
Additional Terms for WooCommerce Security & Risk Analysis
wordpress.org/plugins/woo-additional-termsImprove your checkout process by adding an extra checkbox for terms and conditions. Keep track of acceptance to ensure transparency and security.
Is Additional Terms for WooCommerce Safe to Use in 2026?
Generally Safe
Score 100/100Additional Terms for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "woo-additional-terms" plugin version 1.7.1 exhibits a generally strong security posture based on the provided static analysis and vulnerability history. The absence of AJAX handlers, REST API routes, shortcodes, and cron events significantly limits the potential attack surface. The code also demonstrates good practices with 100% of SQL queries using prepared statements, and the presence of nonce and capability checks, albeit limited in number. The lack of dangerous functions, file operations, and external HTTP requests further mitigates common vulnerabilities.
However, there are areas for improvement. The output escaping is only properly handled for 62% of outputs, which could lead to Cross-Site Scripting (XSS) vulnerabilities if untrusted data is rendered directly without proper sanitization. While taint analysis shows no flows with unsanitized paths, this could be due to the limited complexity or attack surface exposed by the plugin. The vulnerability history is a significant strength, showing no known CVEs, which suggests a proactive approach to security from the developers or a history of minimal security exposure.
In conclusion, the plugin is relatively secure, with its primary weakness being the incomplete output escaping. The lack of a public vulnerability history is a positive indicator. The limited attack surface and good use of WordPress security features are commendable. Addressing the output escaping issue would further strengthen its security.
Key Concerns
- Output escaping is not properly handled for 38% of outputs
Additional Terms for WooCommerce Security Vulnerabilities
Additional Terms for WooCommerce Code Analysis
Output Escaping
Additional Terms for WooCommerce Attack Surface
WordPress Hooks 33
Maintenance & Trust
Additional Terms for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
Additional Terms for WooCommerce Alternatives
WP Terms Popup – Terms and Conditions and Privacy Policy WordPress Popups
wp-terms-popup
Use WP Terms Popup to ask visitors to agree to your terms and conditions or privacy policy before they are allowed to view your site.
iubenda | All-in-one Compliance for GDPR / CCPA Cookie Consent + more
iubenda-cookie-law-solution
The solution for GDPR compliance + more. Get your cookie banner, privacy policy, terms and conditions and handle cookie consent in just one plugin.
Legal Pages – Privacy Policy, Terms & Conditions, GDPR, CCPA, and Cookie Notice Generator
legal-pages
The best WordPress legal pages generator that comes with pre-made templates for GDPR, CCPA, DMCA, Privacy Policy, Terms & Conditions, Cookie Polic …
Privacy Policy Generator – WPLP Legal Pages
wplegalpages
Create and manage legal pages for WordPress websites using ready-made policy templates that support common privacy and compliance requirements.
Terms & Conditions Per Product
terms-and-conditions-per-product
Configure specific Terms and Conditions per WooCommerce product, category, or tag.
Additional Terms for WooCommerce Developer Profile
2 plugins · 22K total installs
How We Detect Additional Terms for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/woo-additional-terms/assets/css/admin/admin.css/wp-content/plugins/woo-additional-terms/assets/css/admin/notices.css/wp-content/plugins/woo-additional-terms/assets/css/admin/rate.css/wp-content/plugins/woo-additional-terms/assets/js/admin/dismiss.js/wp-content/plugins/woo-additional-terms/assets/js/admin/notices.js/wp-content/plugins/woo-additional-terms/assets/js/admin/rate.js/wp-content/plugins/woo-additional-terms/assets/js/admin/settings.js/wp-content/plugins/woo-additional-terms/assets/js/frontend/frontend.js/wp-content/plugins/woo-additional-terms/assets/js/admin/dismiss.js/wp-content/plugins/woo-additional-terms/assets/js/admin/notices.js/wp-content/plugins/woo-additional-terms/assets/js/admin/rate.js/wp-content/plugins/woo-additional-terms/assets/js/admin/settings.js/wp-content/plugins/woo-additional-terms/assets/js/frontend/frontend.jswoo-additional-terms/assets/css/admin/admin.css?ver=woo-additional-terms/assets/css/admin/notices.css?ver=woo-additional-terms/assets/css/admin/rate.css?ver=woo-additional-terms/assets/js/admin/dismiss.js?ver=woo-additional-terms/assets/js/admin/notices.js?ver=woo-additional-terms/assets/js/admin/rate.js?ver=woo-additional-terms/assets/js/admin/settings.js?ver=woo-additional-terms/assets/js/frontend/frontend.js?ver=HTML / DOM Fingerprints
woo-additional-terms-noticedata-notice-dismiss-nonce=data-rate-dismiss-nonce=woo_additional_terms_admin_notices