Order Export For WooCommerce To Constant Contact Security & Risk Analysis

wordpress.org/plugins/woo-order-export-constant-contact

This plugin export users data from woocommerce order and merge it into the constant contact account.

0 active installs v1.2.6 PHP + WP 6.3+ Updated Dec 14, 2025
constant-contact-for-woocommerceconstant-contact-woocommercewoocommerce-constant-contactwoocommerce-order-export-to-constant-contact
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Order Export For WooCommerce To Constant Contact Safe to Use in 2026?

Generally Safe

Score 100/100

Order Export For WooCommerce To Constant Contact has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3mo ago
Risk Assessment

The "woo-order-export-constant-contact" plugin v1.2.6 exhibits a generally strong security posture with good coding practices observed. The analysis shows no critical or high-severity taint flows, all SQL queries utilize prepared statements, and all identified output operations are properly escaped. Furthermore, the plugin has no recorded history of vulnerabilities, suggesting a proactive approach to security from the developers. The absence of file operations and reliance on secure coding standards are positive indicators.

However, a significant concern arises from the presence of a single AJAX handler that lacks authentication checks. This creates a direct entry point for potential unauthorized actions if not properly secured by WordPress's global security mechanisms. While there are no known CVEs or past vulnerabilities, the lack of specific capability checks or nonce verification on this AJAX endpoint represents a potential weakness. The plugin's limited attack surface is a mitigating factor, but the unprotected AJAX handler is the primary area requiring attention.

In conclusion, the plugin demonstrates sound development practices by avoiding common vulnerabilities like raw SQL and unescaped output. The clean vulnerability history further bolsters confidence. The main weakness lies in the unprotected AJAX endpoint, which, despite the small attack surface, could be exploited. Users should ensure that their WordPress installation has robust security measures in place to protect against unauthorized access to these types of endpoints.

Key Concerns

  • AJAX handler without authentication checks
Vulnerabilities
None known

Order Export For WooCommerce To Constant Contact Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Order Export For WooCommerce To Constant Contact Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
10 escaped
Nonce Checks
0
Capability Checks
1
File Operations
0
External Requests
2
Bundled Libraries
0

Output Escaping

100% escaped10 total outputs
Attack Surface
1 unprotected

Order Export For WooCommerce To Constant Contact Attack Surface

Entry Points1
Unprotected1

AJAX Handlers 1

authwp_ajax_wps_send_single_order_to_ccincludes\wps-cc-woo-admin.php:13
WordPress Hooks 13
actionadmin_initincludes\wps-cc-woo-admin.php:5
filterwoocommerce_settings_tabs_arrayincludes\wps-cc-woo-admin.php:7
actionwoocommerce_settings_tabs_wps_constant_contact_wooincludes\wps-cc-woo-admin.php:8
actionwoocommerce_update_options_wps_constant_contact_wooincludes\wps-cc-woo-admin.php:9
actionadmin_footer-edit.phpincludes\wps-cc-woo-admin.php:11
filtermanage_edit-shop_order_columnsincludes\wps-cc-woo-admin.php:184
actionmanage_shop_order_posts_custom_columnincludes\wps-cc-woo-admin.php:203
actionadmin_print_stylesincludes\wps-cc-woo-admin.php:210
actioninitindex.php:20
actionadmin_noticesindex.php:23
actionadmin_noticesindex.php:31
actionadmin_noticesindex.php:51
actioninitindex.php:59
Maintenance & Trust

Order Export For WooCommerce To Constant Contact Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 14, 2025
PHP min version
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs0
Alternatives

Order Export For WooCommerce To Constant Contact Alternatives

No alternatives data available yet.

Developer Profile

Order Export For WooCommerce To Constant Contact Developer Profile

WPSuperiors Developer

6 plugins · 260 total installs

86
trust score
Avg Security Score
97/100
Avg Patch Time
54 days
View full developer profile
Detection Fingerprints

How We Detect Order Export For WooCommerce To Constant Contact

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/woo-order-export-constant-contact/css/admin-style.css/wp-content/plugins/woo-order-export-constant-contact/js/wps-cc-woo-api.js
Script Paths
wp-content/plugins/woo-order-export-constant-contact/js/wps-cc-woo-api.js
Version Parameters
woo-order-export-constant-contact/css/admin-style.css?ver=woo-order-export-constant-contact/js/wps-cc-woo-api.js?ver=

HTML / DOM Fingerprints

Data Attributes
id="wc_wps_constant_contact_woo_section_title"id="wc_wps_constant_contact_woo_order_status"id="wc_wps_constant_contact_woo_api_key"id="wc_wps_constant_contact_woo_access_token"id="wc_wps_constant_contact_woo_list_id"
FAQ

Frequently Asked Questions about Order Export For WooCommerce To Constant Contact