapp-checkoutwhatsapp-paymentswoocommerce-checkoutwoocommerce-orders
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is WhatsOrder – Instant Checkout for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

WhatsOrder – Instant Checkout for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 11mo ago
Risk Assessment

Based on the static analysis, "whatsorder-instant-checkout-for-woocommerce" v1.0.0 exhibits a strong security posture with no identified vulnerabilities in its attack surface, code signals, or taint analysis. The complete absence of AJAX handlers, REST API routes, shortcodes, and cron events, along with the lack of dangerous functions and SQL injection risks due to prepared statements, significantly minimizes the plugin's exposure to common web attacks. Furthermore, the high percentage of properly escaped output and the presence of a nonce check indicate good coding practices for handling user input and preventing CSRF attacks.

The vulnerability history is also a significant strength, with zero known CVEs recorded. This suggests that the plugin has been well-maintained and audited in the past, or it operates in a way that is inherently less prone to vulnerabilities. The lack of any common vulnerability types further reinforces this positive assessment. The single file operation noted is not flagged as a concern, likely indicating a safe and contained use case.

While the plugin demonstrates excellent security hygiene in this version, it's important to remember that security is an ongoing process. The absence of capability checks is a minor area of potential improvement, as it could be leveraged in conjunction with other issues if they were to arise. However, given the current analysis, the overall risk is very low, and the plugin appears to be secure.

Key Concerns

  • No capability checks found
Vulnerabilities
None known

WhatsOrder – Instant Checkout for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

WhatsOrder – Instant Checkout for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
3
40 escaped
Nonce Checks
1
Capability Checks
0
File Operations
1
External Requests
0
Bundled Libraries
0

Output Escaping

93% escaped43 total outputs
Attack Surface

WhatsOrder – Instant Checkout for WooCommerce Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 5
actionadmin_noticeswhatsorder-instant-checkout-for-woocommerce.php:21
actionadmin_initwhatsorder-instant-checkout-for-woocommerce.php:25
actionwp_enqueue_scriptswhatsorder-instant-checkout-for-woocommerce.php:32
filterwoocommerce_payment_gatewayswhatsorder-instant-checkout-for-woocommerce.php:46
actionplugins_loadedwhatsorder-instant-checkout-for-woocommerce.php:54
Maintenance & Trust

WhatsOrder – Instant Checkout for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedMay 4, 2025
PHP min version7.2
Downloads2K

Community Trust

Rating100/100
Number of ratings1
Active installs400
Developer Profile

WhatsOrder – Instant Checkout for WooCommerce Developer Profile

Yapacdev

1 plugin · 400 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect WhatsOrder – Instant Checkout for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/whatsorder-instant-checkout-for-woocommerce/assets/css/invoice-style.css
Version Parameters
whatsorder-instant-checkout-for-woocommerce/assets/css/invoice-style.css?ver=1.0.0

HTML / DOM Fingerprints

CSS Classes
notice-error
Data Attributes
name="yapacdev_whatsorder_nonce"value="
JS Globals
WC_Gateway_YapacDev_WhatsOrder
FAQ

Frequently Asked Questions about WhatsOrder – Instant Checkout for WooCommerce