Free WordPress plugin · Version 1.0.1

CacheSafe for WooCommerce

Run controlled anonymous cart sessions through your store’s public WooCommerce surfaces. CacheSafe gathers local evidence about cache behavior, cookies, headers, Store API responses, and whether the tested sessions remain isolated from each other.

BUILT FORWoo+CacheSession evidence · local only
01

Controlled scans

Admin-triggered, budget-limited checks use ephemeral anonymous carts and never place an order.

02

Sanitized evidence

Reports omit cookie values, cart tokens, nonces, authorization headers, raw bodies, secrets, and customer data.

03

Local by design

Scan evidence stays on your WordPress site. CacheSafe does not phone home or require an account.

What it reviews

16 safety checks for cache and cart-session evidence.

01Cache-control and response headers
02Anonymous cart-session isolation
03Store API Cart-Token separation
04Classic WooCommerce session cookies
05Cross-session replay behavior
06Set-Cookie behavior
07Public cart and checkout surfaces
08Loopback and runner health
09Test-product readiness
10Store API availability
11Request-budget enforcement
12Evidence sanitization
13Temporary cart cleanup
14Scan perspective and limitations
15Provider-aware remediation context
16Retention and purge readiness

Simple workflow

Prepare. Scan. Review. Correct.

  1. 1

    Configure a test productChoose an approved simple product for temporary anonymous carts.

  2. 2

    Run preflightConfirm WooCommerce surfaces, loopback access, Store API, and runner health.

  3. 3

    Start a manual scanObserve the staged Store API and classic session checks.

  4. 4

    Review the evidenceUse the findings and provider-aware guidance before changing cache or CDN settings.

Install and evaluate

Inspect isolation without changing cache settings automatically.

Installation

Start from WordPress.org

  1. Install and activate WooCommerce.
  2. Install CacheSafe from WordPress.org.
  3. Set a test product, run Preflight, then start a scan.
Requirements

Current compatibility

  • WordPress 6.9 or newer
  • PHP 7.4 or newer
  • WooCommerce 9.0 or newer
  • Public Store API or classic cart flow, where supported
  • Tested with WordPress 7.1
Reports

Useful formats, bounded retention

Copy or download sanitized JSON, text, or HTML reports. By default, CacheSafe keeps the last five completed scans within 30 days, with shorter retention available.

Clear scope

Diagnostic evidence—not a guarantee or cache optimizer.

CacheSafe reports what its controlled requests observe from the tested perspective. It does not change cache, CDN, DNS, or hosting settings, continuously monitor traffic, place orders, process payments, or guarantee that every customer session is safe under every route and condition.

View CacheSafe on WordPress.org →
Available now · Version 1.0.1

Start with a controlled, local cache-session scan.

Get CacheSafe free