BACK TO DIRECTORY

CacheSafe for WooCommerce

by Cobalt Branch Labs

0.0
(0 ratings)

CacheSafe for WooCommerce is a diagnostic evidence plugin by Cobalt Branch Labs. It runs controlled anonymous cart sessions through your store’s public WooCommerce surfaces and reports whether cache behavior, cookies, headers, and Store API responses preserve customer isolation.

Free v1.0 includes manual scans, sanitized findings, provider-aware remediation guidance, WP-CLI, and local-only evidence. No telemetry, no accounts, no automatic cache changes.

What it does

  • Preflight checks — WooCommerce pages, loopback reachability, Store API, test product, runner health, perspective
  • Manual staged scans — Store API Cart-Token A/B isolation plus classic cookie/add-to-cart flow where supported
  • 16 safety checks (CS-101–116) — headers, Set-Cookie, session isolation, replay, cleanup, perspective
  • Sanitized reports — copy or download JSON, text, or HTML without cookie values, tokens, or raw bodies
  • Provider guidance — evidence-linked remediation for generic stacks and common cache/CDN plugins
  • WP-CLIwp cachesafe preflight, scan, status, report, cancel, cleanup, purge
  • Retention — keeps the last five completed scans within 30 days (configurable shorter); automatic daily purge

What it does not do

  • Place orders, process payments, or call checkout write endpoints
  • Change cache, CDN, DNS, or host settings automatically
  • Send telemetry or require an account
  • Show a numeric “safety score”

Admin

WooCommerce CacheSafe with tabs for Overview, Preflight, Live scan, Results, History, Settings, and Tools.

Privacy

All scan evidence stays on your WordPress site. CacheSafe does not phone home. Reports are sanitized to exclude cookie values, Cart-Tokens, nonces, Authorization headers, raw bodies, secrets, and customer PII. Retention is bounded and configurable; uninstall can remove plugin-owned data when enabled in Settings.

Development

Unminified JavaScript and CSS live in assets/src/. Built admin assets are written to assets/build/ via @wordpress/scripts.

To regenerate the compiled files from this plugin directory:

  1. npm install
  2. npm run build

    package.json and webpack.config.js ship with the plugin so the build can be reproduced without a separate repository.

Screenshots

CacheSafe overview and scan summary

CacheSafe overview and scan summary

Live scan progress with stage timeline

Live scan progress with stage timeline

Findings with sanitized evidence drawer

Findings with sanitized evidence drawer

Plugin Details

Active Installs
0
Total Downloads
83
Version
1.0.1
Requires WP
6.9
Requires PHP
7.4
Tested Up To
7.1
Added
2026-09-08
Last Updated
2026-09-09 6:28am GMT

Ratings

5
0
4
0
3
0
2
0
1
0