Zypento Security & Risk Analysis

wordpress.org/plugins/zypento

Features like Back InStock Notifications, Save for Later and Sale Countdown Timer for WooCommerce.

0 active installs v1.0.1 PHP 7.0+ WP 6.0+ Updated May 13, 2023
woocommerce
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Zypento Safe to Use in 2026?

Generally Safe

Score 85/100

Zypento has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3yr ago
Risk Assessment

The "zypento" v1.0.1 plugin exhibits a strong security posture based on the provided static analysis and vulnerability history. All SQL queries are properly prepared, and output is consistently escaped, indicating good development practices to prevent common vulnerabilities like SQL injection and cross-site scripting. The absence of critical or high-severity taint flows further reinforces this positive assessment. Furthermore, the plugin has no recorded vulnerabilities or CVEs, suggesting a history of secure development and maintenance.

While the plugin demonstrates commendable security measures, a single external HTTP request is noted. This, by itself, is not necessarily a vulnerability, but it represents a potential vector for further investigation. If the external service is compromised or malicious, it could indirectly impact the WordPress site. The presence of cron events, although not explicitly detailed as unprotected, warrants a check to ensure they are appropriately secured.

In conclusion, "zypento" v1.0.1 appears to be a well-secured plugin with minimal immediate risks. The developers have implemented crucial security best practices. The primary area for attention is the single external HTTP request, which should be monitored and validated for the security of the external endpoint.

Key Concerns

  • External HTTP request present
Vulnerabilities
None known

Zypento Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Zypento Release Timeline

v1.0.1Current
v1.0.0
Code Analysis
Analyzed Mar 17, 2026

Zypento Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
3 prepared
Unescaped Output
0
50 escaped
Nonce Checks
3
Capability Checks
3
File Operations
0
External Requests
1
Bundled Libraries
0

SQL Query Safety

100% prepared3 total queries

Output Escaping

100% escaped50 total outputs
Attack Surface

Zypento Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 29
actionplugins_loadedincludes\class-plugin.php:70
actionadmin_enqueue_scriptsincludes\core\class-admin.php:42
actionadmin_menuincludes\core\class-admin.php:43
actionrest_api_initincludes\core\class-admin.php:44
actioninitincludes\core\class-background-process.php:31
actionadmin_initincludes\core\class-background-process.php:32
actionwp_loadedincludes\core\class-background-process.php:33
actionzyp_bg_processincludes\core\class-background-process.php:35
filterzypento_post_typesincludes\core\class-background-process.php:36
actionwp_enqueue_scriptsincludes\core\class-frontend.php:42
actionwoocommerce_before_add_to_cart_formincludes\features\woocommerce\class-sale-countdown-timer.php:39
actionwoocommerce_products_general_settingsincludes\features\woocommerce\class-sale-countdown-timer.php:40
filterzypento_js_variablesincludes\features\woocommerce\class-sale-countdown-timer.php:42
filterzypento_admin_js_variablesincludes\features\woocommerce\class-save-for-later.php:39
filterzypento_js_variablesincludes\features\woocommerce\class-save-for-later.php:40
actionwoocommerce_after_cart_tableincludes\features\woocommerce\class-save-for-later.php:42
actionwoocommerce_cart_is_emptyincludes\features\woocommerce\class-save-for-later.php:43
actioninitincludes\features\woocommerce\class-save-for-later.php:44
actionadmin_initincludes\features\woocommerce\class-save-for-later.php:45
actionrest_api_initincludes\features\woocommerce\class-save-for-later.php:46
filterzypento_admin_js_variablesincludes\features\woocommerce\class-stock-notifier.php:39
filterzypento_js_variablesincludes\features\woocommerce\class-stock-notifier.php:40
filterzypento_post_typesincludes\features\woocommerce\class-stock-notifier.php:41
actionwoocommerce_product_meta_startincludes\features\woocommerce\class-stock-notifier.php:43
actioninitincludes\features\woocommerce\class-stock-notifier.php:44
actionadmin_initincludes\features\woocommerce\class-stock-notifier.php:45
actionrest_api_initincludes\features\woocommerce\class-stock-notifier.php:46
actionwoocommerce_product_set_stockincludes\features\woocommerce\class-stock-notifier.php:47
actionwoocommerce_variation_set_stockincludes\features\woocommerce\class-stock-notifier.php:48

Scheduled Events 1

zyp_bg_process
Maintenance & Trust

Zypento Maintenance & Trust

Maintenance Signals

WordPress version tested6.2.9
Last updatedMay 13, 2023
PHP min version7.0
Downloads643

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Zypento Developer Profile

sproutient

10 plugins · 90 total installs

91
trust score
Avg Security Score
95/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Zypento

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/zypento/assets/css/admin.css/wp-content/plugins/zypento/assets/js/admin.js
Script Paths
/wp-content/plugins/zypento/assets/js/admin.js
Version Parameters
zypento/assets/css/admin.css?ver=zypento/assets/js/admin.js?ver=

HTML / DOM Fingerprints

Data Attributes
data-zypento-actiondata-zypento-valuedata-zypento-nonce
JS Globals
zypentoAdminVariables
REST Endpoints
/wp-json/zypento/v1/settings
FAQ

Frequently Asked Questions about Zypento