
metaps PAYMENT for WooCommerce Security & Risk Analysis
wordpress.org/plugins/woo-paydesignmetaps PAYMENT gateway payment for WooCommerce.
Is metaps PAYMENT for WooCommerce Safe to Use in 2026?
Generally Safe
Score 92/100metaps PAYMENT for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "woo-paydesign" plugin v1.3.1 exhibits a generally good security posture with several positive indicators. The presence of nonce checks and capability checks on its single AJAX entry point is encouraging, and the absence of known CVEs suggests a history of responsible development. Furthermore, the plugin does not make external HTTP requests and has no shortcodes or cron events, limiting its attack surface.
However, the static analysis reveals some areas for improvement. Approximately half of the SQL queries are not using prepared statements, which could lead to SQL injection vulnerabilities if not handled carefully. Additionally, a significant portion of output is not properly escaped, potentially exposing the plugin to cross-site scripting (XSS) vulnerabilities. The taint analysis identified two flows with unsanitized paths, which, while not classified as critical or high severity, warrant further investigation as they could represent potential security weaknesses.
In conclusion, "woo-paydesign" v1.3.1 has a solid foundation with its limited attack surface and lack of historical vulnerabilities. Nonetheless, the unaddressed SQL query preparation and output escaping issues, coupled with the identified unsanitized taint flows, represent actionable security risks that should be mitigated to further strengthen the plugin's security.
Key Concerns
- SQL queries not using prepared statements
- Output not properly escaped
- Flows with unsanitized paths
metaps PAYMENT for WooCommerce Security Vulnerabilities
metaps PAYMENT for WooCommerce Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
metaps PAYMENT for WooCommerce Attack Surface
AJAX Handlers 1
WordPress Hooks 38
Maintenance & Trust
metaps PAYMENT for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
metaps PAYMENT for WooCommerce Alternatives
Japanized for WooCommerce
woocommerce-for-japan
Essential Japanese localization toolkit for WooCommerce - adds address formats, payment methods, delivery scheduling, and legal compliance.
Woo Each add to cart
woo-each-add-to-cart
This plugin add each time you click the button.
Klarna for WooCommerce
klarna-payments-for-woocommerce
Grow your business for increased sales and enhanced shopping experiences at no extra costs.
Conversion Tracking for WooCommerce
woocommerce-conversion-tracking
Adds various conversion tracking codes to cart, checkout, registration success and product page on WooCommerce
Kustom Checkout for WooCommerce
klarna-checkout-for-woocommerce
The leading checkout in the Nordics, built for higher conversion and returning shoppers. Easy to integrate, supports Klarna and all popular payment me …
metaps PAYMENT for WooCommerce Developer Profile
6 plugins · 11K total installs
How We Detect metaps PAYMENT for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/woo-paydesign/assets/css/common.css/wp-content/plugins/woo-paydesign/assets/css/bootstrap.min.css/wp-content/plugins/woo-paydesign/assets/css/style.css/wp-content/plugins/woo-paydesign/assets/js/common.js/wp-content/plugins/woo-paydesign/assets/js/bootstrap.min.js/wp-content/plugins/woo-paydesign/assets/js/paydesign.js/wp-content/plugins/woo-paydesign/assets/js/common.js/wp-content/plugins/woo-paydesign/assets/js/bootstrap.min.js/wp-content/plugins/woo-paydesign/assets/js/paydesign.jswoo-paydesign/assets/css/common.css?ver=woo-paydesign/assets/css/bootstrap.min.css?ver=woo-paydesign/assets/css/style.css?ver=woo-paydesign/assets/js/common.js?ver=woo-paydesign/assets/js/bootstrap.min.js?ver=woo-paydesign/assets/js/paydesign.js?ver=HTML / DOM Fingerprints
jp4wc_paydesign_prefix_orderjp4wc_paydesign_notice_urljp4wc_paydesign_ccjp4wc_paydesign_cc_tokenjp4wc_paydesign_csjp4wc_paydesign_pedata-target="#jp4wc_paydesign_general"data-target="#jp4wc_paydesign_payment"