
Extended Coupon Features for WooCommerce FREE Security & Risk Analysis
wordpress.org/plugins/woocommerce-auto-added-couponsAdditional functionality for WooCommerce Coupons: Allow discounts to be automatically applied, applying coupons via url, etc...
Is Extended Coupon Features for WooCommerce FREE Safe to Use in 2026?
Generally Safe
Score 100/100Extended Coupon Features for WooCommerce FREE has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
Based on the provided static analysis and vulnerability history, the "woocommerce-auto-added-coupons" v3.4.2 plugin appears to have a generally strong security posture. The static analysis reveals no identified entry points for attack vectors such as AJAX handlers, REST API routes, shortcodes, or cron events that are not protected by authentication. Furthermore, there are no detected dangerous functions or external HTTP requests, and importantly, no taint analysis revealed any critical or high severity vulnerabilities related to unsanitized data flow. The code also demonstrates a good level of output escaping, with 75% of outputs properly handled. However, a notable concern is the complete absence of nonce checks across all identified entry points, which is unusual given the 3 capability checks present. This lack of nonce verification could potentially be exploited if an attacker can trick a user into triggering actions associated with these capability checks without their explicit consent. Additionally, the SQL queries show that only 20% are using prepared statements, meaning a significant portion of the 5 SQL queries are susceptible to SQL injection if not handled with extreme care elsewhere in the code. The plugin's vulnerability history is entirely clean, with no recorded CVEs, which is a positive indicator. Overall, while the plugin exhibits strengths in preventing direct attack vectors and data flow vulnerabilities, the absence of nonce checks and the low percentage of prepared SQL statements represent significant areas for improvement to achieve a more robust security profile.
Key Concerns
- No nonce checks present on entry points
- Low percentage of prepared SQL statements (20%)
Extended Coupon Features for WooCommerce FREE Security Vulnerabilities
Extended Coupon Features for WooCommerce FREE Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Extended Coupon Features for WooCommerce FREE Attack Surface
WordPress Hooks 50
Maintenance & Trust
Extended Coupon Features for WooCommerce FREE Maintenance & Trust
Maintenance Signals
Community Trust
Extended Coupon Features for WooCommerce FREE Alternatives
Discount Rules for WooCommerce
woo-discount-rules
The discount plugin for WooCommerce helps you create bulk discount, quantity discount, storewide sale, dynamic pricing discount offers easily.
Smart Coupons For WooCommerce Coupons
wt-smart-coupons-for-woocommerce
Best WooCommerce coupons plugin to create advanced coupons and discount codes with auto-apply, BOGO, free shipping, giveaways, and discount rules.
Advanced Dynamic Pricing and Discount Rules for WooCommerce
advanced-dynamic-pricing-for-woocommerce
The discount plugin for WooCommerce supports any dynamic pricing discount: bulk discount, role discount, storewide, bogo, gifts, cart discount
Auto Coupons for WooCommerce
woo-auto-coupons
Apply WooCommerce Coupons automatically with a fast, lightweight plugin. Set minimum product quantities, apply coupons by URL or automatically.
Power Coupons for WooCommerce
power-coupons
WordPress coupon plugin for WooCommerce that auto-applies discounts with flexible rules and dynamic cart incentives—no codes required.
Extended Coupon Features for WooCommerce FREE Developer Profile
4 plugins · 11K total installs
How We Detect Extended Coupon Features for WooCommerce FREE
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/woocommerce-auto-added-coupons/assets/css/wjecf-admin-styles.css/wp-content/plugins/woocommerce-auto-added-coupons/assets/js/wjecf-admin-coupons.js/wp-content/plugins/woocommerce-auto-added-coupons/assets/js/wjecf-admin-usage-restriction.js/wp-content/plugins/woocommerce-auto-added-coupons/assets/js/wjecf-admin-coupons.js/wp-content/plugins/woocommerce-auto-added-coupons/assets/js/wjecf-admin-usage-restriction.jswoocommerce-auto-added-coupons/assets/css/wjecf-admin-styles.css?ver=woocommerce-auto-added-coupons/assets/js/wjecf-admin-coupons.js?ver=woocommerce-auto-added-coupons/assets/js/wjecf-admin-usage-restriction.js?ver=HTML / DOM Fingerprints
wjecf-not-widedata-wjecf-coupon-idwjecf_admin_coupons_paramswjecf_usage_restriction_params