
Gift Wrapper for WooCommerce Security & Risk Analysis
wordpress.org/plugins/woocommerce-gift-wrapperHolidays and birthdays are always coming! Gift wrap your customer's purchase, per order, on the WooCommerce cart and checkout pages.
Is Gift Wrapper for WooCommerce Safe to Use in 2026?
Generally Safe
Score 100/100Gift Wrapper for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The WooCommerce Gift Wrapper plugin version 6.32 exhibits a mixed security posture. On the positive side, it demonstrates good practices with a high percentage of properly escaped output and no identified dangerous functions, file operations, or critical taint flows. The absence of recorded vulnerabilities and CVEs in its history is also a strong indicator of a relatively secure development track record.
However, there are notable concerns that detract from its overall security. The presence of 7 AJAX handlers, with 2 of them lacking authentication checks, represents a significant attack surface. While no SQL queries were found to be unsanitized, the single SQL query is not using prepared statements, which could be a potential risk if not handled with extreme care. The plugin also makes an external HTTP request, the nature and security of which are not detailed, and has a limited number of nonce and capability checks for its entry points.
In conclusion, while the plugin appears to have a clean vulnerability history and generally good coding practices regarding output escaping, the unprotected AJAX endpoints are a critical weakness. The single non-prepared SQL query and the external HTTP request are also areas that warrant closer inspection. The lack of broader capability checks on its entry points could also lead to privilege escalation or unauthorized access if exploited in conjunction with other vulnerabilities.
Key Concerns
- Unprotected AJAX handlers
- SQL queries without prepared statements
- Limited capability checks on entry points
Gift Wrapper for WooCommerce Security Vulnerabilities
Gift Wrapper for WooCommerce Code Analysis
SQL Query Safety
Output Escaping
Gift Wrapper for WooCommerce Attack Surface
AJAX Handlers 7
WordPress Hooks 39
Maintenance & Trust
Gift Wrapper for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
Gift Wrapper for WooCommerce Alternatives
Gift Wrapping for WooCommerce
gift-wrapping-for-woocommerce
Allow customers to select a gift wrapper for their orders.
Gift Pack for Woocommerce
gift-pack-for-woocommerce
Let customers add gift packing/wrapping to individual products from product pages. choose your own Gift Pack design directly from the product page wit …
Jagif – WooCommerce Free Gift
jagif-woo-free-gift
Offer free gifts with purchases using custom rules. Highlight eligible products with visual gift icons to inform and entice customers
Woo Simple Gift Wrapping
woo-simple-gift-wrapping
Small plugin create to help store owner add gift wrapping fee to order and let buyer select a gift card if they want
Product Assembly / Gift Wrap / … Cost for WooCommerce
product-assembly-cost
Add an option to your WooCommerce products to enable assembly, gift wrap or any other service and optionally charge a fee for it.
Gift Wrapper for WooCommerce Developer Profile
28 plugins · 3.5M total installs
How We Detect Gift Wrapper for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/woocommerce-gift-wrapper/assets/css/frontend/main.css/wp-content/plugins/woocommerce-gift-wrapper/assets/js/frontend/main.js/wp-content/plugins/woocommerce-gift-wrapper/assets/css/backend/main.css/wp-content/plugins/woocommerce-gift-wrapper/assets/js/backend/main.js/wp-content/plugins/woocommerce-gift-wrapper/assets/css/checkout/main.css/wp-content/plugins/woocommerce-gift-wrapper/assets/js/checkout/main.js/wp-content/plugins/woocommerce-gift-wrapper/assets/css/admin/gift-wrapper-admin-notice.css/wp-content/plugins/woocommerce-gift-wrapper/assets/css/blocks/style.css+1 more/wp-content/plugins/woocommerce-gift-wrapper/assets/js/frontend/main.js/wp-content/plugins/woocommerce-gift-wrapper/assets/js/backend/main.js/wp-content/plugins/woocommerce-gift-wrapper/assets/js/checkout/main.jswoocommerce-gift-wrapper/assets/css/frontend/main.css?ver=woocommerce-gift-wrapper/assets/js/frontend/main.js?ver=woocommerce-gift-wrapper/assets/css/backend/main.css?ver=woocommerce-gift-wrapper/assets/js/backend/main.js?ver=woocommerce-gift-wrapper/assets/css/checkout/main.css?ver=woocommerce-gift-wrapper/assets/js/checkout/main.js?ver=woocommerce-gift-wrapper/assets/css/admin/gift-wrapper-admin-notice.css?ver=woocommerce-gift-wrapper/assets/css/blocks/style.css?ver=woocommerce-gift-wrapper/assets/css/blocks/editor.css?ver=HTML / DOM Fingerprints
wcgw-gift-wrapper-notice<!-- Gift Wrapper --><!-- Gift Wrapper Admin Notices --><!-- Gift Wrapper Settings --><!-- Gift Wrapper Settings Product -->+3 moredata-wcgw-product-iddata-wcgw-variation-iddata-wcgw-wrapper-pricedata-wcgw-wrapper-imagedata-wcgw-wrapper-namedata-wcgw-wrapper-desc+1 moreWC_Gift_Wrapper_Frontend