WARNING – This thing steals
-
I have this plugin and I use impact. This program was written in a way where they do not use hooks or API filters to get only items that are processing (paid) they instead use pending which happens before an order is paid for.
This means when an order is pending, (submitted, but not paid for) impact grabs it, and then if payment fails, impact does not know (or care – I have told them). So you will be paying your affiliates commission on all failed orders.
Not only that, an affiliate can learn this and exploit it by just creating orders on your site and not even putting in a credit card and when the order fails they will still be paid commission.
I know many small businesses will notice this, but big companies or those with lots of orders will never notice.
Rather than just change the code (I sent them all the documentation) they just say that it is our responsibility to log into impact and manually delete all failed orders that came to our website.
- The topic ‘WARNING – This thing steals’ is closed to new replies.