Simple Intelligent Systems AstroPay Card Payment option for Woocommerce Security & Risk Analysis

wordpress.org/plugins/woo-astropay-card-payment

Easily adds AstroPay card payment options to the WooCommerce plugin so you can allow customers to checkout via AstroPay card.

10 active installs v1.0.1 PHP 5.6+ WP 4.4+ Updated Nov 1, 2021
contact-formemailformquizwordpress-form-plugin
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Simple Intelligent Systems AstroPay Card Payment option for Woocommerce Safe to Use in 2026?

Generally Safe

Score 85/100

Simple Intelligent Systems AstroPay Card Payment option for Woocommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4yr ago
Risk Assessment

The "woo-astropay-card-payment" plugin version 1.0.1 exhibits a mixed security posture. On the positive side, there are no recorded vulnerabilities (CVEs) or bundled libraries, which are excellent indicators of a well-maintained and secure plugin. The complete absence of SQL queries and file operations, coupled with 100% prepared statement usage for any queries, greatly mitigates risks of SQL injection and file manipulation. However, several areas raise concerns. The static analysis reveals a lack of explicit capability checks and nonce checks across all entry points, which, despite a zero-count attack surface, signifies a reliance on WordPress's default permissions and a potential vulnerability if new entry points are introduced or if existing ones are not properly secured by the calling context. Furthermore, 39% of output escaptions are not properly handled, presenting a risk of Cross-Site Scripting (XSS) vulnerabilities if user-supplied data is displayed without adequate sanitization. The two identified taint flows with unsanitized paths, although not classified as critical or high severity, warrant attention as they could potentially lead to unforeseen security issues. The external HTTP request also requires careful scrutiny to ensure it is not susceptible to man-in-the-middle attacks or other network-based threats.

Key Concerns

  • No capability checks on entry points
  • No nonce checks on entry points
  • Significant portion of output unescaped
  • Taint flows with unsanitized paths identified
  • External HTTP request present
Vulnerabilities
None known

Simple Intelligent Systems AstroPay Card Payment option for Woocommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Simple Intelligent Systems AstroPay Card Payment option for Woocommerce Release Timeline

v1.0.1Current
Code Analysis
Analyzed Apr 16, 2026

Simple Intelligent Systems AstroPay Card Payment option for Woocommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
9
14 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
1
Bundled Libraries
0

Output Escaping

61% escaped23 total outputs
Data Flows · Security
2 unsanitized

Data Flow Analysis

2 flows2 with unsanitized paths
payment_fields (woo-astropay-gateway-class.php:208)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Simple Intelligent Systems AstroPay Card Payment option for Woocommerce Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 5
filterplugin_action_linkswoo-astropay-card-payment.php:35
actionplugins_loadedwoo-astropay-card-payment.php:47
filterwoocommerce_payment_gatewayswoo-astropay-card-payment.php:55
filterhttp_request_versionwoo-astropay-gateway-class.php:59
actionadmin_noticeswoo-astropay-gateway-class.php:60
Maintenance & Trust

Simple Intelligent Systems AstroPay Card Payment option for Woocommerce Maintenance & Trust

Maintenance Signals

WordPress version tested5.8.13
Last updatedNov 1, 2021
PHP min version5.6
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Simple Intelligent Systems AstroPay Card Payment option for Woocommerce Developer Profile

Jitin Mishra

3 plugins · 20 total installs

85
trust score
Avg Security Score
87/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Simple Intelligent Systems AstroPay Card Payment option for Woocommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

Shortcode Output
<input name="astropay" id="astropay" type="radio" class="input-radio" value="astropay" checked='checked' data-order_button_text=''>
FAQ

Frequently Asked Questions about Simple Intelligent Systems AstroPay Card Payment option for Woocommerce