Title: Merqivio Checked
Author: merqivio
Published: <strong>September 2, 2026</strong>
Last modified: September 2, 2026

---

Search plugins

![](https://ps.w.org/merqivio-checked/assets/banner-772x250.png?rev=3677345)

![](https://ps.w.org/merqivio-checked/assets/icon-256x256.png?rev=3677345)

# Merqivio Checked

 By [merqivio](https://profiles.wordpress.org/merqivio/)

[Download](https://downloads.wordpress.org/plugin/merqivio-checked.1.5.4.zip)

 * [Details](https://wordpress.org/plugins/merqivio-checked/#description)
 * [Reviews](https://wordpress.org/plugins/merqivio-checked/#reviews)
 *  [Installation](https://wordpress.org/plugins/merqivio-checked/#installation)
 * [Development](https://wordpress.org/plugins/merqivio-checked/#developers)

 [Support](https://wordpress.org/support/plugin/merqivio-checked/)

## Description

Merqivio Checked performs a free local baseline scan of selected WooCommerce and
WordPress settings and content signals. A shop owner may optionally connect the 
plugin to Merqivio to create one centrally hosted Basic verification from the current
scan.

The Basic verification is a dated snapshot. Running later free local scans does 
not refresh the public Basic verification date. Continuous Monitoring is a separate
Merqivio SaaS service designed to keep a public status current with automatic external
monitoring and rechecks.

The plugin does not provide legal advice and a successful scan or verification does
not guarantee compliance with all applicable law.

#### Free functionality

 * Manual local Basic Scan
 * Merqivio score
 * Clear pass/review/fail findings
 * WooCommerce store identity signal checks
 * Privacy and terms page checks
 * Return/withdrawal content signal check
 * Cookie/consent plugin signal check
 * Product sample checks for price, image, description and SKU completeness
 * Optional one-time public Basic verification hosted by Merqivio
 * Optional front-end Merqivio Checked badge, OFF by default

#### External Merqivio service

Creating a public Basic verification is optional and requires explicit user action
and consent in the plugin screen. The local scanner itself does not contact Merqivio.

When the user chooses to create a public Basic verification, the plugin sends the
following data to the Merqivio service: webshop URL, WordPress site name, optional
business/shop identity fields entered by the administrator (business name, shop 
name, country and registration number), optional contact email and contact URL entered
by the administrator, selected certificate language, scan score, eligibility state,
number of critical findings, scan date/time, the listed scan check results and area
summaries, plugin identifier/version, and a randomly generated site verification
secret used for domain challenge-response verification.

No WooCommerce customer records, order records or payment data are required or sent
by this feature.

The Merqivio service uses the submitted data to verify control of the webshop, create
and host the requested public verification, and preserve its original Basic verification
date. The service verifies domain control through a challenge-response request to
this plugin’s public REST endpoint. The endpoint returns the site URL and an HMAC
response to a supplied challenge; it does not expose the site verification secret.

Later free scans update only local scan results and do not automatically transmit
refreshed results or renew the public Basic date.

Continuous Monitoring (Pro) is a separate optional paid Merqivio SaaS service. It
is not required for the free local scanner or the optional Basic verification. The
plugin screen may describe this optional service and link to Merqivio for purchase.

Service provider: Merqivio
 Service website: https://www.merqivio.com/ Privacy policy:
https://www.merqivio.com/privacy/ Terms of service: https://www.merqivio.com/voorwaarden/

## Installation

 1. Install and activate WooCommerce.
 2. Upload and activate Merqivio Checked.
 3. Open Merqivio Checked in WordPress admin.
 4. Run the free Basic Scan.
 5. Optionally create a public Basic verification after reviewing the data-transfer
    notice.
 6. Optionally enable the footer badge. It is OFF by default.

## FAQ

### Does this certify that my webshop complies with all EU law?

No. Merqivio checks selected signals and reports the scope of the verification. 
It is not government approval, legal advice or a guarantee of complete legal compliance.

### Does the plugin automatically add a Merqivio link?

No. Front-end badge display is OFF by default and requires explicit opt-in.

### What is sent to Merqivio for a Basic verification?

The webshop URL, site name, administrator-entered verification identity/contact 
fields, verification language, scan score and eligibility data, scan date/time, 
listed check results and area summaries, plugin identifier/version, and the randomly
generated site verification secret used for domain challenge-response verification.
No WooCommerce customer, order or payment data is required or sent by this feature.

### Can I renew the public Basic date by running another free scan?

No. Later free scans remain useful and current inside WordPress, but the centrally
hosted Basic verification preserves its original verification date. Continuous Monitoring
is the service for an actively maintained public status.

## Reviews

There are no reviews for this plugin.

## Contributors & Developers

“Merqivio Checked” is open source software. The following people have contributed
to this plugin.

Contributors

 *   [ merqivio ](https://profiles.wordpress.org/merqivio/)

[Translate “Merqivio Checked” into your language.](https://translate.wordpress.org/projects/wp-plugins/merqivio-checked)

### Interested in development?

[Browse the code](https://plugins.trac.wordpress.org/browser/merqivio-checked/),
check out the [SVN repository](https://plugins.svn.wordpress.org/merqivio-checked/),
or subscribe to the [development log](https://plugins.trac.wordpress.org/log/merqivio-checked/)
by [RSS](https://plugins.trac.wordpress.org/log/merqivio-checked/?limit=100&mode=stop_on_copy&format=rss).

## Changelog

#### 1.5.4

 * Replaced the short plugin-owned `mqc`/`MQC` prefix throughout the codebase with
   the unique `merqch`/`MERQCH` prefix required by the WordPress.org Plugins Team.
 * Renamed plugin-owned options, transients, actions, nonce actions, classes, constants,
   style handles and CSS selectors consistently.
 * No scanner, verification, badge or paid-service behaviour changed.

#### 1.5.3

 * Fixed all Plugin Check internationalization errors for strings containing placeholders.
 * Removed the unused Domain Path header.
 * Replaced the admin GET success flag with a WordPress transient.
 * No scanner, verification, badge or paid-service behaviour changed.

#### 1.5.2

 * Removed the optional Plugin URI header so the plugin and author URI values cannot
   conflict during submission.
 * Hardened consent request handling and improved translatability.
 * Kept the external-service disclosure aligned with the actual optional Basic verification
   data flow.
 * No free scanner features were removed or placed behind a paid licence.

#### 1.5.1

 * Prepared the free plugin for WordPress.org review.
 * Updated WordPress compatibility metadata through WordPress 7.1.
 * Expanded the external-service disclosure to match the exact optional Basic verification
   data flow.
 * Hardened admin status-notice input handling.
 * No free scanner features were removed or placed behind a paid licence.

#### 1.5.0

 * Added the optional Checked Pro purchase follow-up from the plugin’s own settings
   screen.
 * Kept the free local scanner and Basic verification independent from the paid 
   service.
 * Added language-aware Pro links and clarified Basic versus Continuous Monitoring
   status.

#### 1.4.1

 * Public verification is now strictly qualification-gated: score 80+ and no critical
   findings.
 * Failed/critical first scans remain private and can be improved and rescanned.
 * Clarifies that individual findings are never shown on the public certificate.

#### 1.4.0

 * Reworked the Merqivio Checked admin experience with clearer Merqivio branding
   and product explanation.
 * Added a contextual Free versus Pro comparison on the plugin settings page.
 * Added clear advertised Pro pricing: EUR 5.95/month or EUR 59/year.
 * Clarified the difference between a dated Basic verification and Continuous Monitoring.
 * Added server-side validation for explicit Merqivio service consent.
 * Kept all upgrade messaging limited to the plugin context.

#### 1.1.0

 * Added optional Merqivio Basic verification connection.
 * Added secure domain challenge-response verification.
 * Added public badge state for Basic versus Continuous Monitoring.
 * Clarified that later free scans do not renew the public Basic verification date.
 * Added explicit data-transfer consent wording.

#### 1.0.0

 * Initial base release.

## Meta

 *  Version **1.5.4**
 *  Last updated **1 day ago**
 *  Active installations **Fewer than 10**
 *  WordPress version ** 6.4 or higher **
 *  Tested up to **7.1**
 *  PHP version ** 7.4 or higher **
 * Tags
 * [audit](https://wordpress.org/plugins/tags/audit/)[compliance](https://wordpress.org/plugins/tags/compliance/)
   [monitoring](https://wordpress.org/plugins/tags/monitoring/)[webshop](https://wordpress.org/plugins/tags/webshop/)
   [woocommerce](https://wordpress.org/plugins/tags/woocommerce/)
 *  [Advanced View](https://wordpress.org/plugins/merqivio-checked/advanced/)

## Ratings

No reviews have been submitted yet.

[Your review](https://wordpress.org/support/plugin/merqivio-checked/reviews/#new-post)

[See all reviews](https://wordpress.org/support/plugin/merqivio-checked/reviews/)

## Contributors

 *   [ merqivio ](https://profiles.wordpress.org/merqivio/)

## Support

Got something to say? Need help?

 [View support forum](https://wordpress.org/support/plugin/merqivio-checked/)