WooCommerce
WooCommerce is the dominant e-commerce plugin for WordPress, turning a WordPress site into an online store. It is detected from its generator markup, characteristic asset paths and storefront classes.
Because it builds on WordPress, WooCommerce sites inherit the platform’s plugin-driven attack surface, and compromised stores are a frequent target for payment-skimming scripts — making a close look at injected JavaScript especially worthwhile.
Commonly deployed alongside WooCommerce
Of the 2,113 public scans where WooCommerce was detected, these are the technologies most often present on the same site. The share is the percentage of WooCommerce sites that also ran each one.
| Technology | Category | Share of WooCommerce sites |
|---|---|---|
| jQuery | wappalyzer | 99.77% |
| WordPress | cms | 99.16% |
| MySQL | wappalyzer | 96.58% |
| PHP | wappalyzer | 96.53% |
| MetaGenerator | miscellaneous | 88.51% |
| JQuery | miscellaneous | 85.65% |
| WordPress | wappalyzer | 67.42% |
| Open-Graph-Protocol | miscellaneous | 66.39% |
| Google Analytics | wappalyzer | 52.32% |
| HTTP/3 | wappalyzer | 48.43% |
| PoweredBy | miscellaneous | 43.41% |
| Google-Analytics | miscellaneous | 35.35% |
| Cloudflare | wappalyzer | 33.61% |
| Cloudflare Bot Management | wappalyzer | 28.6% |
How ScanMalware detects WooCommerce
WooCommerce is detected by analysing the response headers, HTML markup, JavaScript runtime and asset URLs captured when ScanMalware loads the site in a real headless browser.
From any scan you can pivot into related signals — JARM TLS fingerprints, ASN ownership and BGP routing, certificate history, JavaScript analysis and the overall security verdict — to understand not just that WooCommerce is present, but how it is being used. Open the full search interface for WooCommerce →
Recent public scans featuring WooCommerce
A rolling sample of recent public scans where WooCommerce was detected. Listing a site here is not a safety judgement — open a scan to see its full verdict.
| Site | Scanned |
|---|---|
| Spiders Facts for Kids - 5 Scary Facts about Spiders - LearningMole https://learningmole.com/spiders-facts-for-kids/ | 2026-08-04 |
| Skaping fournisseur et diffuseur de webcams pour le tourisme https://data3.skaping.com | 2026-08-04 |
| Beaux Arts | L’art comme vous ne le verrez nulle part ailleurs https://beauxarts.com | 2026-08-04 |
| The 5 Types of Eagles in America (And Where to Actually See Them) - BirdWatching https://www.birdwatchingdaily.com/beginners/birding-faq/5-types-of-eagles-in-america-and-w… | 2026-08-03 |
| Larry Berg: There's much more to be accomplished - ABTA | Learn More https://www.abta.org/mindmatters/scientific_advances/larry-berg-theres-much-more-to-be-acc… | 2026-08-03 |
| Tactic: the Hunger Strike Sankara Peace Foundation https://www.sankara.nl/tactic-the-hunger-strike/ | 2026-08-03 |
| Nexi https://nexi2rd.fintechiq-dev.gr/?add-to-cart=24 | 2026-08-03 |
| Veggbilder på lerret, alu og i ramme – produsert i Norge | Nfoto https://nfoto.no/veggbilder/?utm_source=nfoto.no&utm_campaign=9f8329fe8e-EMAIL_CAMPAIGN_20… | 2026-08-03 |
Frequently asked questions about WooCommerce
- Does using WooCommerce mean a website is unsafe?
- No. WooCommerce is a stack component, not a verdict. ScanMalware scores the whole page — its scripts, redirects, certificates, threat-intelligence matches and behaviour — so a site using WooCommerce can be perfectly safe or actively malicious.
- How many sites using WooCommerce has ScanMalware scanned?
- WooCommerce has been detected in 2,113 public scans on ScanMalware.com. Each scan is a real headless-browser visit, and the figure updates as new URLs are submitted.
- What technologies are commonly used with WooCommerce?
- Across scanned sites, WooCommerce is most often seen alongside jQuery, WordPress and MySQL. The full co-occurrence breakdown is listed on this page.
Browse all profiled technologies on the technology index, or scan a URL to see its full stack.