xpay✦ Commerce
Directory
WooCommerce plugins
CoCart JWT Authentication
CoCart JWT Authentication
JWT Authentication for CoCart API.
Will this break my store?
What the WordPress.org registry says about keeping CoCart JWT Authentication running.
Tested to 6.9.5 — 1 branch behind 7.0
Tested against the WordPress branch in use today.4 months ago
At least 4.1 releases a year since launch. WordPress.org only lists versions still available for download, so the real number may be higher.7.4
Your host must be running at least this version.6.0
2
Maintenance & trust
Scored on how CoCart JWT Authentication is looked after — not on how many stores run it.
Maintenance
35 / 35WordPress compatibility
14 / 20Support responsiveness
Not enough dataMerchant satisfaction
Not enough dataListing transparency
3 / 10Ratings
No one has rated this plugin on WordPress.org yet. That is a statement about the ratings page, not about the plugin — plenty of well-kept plugins never collect them.
This free add-on for CoCart allows you to authenticate the Cart API via JSON Web Tokens as an authentication method.
★★★★★
An excellent plugin, which makes building a headless WooCommerce experience a breeze. Easy to use, nearly zero setup time. Harald Schneider
Key Features
- Standard JWT Authentication: Implements the industry-standard RFC 7519 for secure claims representation.
- Simple Endpoints: Offers clear endpoints for generating and validating tokens.
- Configurable Secret Key: Define your unique secret key via
wp-config.phpfor secure token signing. - Multiple signing algorithms:
HS256,HS384,HS512,RS256,RS384,RS512,ES256,ES384,ES512,PS256,PS384,PS512 - Rate Limiting: Controlled specifically for refreshing and validating tokens.
- Helpful Debugging: Detailed logs of authentication issues to help figure out exactly what happened and fix it faster.
- WP-CLI Commands: Useful commands to handle tokens – whether you need to check, destroy or create new ones, or clean up old ones.
- Developer Hooks: Provides filters and hooks for more configuration to your requirements.
JSON Web Tokens are an open, industry standard method for representing claims securely between two parties.
For more information, read the core concept on what this plugin does and can do.
📄 Documentation
See documentation on how to get setup, filters and hooks with examples to help configure JWT Authentication to your needs.
Once ready to use, see the quick start guide. There is also an advanced configuration for using RSA Keys.
★★★★★
Amazing Plugin. I’m using it to create a react-native app with WooCommerce as back-end. This plugin is a life-saver! Daniel Loureiro
👍 Add-ons to further enhance CoCart
We also have other add-ons that extend CoCart to enhance your headless store development.
- CoCart – CORS enables support for CORS to allow CoCart to work across multiple domains.
- CoCart – Rate Limiting enables the rate limiting feature.
These add-ons of course come with support too.
💜 Need Support?
We aim to provide regular support for the CoCart plugin via our Discord community server. Please understand that we do prioritize support for our paying customers.
⌨️ Join our growing community
On Discord, we have a community of developers, WordPress agencies, and shop owners building the fastest and best headless WooCommerce stores with CoCart.
Come and join our community
🐞 Bug reports
Bug reports for CoCart JWT Authentication are welcomed in the CoCart JWT Authentication repository on GitHub. Please note that GitHub is not a support forum, and that issues that aren’t properly qualified as bugs will be closed.
More information
- Website.
- Documentation
- Subscribe to updates
- Like, Follow and Star on Facebook, X/Twitter, Instagram and GitHub
💯 Credits
This plugin is developed and maintained by Sébastien Dumont.
Founder of CoCart Headless, LLC.
CoCart is developer-first REST API to decouple WooCommerce on the frontend and allow you to build modern storefronts with full control over auth, sessions, cart and product flows.
No! The WooCommerce REST API only use their own API key system to utilize it.
No! This JWT Authentication was specifically designed for the CoCart API ONLY.
It is possible due to a plugin conflict e.g. Login Limit and the token used failed many times and the IP address may have been blacklisted.
It supports HS256, HS384, HS512, RS256, RS384, RS512, ES256, ES384, ES512, PS256, PS384, PS512
CoCart JWT authentication is very secure when implemented correctly. Make sure to use a strong secret key and keep it confidential.
Rate Limiting is only available with CoCart Plus
Categories
Plugin details
Tags on WordPress.org
